[ 239.077933][ T5263] devlink (5263) used greatest stack depth: 22544 bytes left [ 239.081968][ T5265] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 239.090149][ T5269] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 239.096369][ T5271] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 239.099782][ T5267] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 242.370261][ T5354] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 242.373846][ T5356] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 242.405295][ T5357] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 242.433818][ T5348] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 242.648766][ T5351] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 242.654067][ T5354] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 242.663012][ T5348] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 242.681916][ T5349] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 243.043842][ T5357] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 243.051767][ T5348] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 243.057739][ T5354] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 243.062861][ T5343] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 243.462004][ T5343] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 243.465768][ T5354] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 243.471029][ T5357] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 243.477444][ T5348] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 243.915637][ T5343] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 243.922946][ T5354] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 243.925459][ T5348] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 244.042671][ T5346] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 244.387505][ T5354] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 244.391150][ T5348] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 244.400643][ T5343] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 244.407369][ T5351] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 244.843702][ T5354] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 244.863940][ T5351] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 244.866727][ T5348] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 244.869213][ T5343] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 245.630015][ T5544] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 245.658153][ T5545] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 245.663342][ T5538] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 245.694103][ T5539] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 246.426924][ T5538] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 246.438194][ T5544] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 246.445452][ T5546] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 246.719674][ T5542] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 246.726353][ T5544] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 246.732638][ T5549] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 246.755269][ T5539] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 246.994470][ T5546] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 246.998859][ T5545] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 247.005873][ T5544] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 247.039816][ T5539] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 247.601577][ T5672] ================================================================== [ 247.601755][ T5672] BUG: KASAN: slab-out-of-bounds in devlink_nl_dumpit+0x370/0x390 [ 247.601901][ T5672] Read of size 8 at addr ff110000026933e0 by task devlink/5672 [ 247.602040][ T5672] [ 247.602088][ T5672] CPU: 3 UID: 0 PID: 5672 Comm: devlink Not tainted 7.0.0-rc2-virtme #1 PREEMPT(full) [ 247.602091][ T5672] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 247.602093][ T5672] Call Trace: [ 247.602094][ T5672] [ 247.602096][ T5672] dump_stack_lvl+0x6f/0xa0 [ 247.602101][ T5672] print_address_description.constprop.0+0x6e/0x300 [ 247.602105][ T5672] print_report+0xfc/0x1fb [ 247.602107][ T5672] ? devlink_nl_dumpit+0x370/0x390 [ 247.602109][ T5672] ? __virt_addr_valid+0x1da/0x430 [ 247.602113][ T5672] ? devlink_nl_dumpit+0x370/0x390 [ 247.602115][ T5672] kasan_report+0xe8/0x120 [ 247.602118][ T5672] ? devlink_nl_dumpit+0x370/0x390 [ 247.602121][ T5672] devlink_nl_dumpit+0x370/0x390 [ 247.602122][ T5672] ? devlink_nl_fill+0x600/0x600 [ 247.602125][ T5672] genl_dumpit+0x101/0x270 [ 247.602129][ T5672] netlink_dump+0x4a1/0x13a0 [ 247.602132][ T5672] ? netlink_lookup+0x1a0/0x1a0 [ 247.602135][ T5672] ? __asan_memset+0x27/0x50 [ 247.602137][ T5672] ? genl_start+0x4ed/0x940 [ 247.602139][ T5672] __netlink_dump_start+0x60d/0x890 [ 247.602142][ T5672] genl_family_rcv_msg_dumpit+0x1aa/0x320 [ 247.602145][ T5672] ? genl_dumpit+0x270/0x270 [ 247.602146][ T5672] ? lock_acquire.part.0+0xbc/0x260 [ 247.602149][ T5672] ? find_held_lock+0x2b/0x80 [ 247.602152][ T5672] ? genl_cmd_full_to_split+0x9a0/0x9a0 [ 247.602154][ T5672] ? genl_family_rcv_msg_doit+0x2c0/0x2c0 [ 247.602156][ T5672] ? genl_release+0x180/0x180 [ 247.602157][ T5672] ? genl_rcv_msg+0x130/0x130 [ 247.602159][ T5672] ? is_bpf_text_address+0x72/0x110 [ 247.602162][ T5672] ? kernel_text_address+0x142/0x160 [ 247.602165][ T5672] genl_family_rcv_msg+0x2de/0x5b0 [ 247.602167][ T5672] ? genl_family_rcv_msg_dumpit+0x320/0x320 [ 247.602169][ T5672] ? rcu_lockdep_current_cpu_online+0x39/0x1b0 [ 247.602172][ T5672] ? devlink_nl_get_doit+0x1d0/0x1d0 [ 247.602174][ T5672] ? __lock_acquire+0x577/0xc10 [ 247.602176][ T5672] genl_rcv_msg+0xa3/0x130 [ 247.602178][ T5672] netlink_rcv_skb+0x123/0x380 [ 247.602180][ T5672] ? genl_family_rcv_msg+0x5b0/0x5b0 [ 247.602182][ T5672] ? netlink_ack+0xcc0/0xcc0 [ 247.602185][ T5672] ? netlink_deliver_tap+0xc5/0x330 [ 247.602187][ T5672] ? netlink_deliver_tap+0x13f/0x330 [ 247.602189][ T5672] genl_rcv+0x28/0x40 [ 247.602190][ T5672] netlink_unicast+0x4a3/0x770 [ 247.602193][ T5672] ? netlink_attachskb+0x810/0x810 [ 247.602194][ T5672] ? __alloc_skb+0x4c7/0x5f0 [ 247.602197][ T5672] ? napi_skb_cache_get+0x7a0/0x7a0 [ 247.602198][ T5672] ? __lock_acquire+0x577/0xc10 [ 247.602202][ T5672] netlink_sendmsg+0x735/0xc60 [ 247.602204][ T5672] ? netlink_unicast+0x770/0x770 [ 247.602207][ T5672] ? __might_fault+0x97/0x140 [ 247.602209][ T5672] ? __might_fault+0x97/0x140 [ 247.602212][ T5672] __sys_sendto+0x265/0x390 [ 247.602215][ T5672] ? __ia32_sys_getpeername+0xd0/0xd0 [ 247.602220][ T5672] ? exc_page_fault+0x6f/0xd0 [ 247.602225][ T5672] __x64_sys_sendto+0xe4/0x1f0 [ 247.602227][ T5672] ? trace_irq_enable.constprop.0+0x13c/0x190 [ 247.602230][ T5672] ? lockdep_hardirqs_on+0x84/0x130 [ 247.602231][ T5672] ? do_syscall_64+0x87/0xfc0 [ 247.602233][ T5672] do_syscall_64+0x117/0xfc0 [ 247.602234][ T5672] ? exc_page_fault+0xaf/0xd0 [ 247.602235][ T5672] entry_SYSCALL_64_after_hwframe+0x4b/0x53 [ 247.602238][ T5672] RIP: 0033:0x7f8bf3612c5e [ 247.602241][ T5672] Code: 4d 89 d8 e8 34 bd 00 00 4c 8b 5d f8 41 8b 93 08 03 00 00 59 5e 48 83 f8 fc 74 11 c9 c3 0f 1f 80 00 00 00 00 48 8b 45 10 0f 05 c3 83 e2 39 83 fa 08 75 e7 e8 13 ff ff ff 0f 1f 00 f3 0f 1e fa [ 247.602243][ T5672] RSP: 002b:00007ffe4d055570 EFLAGS: 00000202 ORIG_RAX: 000000000000002c [ 247.602246][ T5672] RAX: ffffffffffffffda RBX: 000000003abf4310 RCX: 00007f8bf3612c5e [ 247.602247][ T5672] RDX: 0000000000000014 RSI: 000000003abf4530 RDI: 0000000000000005 [ 247.602248][ T5672] RBP: 00007ffe4d055580 R08: 00007f8bf389d980 R09: 000000000000000c [ 247.602249][ T5672] R10: 0000000000000000 R11: 0000000000000202 R12: 0000000000407ef0 [ 247.602250][ T5672] R13: 000000003abf4310 R14: 0000000000000000 R15: 0000000000000001 [ 247.602253][ T5672] [ 247.602254][ T5672] [ 247.609299][ T5672] Allocated by task 5672: [ 247.609413][ T5672] kasan_save_stack+0x30/0x50 [ 247.609504][ T5672] kasan_save_track+0x14/0x30 [ 247.609593][ T5672] __kasan_kmalloc+0x7b/0x90 [ 247.609682][ T5672] __kmalloc_noprof+0x2a8/0x730 [ 247.609772][ T5672] genl_family_rcv_msg_attrs_parse.isra.0+0xa0/0x2c0 [ 247.609882][ T5672] genl_start+0x14a/0x940 [ 247.609948][ T5672] __netlink_dump_start+0x562/0x890 [ 247.610039][ T5672] genl_family_rcv_msg_dumpit+0x1aa/0x320 [ 247.610128][ T5672] genl_family_rcv_msg+0x2de/0x5b0 [ 247.610219][ T5672] genl_rcv_msg+0xa3/0x130 [ 247.610310][ T5672] netlink_rcv_skb+0x123/0x380 [ 247.610402][ T5672] genl_rcv+0x28/0x40 [ 247.610513][ T5672] netlink_unicast+0x4a3/0x770 [ 247.610601][ T5672] netlink_sendmsg+0x735/0xc60 [ 247.610692][ T5672] __sys_sendto+0x265/0x390 [ 247.610783][ T5672] __x64_sys_sendto+0xe4/0x1f0 [ 247.610915][ T5672] do_syscall_64+0x117/0xfc0 [ 247.611032][ T5672] entry_SYSCALL_64_after_hwframe+0x4b/0x53 [ 247.611182][ T5672] [ 247.611233][ T5672] The buggy address belongs to the object at ff110000026933d0 [ 247.611233][ T5672] which belongs to the cache kmalloc-16 of size 16 [ 247.611513][ T5672] The buggy address is located 0 bytes to the right of [ 247.611513][ T5672] allocated 16-byte region [ff110000026933d0, ff110000026933e0) [ 247.611829][ T5672] [ 247.611875][ T5672] The buggy address belongs to the physical page: [ 247.611985][ T5672] page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x2693 [ 247.612194][ T5672] flags: 0x80000000000000(node=0|zone=1) [ 247.612287][ T5672] page_type: f5(slab) [ 247.612360][ T5672] raw: 0080000000000000 ff1100000103c7c0 ffd4000000125f90 ffd400000012b0d0 [ 247.612564][ T5672] raw: 0000000000000000 0000000000190019 00000000f5000000 0000000000000000 [ 247.612722][ T5672] page dumped because: kasan: bad access detected [ 247.612875][ T5672] [ 247.612920][ T5672] Memory state around the buggy address: [ 247.613015][ T5672] ff11000002693280: fc fc 00 04 fc fc fc fc fc fc fc fc fc fc fc fc [ 247.613147][ T5672] ff11000002693300: fc fc fc fc fc fc 00 04 fc fc fc fc fc fc fc fc [ 247.613277][ T5672] >ff11000002693380: fc fc fc fc fc fc fc fc fc fc 00 00 fc fc fc fc [ 247.613438][ T5672] ^ [ 247.613575][ T5672] ff11000002693400: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fa fb [ 247.613778][ T5672] ff11000002693480: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc [ 247.613912][ T5672] ================================================================== [ 247.617558][ T5672] Disabling lock debugging due to kernel taint [ 247.641186][ T5545] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 247.644423][ T5546] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 247.646803][ T5544] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 247.649217][ T5538] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 250.377941][ T5918] Failed to register fib notifier [ 250.456994][ T5892] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 250.462680][ T5887] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 250.463450][ T5889] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 250.476644][ T5894] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 254.612871][ T6364] netdevsim netdevsim10 eni10npf0vf0: renamed from eth0 [ 254.625909][ T6367] netdevsim netdevsim10 eni10npf0vf1: renamed from eth1 [ 254.638283][ T6368] netdevsim netdevsim10 eni10npf0vf2: renamed from eth2 [ 254.641331][ T6370] netdevsim netdevsim10 eni10npf0vf3: renamed from eth3