====================================== | [ 16.536945][ T301] GACT probability NOT on | [ 16.854572][ C2] ------------[ cut here ]------------ | [ 16.854978][ C2] WARNING: ./include/linux/skbuff.h:3239 at __udp4_lib_err_encap+0x6cc/0xae0, CPU#2: mausezahn/316 | [ 16.855398][ C2] Modules linked in: act_tunnel_key cls_matchall act_gact cls_flower sch_ingress vxlan ip6_udp_tunnel udp_tunnel vrf veth [ 16.856178][ C2] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 16.856411][ C2] RIP: 0010:__udp4_lib_err_encap (./include/linux/skbuff.h:3239 (discriminator 3) ./include/linux/skbuff.h:3235 (discriminator 3) net/ipv4/udp.c:864 (discriminator 3)) [ 16.856653][ C2] Code: 70 02 00 00 0f b6 2e 83 e5 0f 90 0f 0b 90 e9 e4 fa ff ff 90 0f 0b 90 90 0f 0b 90 e9 b8 fc ff ff 90 0f 0b 90 e9 3a fa ff ff 90 <0f> 0b 90 e9 48 fa ff ff 4c 8b 6c 24 20 45 31 e4 e9 38 fd ff ff 48 All code ======== 0: 70 02 jo 0x4 2: 00 00 add %al,(%rax) 4: 0f b6 2e movzbl (%rsi),%ebp 7: 83 e5 0f and $0xf,%ebp a: 90 nop b: 0f 0b ud2 d: 90 nop e: e9 e4 fa ff ff jmp 0xfffffffffffffaf7 13: 90 nop 14: 0f 0b ud2 16: 90 nop 17: 90 nop 18: 0f 0b ud2 1a: 90 nop 1b: e9 b8 fc ff ff jmp 0xfffffffffffffcd8 20: 90 nop 21: 0f 0b ud2 23: 90 nop 24: e9 3a fa ff ff jmp 0xfffffffffffffa63 29: 90 nop 2a:* 0f 0b ud2 <-- trapping instruction 2c: 90 nop 2d: e9 48 fa ff ff jmp 0xfffffffffffffa7a 32: 4c 8b 6c 24 20 mov 0x20(%rsp),%r13 37: 45 31 e4 xor %r12d,%r12d 3a: e9 38 fd ff ff jmp 0xfffffffffffffd77 3f: 48 rex.W Code starting with the faulting instruction =========================================== 0: 0f 0b ud2 2: 90 nop 3: e9 48 fa ff ff jmp 0xfffffffffffffa50 8: 4c 8b 6c 24 20 mov 0x20(%rsp),%r13 d: 45 31 e4 xor %r12d,%r12d 10: e9 38 fd ff ff jmp 0xfffffffffffffd4d 15: 48 rex.W [ 16.857205][ C2] RSP: 0018:ffa0000000228868 EFLAGS: 00010293 [ 16.857438][ C2] RAX: ff1100000c90d824 RBX: ff110000148a0ac0 RCX: 0000000000000000 [ 16.857714][ C2] RDX: ff1100000c90d840 RSI: ff1100000c90d82c RDI: fffffffffffffff8 [ 16.857965][ C2] RBP: ff1100000c90d800 R08: ff1100000c90d82c R09: 00000000000003e8 [ 16.858226][ C2] R10: ffffffff93f35c00 R11: 0000000000000001 R12: 0000000000000000 [ 16.858492][ C2] R13: ff110000148a0b80 R14: ff1100000c90d840 R15: ff1100000c90d82c [ 16.858758][ C2] FS: 00007f2d82a68c80(0000) GS:ff110000a30ab000(0000) knlGS:0000000000000000 [ 16.859047][ C2] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 16.859274][ C2] CR2: 000055c6e44ab000 CR3: 0000000013c1e001 CR4: 0000000000771ef0 [ 16.859543][ C2] PKRU: 55555554 [ 16.859692][ C2] Call Trace: [ 16.859857][ C2] [ 16.859976][ C2] ? udp_err (net/ipv4/udp.c:926 (discriminator 1)) [ 16.860128][ C2] udp_err (net/ipv4/udp.c:933) [ 16.860292][ C2] icmp_unreach (net/ipv4/icmp.c:1196) [ 16.860478][ C2] ? __skb_checksum_complete (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 ./include/linux/refcount.h:170 ./include/linux/skbuff.h:2112 net/core/skbuff.c:3785) [ 16.860664][ C2] icmp_rcv (net/ipv4/icmp.c:1525 (discriminator 1)) [ 16.860826][ C2] ip_protocol_deliver_rcu (net/ipv4/ip_input.c:209) [ 16.861013][ C2] ? process_backlog (./include/linux/local_lock_internal.h:62 (discriminator 2) net/core/dev.c:6671 (discriminator 2)) [ 16.861203][ C2] ip_local_deliver_finish (./include/linux/rcupdate.h:867 net/ipv4/ip_input.c:242) [ 16.861387][ C2] ip_local_deliver (net/ipv4/ip_input.c:259) [ 16.861579][ C2] ? ip_local_deliver_finish (net/ipv4/ip_input.c:251) [ 16.861775][ C2] ? ip_rcv_finish_core (./include/net/net_namespace.h:419 (discriminator 7) ./include/linux/netdevice.h:2747 (discriminator 7) net/ipv4/ip_input.c:414 (discriminator 7)) [ 16.861957][ C2] ? __asan_memset (mm/kasan/shadow.c:84 (discriminator 2)) [ 16.862145][ C2] ? process_backlog (./include/linux/local_lock_internal.h:62 (discriminator 2) net/core/dev.c:6671 (discriminator 2)) [ 16.862340][ C2] ip_rcv (./include/linux/netfilter.h:318 ./include/linux/netfilter.h:312 net/ipv4/ip_input.c:612) [ 16.862497][ C2] ? ip_local_deliver (net/ipv4/ip_input.c:605) [ 16.862681][ C2] ? mark_usage (kernel/locking/lockdep.c:4674 (discriminator 1)) [ 16.862879][ C2] ? __lock_acquire (kernel/locking/lockdep.c:5237) [ 16.863063][ C2] __netif_receive_skb_one_core (net/core/dev.c:6202) [ 16.863288][ C2] ? lock_acquire.part.0 (kernel/locking/lockdep.c:470 (discriminator 2) kernel/locking/lockdep.c:5870 (discriminator 2)) [ 16.863474][ C2] ? __netif_receive_skb_list_core (net/core/dev.c:6202) [ 16.863694][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 3) kernel/rcu/tree.c:752 (discriminator 3)) [ 16.863896][ C2] process_backlog (./include/linux/rcupdate.h:867 net/core/dev.c:6674) [ 16.864082][ C2] __napi_poll (net/core/dev.c:7737) [ 16.864238][ C2] net_rx_action (net/core/dev.c:7800 net/core/dev.c:7957) [ 16.864423][ C2] ? __napi_poll (net/core/dev.c:7919) [ 16.864616][ C2] ? find_held_lock (kernel/locking/lockdep.c:5350 (discriminator 1)) [ 16.864818][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 3) kernel/rcu/tree.c:752 (discriminator 3)) [ 16.865000][ C2] handle_softirqs (./arch/x86/include/asm/jump_label.h:37 ./include/trace/events/irq.h:142 kernel/softirq.c:623) [ 16.865190][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 3) kernel/rcu/tree.c:752 (discriminator 3)) [ 16.865376][ C2] ? _local_bh_enable (kernel/softirq.c:580) [ 16.865570][ C2] ? trace_csd_function_exit (./include/trace/events/csd.h:64 (discriminator 24)) [ 16.865766][ C2] ? rcu_is_watching (./include/linux/context_tracking.h:128 (discriminator 3) kernel/rcu/tree.c:752 (discriminator 3)) [ 16.865947][ C2] do_softirq (kernel/softirq.c:523 (discriminator 19) kernel/softirq.c:510 (discriminator 19)) [ 16.866095][ C2] [ 16.866216][ C2] [ 16.866330][ C2] ? __dev_queue_xmit (./include/linux/rcupdate.h:310 (discriminator 2) ./include/linux/rcupdate.h:909 (discriminator 2) net/core/dev.c:4905 (discriminator 2)) [ 16.866523][ C2] __local_bh_enable_ip (kernel/softirq.c:450) [ 16.866724][ C2] __dev_queue_xmit (net/core/dev.c:4906) [ 16.866906][ C2] ? _copy_from_iter (./arch/x86/include/asm/smap.h:47 ./arch/x86/include/asm/uaccess_64.h:121 ./arch/x86/include/asm/uaccess_64.h:141 lib/iov_iter.c:67 ./include/linux/iov_iter.h:30 ./include/linux/iov_iter.h:302 ./include/linux/iov_iter.h:330 lib/iov_iter.c:261 lib/iov_iter.c:272) [ 16.867089][ C2] ? __alloc_skb (./arch/x86/include/asm/atomic.h:28 ./include/linux/atomic/atomic-arch-fallback.h:503 ./include/linux/atomic/atomic-instrumented.h:68 net/core/skbuff.c:408 net/core/skbuff.c:720) [ 16.867284][ C2] ? napi_skb_cache_get (net/core/skbuff.c:674) [ 16.867472][ C2] ? _copy_from_iter_flushcache (lib/iov_iter.c:266) [ 16.867692][ C2] ? ref_tracker_get_stats (lib/ref_tracker.c:84) [ 16.867889][ C2] ? netdev_core_pick_tx (net/core/dev.c:4767) [ 16.868077][ C2] ? packet_release (net/packet/af_packet.c:1924) [ 16.868269][ C2] packet_snd (net/packet/af_packet.c:3077 (discriminator 1)) [ 16.868457][ C2] ? tpacket_snd (net/packet/af_packet.c:2941) [ 16.868646][ C2] ? __might_fault (mm/memory.c:7230 (discriminator 6)) [ 16.868846][ C2] ? __might_fault (mm/memory.c:7230 (discriminator 6)) [ 16.869027][ C2] ? __might_fault (mm/memory.c:7230 (discriminator 6)) [ 16.869217][ C2] __sys_sendto (net/socket.c:787 (discriminator 4) net/socket.c:802 (discriminator 4) net/socket.c:2265 (discriminator 4)) [ 16.869399][ C2] ? __ia32_sys_getpeername (net/socket.c:2232) [ 16.869598][ C2] ? sock_ioctl (net/socket.c:1435) [ 16.869799][ C2] ? exc_page_fault (./arch/x86/include/asm/irqflags.h:26 ./arch/x86/include/asm/irqflags.h:109 ./arch/x86/include/asm/irqflags.h:151 arch/x86/mm/fault.c:1480 arch/x86/mm/fault.c:1527) [ 16.869984][ C2] __x64_sys_sendto (net/socket.c:2272 (discriminator 1) net/socket.c:2268 (discriminator 1) net/socket.c:2268 (discriminator 1)) [ 16.870173][ C2] ? trace_irq_enable.constprop.0 (./include/trace/events/preemptirq.h:40 (discriminator 24)) [ 16.870390][ C2] ? lockdep_hardirqs_on (kernel/locking/lockdep.c:4473) [ 16.870583][ C2] ? do_syscall_64 (./arch/x86/include/asm/irqflags.h:42 ./arch/x86/include/asm/irqflags.h:119 ./include/linux/entry-common.h:187 arch/x86/entry/syscall_64.c:89) [ 16.870779][ C2] do_syscall_64 (arch/x86/entry/syscall_64.c:63 (discriminator 1) arch/x86/entry/syscall_64.c:94 (discriminator 1)) [ 16.870963][ C2] ? trace_hardirqs_off (kernel/trace/trace_preemptirq.c:106 (discriminator 9)) [ 16.871146][ C2] ? exc_page_fault (arch/x86/mm/fault.c:1480 (discriminator 3) arch/x86/mm/fault.c:1527 (discriminator 3)) [ 16.871338][ C2] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130) [ 16.871565][ C2] RIP: 0033:0x7f2d82c2722e [ 16.871770][ C2] Code: 4d 89 d8 e8 94 bd 00 00 4c 8b 5d f8 41 8b 93 08 03 00 00 59 5e 48 83 f8 fc 74 11 c9 c3 0f 1f 80 00 00 00 00 48 8b 45 10 0f 05 c3 83 e2 39 83 fa 08 75 e7 e8 03 ff ff ff 0f 1f 00 f3 0f 1e fa All code ======== 0: 4d 89 d8 mov %r11,%r8 3: e8 94 bd 00 00 call 0xbd9c 8: 4c 8b 5d f8 mov -0x8(%rbp),%r11 c: 41 8b 93 08 03 00 00 mov 0x308(%r11),%edx 13: 59 pop %rcx 14: 5e pop %rsi 15: 48 83 f8 fc cmp $0xfffffffffffffffc,%rax 19: 74 11 je 0x2c 1b: c9 leave 1c: c3 ret 1d: 0f 1f 80 00 00 00 00 nopl 0x0(%rax) 24: 48 8b 45 10 mov 0x10(%rbp),%rax 28: 0f 05 syscall 2a:* c9 leave <-- trapping instruction 2b: c3 ret 2c: 83 e2 39 and $0x39,%edx 2f: 83 fa 08 cmp $0x8,%edx 32: 75 e7 jne 0x1b 34: e8 03 ff ff ff call 0xffffffffffffff3c 39: 0f 1f 00 nopl (%rax) 3c: f3 0f 1e fa endbr64 Code starting with the faulting instruction =========================================== 0: c9 leave 1: c3 ret 2: 83 e2 39 and $0x39,%edx 5: 83 fa 08 cmp $0x8,%edx 8: 75 e7 jne 0xfffffffffffffff1 a: e8 03 ff ff ff call 0xffffffffffffff12 f: 0f 1f 00 nopl (%rax) 12: f3 0f 1e fa endbr64 [ 16.872308][ C2] RSP: 002b:00007fff53796800 EFLAGS: 00000202 ORIG_RAX: 000000000000002c [ 16.872573][ C2] RAX: ffffffffffffffda RBX: 000055c719bc9e82 RCX: 00007f2d82c2722e [ 16.872837][ C2] RDX: 00000000000003c5 RSI: 000055c719bc9e82 RDI: 0000000000000005 [ 16.873086][ C2] RBP: 00007fff53796810 R08: 00007fff53796860 R09: 0000000000000014 [ 16.873349][ C2] R10: 0000000000000000 R11: 0000000000000202 R12: 000055c719bc9830 Finger prints: __udp4_lib_err_encap:udp_err:icmp_unreach:icmp_rcv:ip_protocol_deliver_rcu