====================================== | [ 301.293628][ T3861] 1 lock held by ip/3861: | [ 301.293790][ T3861] #0: ffffffffa787f228 (rtnl_mutex){+.+.}-{4:4}, at: rtm_new_nexthop (net/ipv4/nexthop.c:3222 net/ipv4/nexthop.c:3277) | [ 301.294032][ T3861] | [ 301.294032][ T3861] stack backtrace: [ 301.294192][ T3861] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 301.294193][ T3861] Call Trace: [ 301.294195][ T3861] [ 301.294196][ T3861] dump_stack_lvl (lib/dump_stack.c:122) [ 301.294202][ T3861] lockdep_rcu_suspicious.cold (kernel/locking/lockdep.c:6877) [ 301.294208][ T3861] fib6_update_sernum (net/ipv6/ip6_fib.c:111 (discriminator 10)) [ 301.294212][ T3861] nh_rt_cache_flush (net/ipv4/nexthop.c:2211 (discriminator 4)) [ 301.294217][ T3861] replace_nexthop (net/ipv4/nexthop.c:2577) [ 301.294221][ T3861] insert_nexthop (net/ipv4/nexthop.c:2612) [ 301.294225][ T3861] rtm_new_nexthop (net/ipv4/nexthop.c:2977 net/ipv4/nexthop.c:3281) [ 301.294229][ T3861] ? insert_nexthop (net/ipv4/nexthop.c:3252) [ 301.294230][ T3861] ? lock_acquire.part.0 (kernel/locking/lockdep.c:470 kernel/locking/lockdep.c:5870) [ 301.294234][ T3861] ? find_held_lock (kernel/locking/lockdep.c:5350 (discriminator 1)) [ 301.294240][ T3861] ? lock_acquire.part.0 (kernel/locking/lockdep.c:470 kernel/locking/lockdep.c:5870) [ 301.294241][ T3861] ? find_held_lock (kernel/locking/lockdep.c:5350 (discriminator 1)) [ 301.294247][ T3861] ? find_held_lock (kernel/locking/lockdep.c:5350 (discriminator 1)) [ 301.294248][ T3861] ? insert_nexthop (net/ipv4/nexthop.c:3252) [ 301.294250][ T3861] ? __lock_release.isra.0 (kernel/locking/lockdep.c:5536) [ 301.294254][ T3861] ? insert_nexthop (net/ipv4/nexthop.c:3252) [ 301.294256][ T3861] rtnetlink_rcv_msg (net/core/rtnetlink.c:6958) [ 301.294261][ T3861] ? rtnl_fdb_dump (net/core/rtnetlink.c:6861) [ 301.294263][ T3861] ? __lock_acquire (kernel/locking/lockdep.c:5237 (discriminator 1)) [ 301.294267][ T3861] ? lock_acquire.part.0 (kernel/locking/lockdep.c:470 kernel/locking/lockdep.c:5870) [ 301.294269][ T3861] ? find_held_lock (kernel/locking/lockdep.c:5350 (discriminator 1)) [ 301.294272][ T3861] netlink_rcv_skb (net/netlink/af_netlink.c:2550) [ 301.294276][ T3861] ? rtnl_fdb_dump (net/core/rtnetlink.c:6861) [ 301.294279][ T3861] ? netlink_ack (net/netlink/af_netlink.c:2527) [ 301.294285][ T3861] ? netlink_deliver_tap (./include/linux/rcupdate.h:322 (discriminator 1) ./include/linux/rcupdate.h:881 (discriminator 1) ./include/net/netns/generic.h:48 (discriminator 1) net/netlink/af_netlink.c:333 (discriminator 1)) [ 301.294287][ T3861] ? netlink_deliver_tap (./include/linux/rcupdate.h:322 (discriminator 1) ./include/linux/rcupdate.h:881 (discriminator 1) net/netlink/af_netlink.c:340 (discriminator 1)) [ 301.294292][ T3861] netlink_unicast (net/netlink/af_netlink.c:1319 net/netlink/af_netlink.c:1344) [ 301.294296][ T3861] ? netlink_attachskb (net/netlink/af_netlink.c:1329) [ 301.294298][ T3861] ? __alloc_skb (./include/linux/bottom_half.h:20 (discriminator 1) net/core/skbuff.c:695 (discriminator 1)) [ 301.294301][ T3861] ? napi_skb_cache_get (net/core/skbuff.c:674) [ 301.294305][ T3861] ? __lock_acquire (kernel/locking/lockdep.c:5237 (discriminator 1)) [ 301.294308][ T3861] netlink_sendmsg (net/netlink/af_netlink.c:1894) [ 301.294312][ T3861] ? netlink_unicast (net/netlink/af_netlink.c:1813) [ 301.294316][ T3861] ? __might_fault (mm/memory.c:7218 (discriminator 4)) [ 301.294322][ T3861] ____sys_sendmsg (net/socket.c:721 (discriminator 4) net/socket.c:736 (discriminator 4) net/socket.c:2585 (discriminator 4)) [ 301.294325][ T3861] ? copy_msghdr_from_user (net/socket.c:2525) [ 301.294327][ T3861] ? get_timestamp.constprop.0 (net/socket.c:2531) [ 301.294328][ T3861] ? move_addr_to_kernel (net/socket.c:2511) [ 301.294332][ T3861] ? lock_acquire.part.0 (kernel/locking/lockdep.c:470 kernel/locking/lockdep.c:5870) [ 301.294334][ T3861] ? find_held_lock (kernel/locking/lockdep.c:5350 (discriminator 1)) [ 301.294337][ T3861] ___sys_sendmsg (net/socket.c:2641) [ 301.294340][ T3861] ? copy_msghdr_from_user (net/socket.c:2628) [ 301.294341][ T3861] ? __lock_release.isra.0 (kernel/locking/lockdep.c:5536) [ 301.294352][ T3861] ? lock_vma_under_rcu (./include/linux/rcupdate.h:322 (discriminator 1) ./include/linux/rcupdate.h:881 (discriminator 1) mm/mmap_lock.c:329 (discriminator 1)) [ 301.294357][ T3861] __sys_sendmsg (net/socket.c:2671 (discriminator 1)) [ 301.294360][ T3861] ? __sys_sendmsg_sock (net/socket.c:2656) [ 301.294365][ T3861] ? do_user_addr_fault (./arch/x86/include/asm/atomic.h:93 (discriminator 4) ./include/linux/atomic/atomic-arch-fallback.h:949 (discriminator 4) ./include/linux/atomic/atomic-instrumented.h:401 (discriminator 4) ./include/linux/refcount.h:389 (discriminator 4) ./include/linux/refcount.h:432 (discriminator 4) ./include/linux/mmap_lock.h:196 (discriminator 4) ./include/linux/mmap_lock.h:217 (discriminator 4) ./include/linux/mmap_lock.h:264 (discriminator 4) arch/x86/mm/fault.c:1336 (discriminator 4)) [ 301.294369][ T3861] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 1) kernel/rcu/tree.c:752 (discriminator 1)) [ 301.294373][ T3861] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 1) kernel/rcu/tree.c:752 (discriminator 1)) [ 301.294376][ T3861] do_syscall_64 (arch/x86/entry/syscall_64.c:63 (discriminator 1) arch/x86/entry/syscall_64.c:94 (discriminator 1)) [ 301.294380][ T3861] ? exc_page_fault (arch/x86/mm/fault.c:1480 (discriminator 3) arch/x86/mm/fault.c:1527 (discriminator 3)) [ 301.294383][ T3861] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 301.294385][ T3861] RIP: 0033:0x7f0a0adedc5e [ 301.294389][ T3861] Code: 4d 89 d8 e8 34 bd 00 00 4c 8b 5d f8 41 8b 93 08 03 00 00 59 5e 48 83 f8 fc 74 11 c9 c3 0f 1f 80 00 00 00 00 48 8b 45 10 0f 05 c3 83 e2 39 83 fa 08 75 e7 e8 13 ff ff ff 0f 1f 00 f3 0f 1e fa All code ======== 0: 4d 89 d8 mov %r11,%r8 3: e8 34 bd 00 00 call 0xbd3c 8: 4c 8b 5d f8 mov -0x8(%rbp),%r11 c: 41 8b 93 08 03 00 00 mov 0x308(%r11),%edx 13: 59 pop %rcx 14: 5e pop %rsi 15: 48 83 f8 fc cmp $0xfffffffffffffffc,%rax 19: 74 11 je 0x2c 1b: c9 leave 1c: c3 ret 1d: 0f 1f 80 00 00 00 00 nopl 0x0(%rax) 24: 48 8b 45 10 mov 0x10(%rbp),%rax 28: 0f 05 syscall 2a:* c9 leave <-- trapping instruction 2b: c3 ret 2c: 83 e2 39 and $0x39,%edx 2f: 83 fa 08 cmp $0x8,%edx 32: 75 e7 jne 0x1b 34: e8 13 ff ff ff call 0xffffffffffffff4c 39: 0f 1f 00 nopl (%rax) 3c: f3 0f 1e fa endbr64 Code starting with the faulting instruction =========================================== 0: c9 leave 1: c3 ret 2: 83 e2 39 and $0x39,%edx 5: 83 fa 08 cmp $0x8,%edx 8: 75 e7 jne 0xfffffffffffffff1 a: e8 13 ff ff ff call 0xffffffffffffff22 f: 0f 1f 00 nopl (%rax) 12: f3 0f 1e fa endbr64 [ 301.294390][ T3861] RSP: 002b:00007ffcffd8ecb0 EFLAGS: 00000202 ORIG_RAX: 000000000000002e [ 301.294393][ T3861] RAX: ffffffffffffffda RBX: 000000000048a950 RCX: 00007f0a0adedc5e [ 301.294395][ T3861] RDX: 0000000000000000 RSI: 00007ffcffd8ed70 RDI: 0000000000000005 [ 301.294396][ T3861] RBP: 00007ffcffd8ecc0 R08: 0000000000000000 R09: 0000000000000000 [ 301.294396][ T3861] R10: 0000000000000000 R11: 0000000000000202 R12: 0000000000000001 Finger prints: fib6_update_sernum:nh_rt_cache_flush:replace_nexthop:insert_nexthop:rtm_new_nexthop