====================================== | [ 233.863479][ T3729] ================================================================== | [ 233.863742][ T3729] BUG: KASAN: slab-out-of-bounds in snapshot_page (mm/util.c:1353) | [ 233.863950][ T3729] Read of size 128 at addr ff1100001dfaa240 by task ncdevmem/3729 | [ 233.864116][ T3729] [ 233.864182][ T3729] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 233.864188][ T3729] Call Trace: [ 233.864189][ T3729] [ 233.864191][ T3729] dump_stack_lvl (lib/dump_stack.c:94 lib/dump_stack.c:120) [ 233.864196][ T3729] print_address_description.constprop.0 (mm/kasan/report.c:378) [ 233.864201][ T3729] print_report (mm/kasan/report.c:482) [ 233.864203][ T3729] ? __virt_addr_valid (./include/linux/rcupdate.h:937 ./include/linux/mmzone.h:2281 arch/x86/mm/physaddr.c:54) [ 233.864207][ T3729] ? __virt_addr_valid (./include/linux/rcupdate.h:963 (discriminator 1) ./include/linux/mmzone.h:2291 (discriminator 1) arch/x86/mm/physaddr.c:54 (discriminator 1)) [ 233.864209][ T3729] kasan_report (mm/kasan/report.c:595) [ 233.864212][ T3729] ? snapshot_page (mm/util.c:1353) [ 233.864214][ T3729] ? snapshot_page (mm/util.c:1353) [ 233.864216][ T3729] kasan_check_range (mm/kasan/generic.c:186 mm/kasan/generic.c:200) [ 233.864218][ T3729] __asan_memcpy (mm/kasan/shadow.c:105 (discriminator 1)) [ 233.864221][ T3729] snapshot_page (mm/util.c:1353) [ 233.864222][ T3729] ? fourcc_string (lib/vsprintf.c:1813 (discriminator 2)) [ 233.864226][ T3729] __dump_page (mm/debug.c:134) [ 233.864228][ T3729] ? __dump_folio (./arch/x86/include/asm/atomic.h:23) [ 233.864233][ T3729] ? net_devmem_alloc_dmabuf (./include/linux/instrumented.h:97 ./include/linux/atomic/atomic-instrumented.h:3223 net/core/devmem.c:107) [ 233.864237][ T3729] dump_page (mm/debug.c:146) [ 233.864239][ T3729] page_pool_set_pp_info (./include/linux/page-flags.h:1062 (discriminator 8) net/core/page_pool.c:716 (discriminator 8)) [ 233.864242][ T3729] mp_dmabuf_devmem_alloc_netmems (net/core/devmem.c:464) [ 233.864244][ T3729] ? page_pool_alloc_netmems (net/core/page_pool.c:441 net/core/page_pool.c:659) [ 233.864246][ T3729] fbnic_fill_bdq (./include/net/page_pool/helpers.h:160 drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:906) [ 233.864251][ T3729] __fbnic_nv_restart (drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:2470 drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:2874) [ 233.864253][ T3729] fbnic_queue_start (drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:2903) [ 233.864255][ T3729] netdev_rx_queue_reconfig (net/core/netdev_rx_queue.c:137) [ 233.864258][ T3729] __netif_mp_open_rxq (net/core/netdev_rx_queue.c:234) [ 233.864260][ T3729] ? netdev_rx_queue_restart (net/core/netdev_rx_queue.c:184) [ 233.864262][ T3729] ? do_raw_spin_unlock (./include/linux/instrumented.h:82 ./include/linux/atomic/atomic-instrumented.h:32 ./include/asm-generic/qspinlock.h:57 kernel/locking/spinlock_debug.c:101 kernel/locking/spinlock_debug.c:141) [ 233.864266][ T3729] net_devmem_bind_dmabuf_to_queue (net/core/devmem.c:166) [ 233.864267][ T3729] ? net_devmem_unbind_dmabuf (net/core/devmem.c:152) [ 233.864270][ T3729] netdev_nl_bind_rx_doit (net/core/netdev-genl.c:1088) [ 233.864274][ T3729] ? netdev_nl_qstats_get_dumpit (./include/net/netdev_lock.h:33) [ 233.864276][ T3729] ? __nla_parse (lib/nlattr.c:732) [ 233.864280][ T3729] ? genl_family_rcv_msg_attrs_parse.isra.0 (./include/net/netlink.h:789 (discriminator 2) net/netlink/genetlink.c:944 (discriminator 2)) [ 233.864283][ T3729] genl_family_rcv_msg_doit (net/netlink/genetlink.c:1114) [ 233.864285][ T3729] ? genl_family_rcv_msg_attrs_parse.isra.0 (./include/net/netlink.h:785 (discriminator 2)) [ 233.864287][ T3729] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 3) kernel/rcu/tree.c:752 (discriminator 3)) [ 233.864290][ T3729] ? cap_capable (./include/trace/events/capability.h:26 (discriminator 22) security/commoncap.c:130 (discriminator 22)) [ 233.864294][ T3729] genl_family_rcv_msg (net/netlink/genetlink.c:1194) [ 233.864296][ T3729] ? genl_family_rcv_msg_dumpit (net/netlink/genetlink.c:1079) [ 233.864297][ T3729] ? rcu_lockdep_current_cpu_online (kernel/rcu/tree.c:4040 (discriminator 3) kernel/rcu/tree.c:4032 (discriminator 3)) [ 233.864299][ T3729] ? netdev_nl_qstats_get_dumpit (./include/net/netdev_lock.h:33) [ 233.864301][ T3729] ? __lock_acquire (kernel/locking/lockdep.c:5237) [ 233.864304][ T3729] genl_rcv_msg (net/netlink/genetlink.c:1209) [ 233.864305][ T3729] netlink_rcv_skb (net/netlink/af_netlink.c:2550) [ 233.864308][ T3729] ? genl_family_rcv_msg (net/netlink/genetlink.c:1136 (discriminator 2)) [ 233.864310][ T3729] ? netlink_ack (./include/linux/skbuff.h:2717) [ 233.864313][ T3729] ? netlink_deliver_tap (./include/linux/rcupdate.h:310 (discriminator 2) ./include/linux/rcupdate.h:869 (discriminator 2) ./include/net/netns/generic.h:48 (discriminator 2) net/netlink/af_netlink.c:333 (discriminator 2)) [ 233.864315][ T3729] ? netlink_deliver_tap (./include/linux/rcupdate.h:310 (discriminator 2) ./include/linux/rcupdate.h:869 (discriminator 2) net/netlink/af_netlink.c:340 (discriminator 2)) [ 233.864317][ T3729] genl_rcv (net/netlink/genetlink.c:1218) [ 233.864318][ T3729] netlink_unicast (net/netlink/af_netlink.c:1318 net/netlink/af_netlink.c:1344) [ 233.864321][ T3729] ? netlink_attachskb (./arch/x86/include/asm/bitops.h:202 (discriminator 1)) [ 233.864323][ T3729] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 233.864325][ T3729] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:179 (discriminator 1) kernel/locking/spinlock.c:198 (discriminator 1)) [ 233.864327][ T3729] ? __wake_up (./include/linux/spinlock.h:408 (discriminator 3) kernel/sched/wait.c:127 (discriminator 3) kernel/sched/wait.c:146 (discriminator 3)) [ 233.864331][ T3729] netlink_sendmsg (net/netlink/af_netlink.c:1894) [ 233.864333][ T3729] ? netlink_unicast (./include/net/net_namespace.h:419 (discriminator 7)) [ 233.864336][ T3729] ? lock_acquire.part.0 (kernel/locking/lockdep.c:5868 (discriminator 1)) [ 233.864337][ T3729] ? __might_fault (mm/memory.c:7324 (discriminator 5)) [ 233.864340][ T3729] __sys_sendto (net/socket.c:787 (discriminator 4) net/socket.c:802 (discriminator 4) net/socket.c:2265 (discriminator 4)) [ 233.864344][ T3729] ? __ia32_sys_getpeername (net/socket.c:2219) [ 233.864345][ T3729] ? __might_fault (mm/memory.c:7324 (discriminator 5)) [ 233.864348][ T3729] ? __ia32_sys_connect (net/socket.c:2170) [ 233.864349][ T3729] ? __sys_bind (net/socket.c:1933 (discriminator 3) net/socket.c:1964 (discriminator 3)) [ 233.864353][ T3729] __x64_sys_sendto (net/socket.c:2272 net/socket.c:2268 net/socket.c:2268) [ 233.864354][ T3729] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40 (discriminator 22)) [ 233.864357][ T3729] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 233.864359][ T3729] ? do_syscall_64 (./include/linux/entry-common.h:177 arch/x86/entry/syscall_64.c:89) [ 233.864361][ T3729] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 233.864362][ T3729] ? trace_hardirqs_off (kernel/trace/trace_preemptirq.c:104 (discriminator 1)) [ 233.864364][ T3729] ? exc_page_fault (arch/x86/mm/fault.c:1480 (discriminator 3) arch/x86/mm/fault.c:1527 (discriminator 3)) [ 233.864365][ T3729] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:121) [ 233.864368][ T3729] RIP: 0033:0x7f143a2eb0ee [ 233.864371][ T3729] Code: 4d 89 d8 e8 94 bd 00 00 4c 8b 5d f8 41 8b 93 08 03 00 00 59 5e 48 83 f8 fc 74 11 c9 c3 0f 1f 80 00 00 00 00 48 8b 45 10 0f 05 c3 83 e2 39 83 fa 08 75 e7 e8 03 ff ff ff 0f 1f 00 f3 0f 1e fa All code ======== 0: 4d 89 d8 mov %r11,%r8 3: e8 94 bd 00 00 call 0xbd9c 8: 4c 8b 5d f8 mov -0x8(%rbp),%r11 c: 41 8b 93 08 03 00 00 mov 0x308(%r11),%edx 13: 59 pop %rcx 14: 5e pop %rsi 15: 48 83 f8 fc cmp $0xfffffffffffffffc,%rax 19: 74 11 je 0x2c 1b: c9 leave 1c: c3 ret 1d: 0f 1f 80 00 00 00 00 nopl 0x0(%rax) 24: 48 8b 45 10 mov 0x10(%rbp),%rax 28: 0f 05 syscall 2a:* c9 leave <-- trapping instruction 2b: c3 ret 2c: 83 e2 39 and $0x39,%edx 2f: 83 fa 08 cmp $0x8,%edx 32: 75 e7 jne 0x1b 34: e8 03 ff ff ff call 0xffffffffffffff3c 39: 0f 1f 00 nopl (%rax) 3c: f3 0f 1e fa endbr64 Code starting with the faulting instruction =========================================== 0: c9 leave 1: c3 ret 2: 83 e2 39 and $0x39,%edx 5: 83 fa 08 cmp $0x8,%edx 8: 75 e7 jne 0xfffffffffffffff1 a: e8 03 ff ff ff call 0xffffffffffffff12 f: 0f 1f 00 nopl (%rax) 12: f3 0f 1e fa endbr64 [ 233.864373][ T3729] RSP: 002b:00007ffff8ea74a0 EFLAGS: 00000202 ORIG_RAX: 000000000000002c [ 233.864377][ T3729] RAX: ffffffffffffffda RBX: 00007ffff8ea7510 RCX: 00007f143a2eb0ee [ 233.864378][ T3729] RDX: 0000000000000038 RSI: 0000000035dfb988 RDI: 0000000000000006 [ 233.864379][ T3729] RBP: 00007ffff8ea74b0 R08: 0000000000000000 R09: 0000000000000000 [ 233.864380][ T3729] R10: 0000000000000000 R11: 0000000000000202 R12: 0000000035dfb988 [ 233.864381][ T3729] R13: 0000000035dfb720 R14: 00007f143a4bc000 R15: 000000000042ee00 | [ 233.878409][ T3729] ------------[ cut here ]------------ | [ 233.878501][ T3729] kernel BUG at ./include/linux/page-flags.h:1062! | [ 233.878620][ T3729] Oops: invalid opcode: 0000 [#1] SMP KASAN | [ 233.878925][ T3729] Tainted: [B]=BAD_PAGE [ 233.879003][ T3729] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS rel-1.16.3-0-ga6ed6b701f0a-prebuilt.qemu.org 04/01/2014 [ 233.879211][ T3729] RIP: 0010:page_pool_set_pp_info (./include/linux/page-flags.h:1062 (discriminator 9) net/core/page_pool.c:716 (discriminator 9)) [ 233.879329][ T3729] Code: 80 3c 11 00 0f 84 12 ff ff ff 89 04 24 e8 12 de a0 fe 8b 04 24 e9 02 ff ff ff 48 c7 c6 60 98 6d b8 48 89 df e8 6b d0 89 fe 90 <0f> 0b e8 f3 dc a0 fe e9 58 ff ff ff e8 29 dd a0 fe e9 a9 fe ff ff All code ======== 0: 80 3c 11 00 cmpb $0x0,(%rcx,%rdx,1) 4: 0f 84 12 ff ff ff je 0xffffffffffffff1c a: 89 04 24 mov %eax,(%rsp) d: e8 12 de a0 fe call 0xfffffffffea0de24 12: 8b 04 24 mov (%rsp),%eax 15: e9 02 ff ff ff jmp 0xffffffffffffff1c 1a: 48 c7 c6 60 98 6d b8 mov $0xffffffffb86d9860,%rsi 21: 48 89 df mov %rbx,%rdi 24: e8 6b d0 89 fe call 0xfffffffffe89d094 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: e8 f3 dc a0 fe call 0xfffffffffea0dd24 31: e9 58 ff ff ff jmp 0xffffffffffffff8e 36: e8 29 dd a0 fe call 0xfffffffffea0dd64 3b: e9 a9 fe ff ff jmp 0xfffffffffffffee9 Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: e8 f3 dc a0 fe call 0xfffffffffea0dcfa 7: e9 58 ff ff ff jmp 0xffffffffffffff64 c: e8 29 dd a0 fe call 0xfffffffffea0dd3a 11: e9 a9 fe ff ff jmp 0xfffffffffffffebf [ 233.879654][ T3729] RSP: 0018:ffa000000ad6f368 EFLAGS: 00010286 [ 233.879770][ T3729] RAX: 0000000000000096 RBX: ff1100001dfaa240 RCX: 0000000000000000 [ 233.879913][ T3729] RDX: 0000000000000096 RSI: 1ffffffff77d7b44 RDI: fff3fc00015ade58 [ 233.880048][ T3729] RBP: ff110000055fe800 R08: ffffffffb59bf47a R09: 1ffffffff727ea44 [ 233.880192][ T3729] R10: 0000000000000003 R11: fffffbfff727ea45 R12: ff1100001dfaa241 [ 233.880330][ T3729] R13: 000000000000006b R14: 0000000000000002 R15: 0000000000000000 [ 233.880466][ T3729] FS: 00007f143a278740(0000) GS:ff110000aa546000(0000) knlGS:0000000000000000 [ 233.880625][ T3729] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 233.880742][ T3729] CR2: 0000000000431dc0 CR3: 0000000018deb004 CR4: 0000000000771ef0 [ 233.880891][ T3729] PKRU: 55555554 [ 233.880960][ T3729] Call Trace: [ 233.881028][ T3729] [ 233.881077][ T3729] mp_dmabuf_devmem_alloc_netmems (net/core/devmem.c:464) [ 233.881191][ T3729] ? page_pool_alloc_netmems (net/core/page_pool.c:441 net/core/page_pool.c:659) [ 233.881284][ T3729] fbnic_fill_bdq (./include/net/page_pool/helpers.h:160 drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:906) [ 233.881375][ T3729] __fbnic_nv_restart (drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:2470 drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:2874) [ 233.881472][ T3729] fbnic_queue_start (drivers/net/ethernet/meta/fbnic/fbnic_txrx.c:2903) [ 233.881562][ T3729] netdev_rx_queue_reconfig (net/core/netdev_rx_queue.c:137) [ 233.881652][ T3729] __netif_mp_open_rxq (net/core/netdev_rx_queue.c:234) [ 233.881742][ T3729] ? netdev_rx_queue_restart (net/core/netdev_rx_queue.c:184) [ 233.881834][ T3729] ? do_raw_spin_unlock (./include/linux/instrumented.h:82 ./include/linux/atomic/atomic-instrumented.h:32 ./include/asm-generic/qspinlock.h:57 kernel/locking/spinlock_debug.c:101 kernel/locking/spinlock_debug.c:141) [ 233.881930][ T3729] net_devmem_bind_dmabuf_to_queue (net/core/devmem.c:166) [ 233.882047][ T3729] ? net_devmem_unbind_dmabuf (net/core/devmem.c:152) [ 233.882137][ T3729] netdev_nl_bind_rx_doit (net/core/netdev-genl.c:1088) [ 233.882230][ T3729] ? netdev_nl_qstats_get_dumpit (./include/net/netdev_lock.h:33) [ 233.882342][ T3729] ? __nla_parse (lib/nlattr.c:732) [ 233.882433][ T3729] ? genl_family_rcv_msg_attrs_parse.isra.0 (./include/net/netlink.h:789 (discriminator 2) net/netlink/genetlink.c:944 (discriminator 2)) [ 233.882544][ T3729] genl_family_rcv_msg_doit (net/netlink/genetlink.c:1114) [ 233.882639][ T3729] ? genl_family_rcv_msg_attrs_parse.isra.0 (./include/net/netlink.h:785 (discriminator 2)) [ 233.882752][ T3729] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 3) kernel/rcu/tree.c:752 (discriminator 3)) [ 233.882846][ T3729] ? cap_capable (./include/trace/events/capability.h:26 (discriminator 22) security/commoncap.c:130 (discriminator 22)) [ 233.882938][ T3729] genl_family_rcv_msg (net/netlink/genetlink.c:1194) [ 233.883028][ T3729] ? genl_family_rcv_msg_dumpit (net/netlink/genetlink.c:1079) [ 233.883141][ T3729] ? rcu_lockdep_current_cpu_online (kernel/rcu/tree.c:4040 (discriminator 3) kernel/rcu/tree.c:4032 (discriminator 3)) [ 233.883258][ T3729] ? netdev_nl_qstats_get_dumpit (./include/net/netdev_lock.h:33) [ 233.883372][ T3729] ? __lock_acquire (kernel/locking/lockdep.c:5237) [ 233.883462][ T3729] genl_rcv_msg (net/netlink/genetlink.c:1209) [ 233.883552][ T3729] netlink_rcv_skb (net/netlink/af_netlink.c:2550) [ 233.883643][ T3729] ? genl_family_rcv_msg (net/netlink/genetlink.c:1136 (discriminator 2)) [ 233.883733][ T3729] ? netlink_ack (./include/linux/skbuff.h:2717) [ 233.883830][ T3729] ? netlink_deliver_tap (./include/linux/rcupdate.h:310 (discriminator 2) ./include/linux/rcupdate.h:869 (discriminator 2) ./include/net/netns/generic.h:48 (discriminator 2) net/netlink/af_netlink.c:333 (discriminator 2)) [ 233.883926][ T3729] ? netlink_deliver_tap (./include/linux/rcupdate.h:310 (discriminator 2) ./include/linux/rcupdate.h:869 (discriminator 2) net/netlink/af_netlink.c:340 (discriminator 2)) [ 233.884016][ T3729] genl_rcv (net/netlink/genetlink.c:1218) [ 233.884084][ T3729] netlink_unicast (net/netlink/af_netlink.c:1318 net/netlink/af_netlink.c:1344) [ 233.884175][ T3729] ? netlink_attachskb (./arch/x86/include/asm/bitops.h:202 (discriminator 1)) [ 233.884267][ T3729] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 233.884358][ T3729] ? _raw_spin_unlock_irqrestore (./include/linux/spinlock_api_smp.h:179 (discriminator 1) kernel/locking/spinlock.c:198 (discriminator 1)) [ 233.884475][ T3729] ? __wake_up (./include/linux/spinlock.h:408 (discriminator 3) kernel/sched/wait.c:127 (discriminator 3) kernel/sched/wait.c:146 (discriminator 3)) [ 233.884544][ T3729] netlink_sendmsg (net/netlink/af_netlink.c:1894) [ 233.884635][ T3729] ? netlink_unicast (./include/net/net_namespace.h:419 (discriminator 7)) [ 233.884727][ T3729] ? lock_acquire.part.0 (kernel/locking/lockdep.c:5868 (discriminator 1)) [ 233.884816][ T3729] ? __might_fault (mm/memory.c:7324 (discriminator 5)) [ 233.884911][ T3729] __sys_sendto (net/socket.c:787 (discriminator 4) net/socket.c:802 (discriminator 4) net/socket.c:2265 (discriminator 4)) [ 233.885006][ T3729] ? __ia32_sys_getpeername (net/socket.c:2219) [ 233.885096][ T3729] ? __might_fault (mm/memory.c:7324 (discriminator 5)) [ 233.885187][ T3729] ? __ia32_sys_connect (net/socket.c:2170) [ 233.885279][ T3729] ? __sys_bind (net/socket.c:1933 (discriminator 3) net/socket.c:1964 (discriminator 3)) [ 233.885372][ T3729] __x64_sys_sendto (net/socket.c:2272 net/socket.c:2268 net/socket.c:2268) [ 233.885461][ T3729] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40 (discriminator 22)) [ 233.885578][ T3729] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4472) [ 233.885671][ T3729] ? do_syscall_64 (./include/linux/entry-common.h:177 arch/x86/entry/syscall_64.c:89) [ 233.885761][ T3729] do_syscall_64 (arch/x86/entry/syscall_64.c:63 arch/x86/entry/syscall_64.c:94) [ 233.885852][ T3729] ? trace_hardirqs_off (kernel/trace/trace_preemptirq.c:104 (discriminator 1)) [ 233.885941][ T3729] ? exc_page_fault (arch/x86/mm/fault.c:1480 (discriminator 3) arch/x86/mm/fault.c:1527 (discriminator 3)) [ 233.886029][ T3729] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:121) [ 233.886141][ T3729] RIP: 0033:0x7f143a2eb0ee [ 233.886240][ T3729] Code: 4d 89 d8 e8 94 bd 00 00 4c 8b 5d f8 41 8b 93 08 03 00 00 59 5e 48 83 f8 fc 74 11 c9 c3 0f 1f 80 00 00 00 00 48 8b 45 10 0f 05 c3 83 e2 39 83 fa 08 75 e7 e8 03 ff ff ff 0f 1f 00 f3 0f 1e fa All code ======== 0: 4d 89 d8 mov %r11,%r8 3: e8 94 bd 00 00 call 0xbd9c 8: 4c 8b 5d f8 mov -0x8(%rbp),%r11 c: 41 8b 93 08 03 00 00 mov 0x308(%r11),%edx 13: 59 pop %rcx 14: 5e pop %rsi 15: 48 83 f8 fc cmp $0xfffffffffffffffc,%rax 19: 74 11 je 0x2c 1b: c9 leave 1c: c3 ret 1d: 0f 1f 80 00 00 00 00 nopl 0x0(%rax) 24: 48 8b 45 10 mov 0x10(%rbp),%rax 28: 0f 05 syscall 2a:* c9 leave <-- trapping instruction 2b: c3 ret 2c: 83 e2 39 and $0x39,%edx 2f: 83 fa 08 cmp $0x8,%edx 32: 75 e7 jne 0x1b 34: e8 03 ff ff ff call 0xffffffffffffff3c 39: 0f 1f 00 nopl (%rax) 3c: f3 0f 1e fa endbr64 Code starting with the faulting instruction =========================================== 0: c9 leave 1: c3 ret 2: 83 e2 39 and $0x39,%edx 5: 83 fa 08 cmp $0x8,%edx 8: 75 e7 jne 0xfffffffffffffff1 a: e8 03 ff ff ff call 0xffffffffffffff12 f: 0f 1f 00 nopl (%rax) 12: f3 0f 1e fa endbr64 [ 233.886558][ T3729] RSP: 002b:00007ffff8ea74a0 EFLAGS: 00000202 ORIG_RAX: 000000000000002c [ 233.886698][ T3729] RAX: ffffffffffffffda RBX: 00007ffff8ea7510 RCX: 00007f143a2eb0ee [ 233.886845][ T3729] RDX: 0000000000000038 RSI: 0000000035dfb988 RDI: 0000000000000006 [ 233.886983][ T3729] RBP: 00007ffff8ea74b0 R08: 0000000000000000 R09: 0000000000000000 [ 233.887123][ T3729] R10: 0000000000000000 R11: 0000000000000202 R12: 0000000035dfb988 Finger prints: page_pool_set_pp_info:mp_dmabuf_devmem_alloc_netmems:fbnic_fill_bdq:__fbnic_nv_restart:fbnic_queue_start print_report:kasan_report:kasan_check_range:__asan_memcpy:snapshot_page