[ 619.931918][ T9214] devlink (9214) used greatest stack depth: 22544 bytes left [ 619.936849][ T9221] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 619.941048][ T9223] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 619.943016][ T9219] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 619.948151][ T9217] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 623.112180][ T9300] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 623.117743][ T9302] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 623.152978][ T9306] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 623.186480][ T9308] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 623.468696][ T9286] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 623.476192][ T9306] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 623.481084][ T9287] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 623.552983][ T9308] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 623.846865][ T9308] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 623.860253][ T9287] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 623.864854][ T9291] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 623.917781][ T9306] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 624.210707][ T9286] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 624.220717][ T9287] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 624.226851][ T9308] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 624.235152][ T9306] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 624.675301][ T9308] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 624.683854][ T9291] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 624.688676][ T9286] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 624.692385][ T9306] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 625.058975][ T9300] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 625.066614][ T9306] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 625.071600][ T9286] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 625.074754][ T9308] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 625.542454][ T9286] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 625.548678][ T9308] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 625.552301][ T9306] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 625.554583][ T9287] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 626.176462][ T9498] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 626.197506][ T9493] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 626.216306][ T9496] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 626.239716][ T9499] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 627.118674][ T9492] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 627.124961][ T9491] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 627.135243][ T9487] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 627.138524][ T9493] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 627.398771][ T9492] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 627.419026][ T9484] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 627.677153][ T9492] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 627.697894][ T9487] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 627.735750][ T9493] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 627.756032][ T9484] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 628.171936][ T9621] ================================================================== [ 628.172116][ T9621] BUG: KASAN: slab-out-of-bounds in devlink_nl_dumpit+0x370/0x390 [ 628.172266][ T9621] Read of size 8 at addr ff11000001cfb3e0 by task devlink/9621 [ 628.172411][ T9621] [ 628.172461][ T9621] CPU: 2 UID: 0 PID: 9621 Comm: devlink Not tainted 7.0.0-rc2-virtme #1 PREEMPT(full) [ 628.172464][ T9621] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011 [ 628.172466][ T9621] Call Trace: [ 628.172468][ T9621] [ 628.172469][ T9621] dump_stack_lvl+0x6f/0xa0 [ 628.172474][ T9621] print_address_description.constprop.0+0x6e/0x300 [ 628.172479][ T9621] print_report+0xfc/0x1fb [ 628.172481][ T9621] ? devlink_nl_dumpit+0x370/0x390 [ 628.172483][ T9621] ? __virt_addr_valid+0x1da/0x430 [ 628.172487][ T9621] ? devlink_nl_dumpit+0x370/0x390 [ 628.172489][ T9621] kasan_report+0xe8/0x120 [ 628.172493][ T9621] ? devlink_nl_dumpit+0x370/0x390 [ 628.172495][ T9621] devlink_nl_dumpit+0x370/0x390 [ 628.172497][ T9621] ? devlink_nl_fill+0x600/0x600 [ 628.172499][ T9621] genl_dumpit+0x101/0x270 [ 628.172503][ T9621] netlink_dump+0x4a1/0x13a0 [ 628.172506][ T9621] ? netlink_lookup+0x1a0/0x1a0 [ 628.172510][ T9621] ? __asan_memset+0x27/0x50 [ 628.172512][ T9621] ? genl_start+0x4ed/0x940 [ 628.172515][ T9621] __netlink_dump_start+0x60d/0x890 [ 628.172517][ T9621] genl_family_rcv_msg_dumpit+0x1aa/0x320 [ 628.172520][ T9621] ? genl_dumpit+0x270/0x270 [ 628.172522][ T9621] ? lock_acquire.part.0+0xbc/0x260 [ 628.172524][ T9621] ? find_held_lock+0x2b/0x80 [ 628.172527][ T9621] ? genl_cmd_full_to_split+0x9a0/0x9a0 [ 628.172529][ T9621] ? genl_family_rcv_msg_doit+0x2c0/0x2c0 [ 628.172531][ T9621] ? genl_release+0x180/0x180 [ 628.172533][ T9621] ? genl_rcv_msg+0x130/0x130 [ 628.172535][ T9621] ? is_bpf_text_address+0x72/0x110 [ 628.172539][ T9621] ? kernel_text_address+0x142/0x160 [ 628.172543][ T9621] genl_family_rcv_msg+0x2de/0x5b0 [ 628.172546][ T9621] ? genl_family_rcv_msg_dumpit+0x320/0x320 [ 628.172548][ T9621] ? rcu_lockdep_current_cpu_online+0x39/0x1b0 [ 628.172551][ T9621] ? devlink_nl_get_doit+0x1d0/0x1d0 [ 628.172553][ T9621] ? __lock_acquire+0x577/0xc10 [ 628.172556][ T9621] genl_rcv_msg+0xa3/0x130 [ 628.172558][ T9621] netlink_rcv_skb+0x123/0x380 [ 628.172560][ T9621] ? genl_family_rcv_msg+0x5b0/0x5b0 [ 628.172562][ T9621] ? netlink_ack+0xcc0/0xcc0 [ 628.172565][ T9621] ? netlink_deliver_tap+0xc5/0x330 [ 628.172567][ T9621] ? netlink_deliver_tap+0x13f/0x330 [ 628.172569][ T9621] genl_rcv+0x28/0x40 [ 628.172571][ T9621] netlink_unicast+0x4a3/0x770 [ 628.172573][ T9621] ? netlink_attachskb+0x810/0x810 [ 628.172575][ T9621] ? __alloc_skb+0x4c7/0x5f0 [ 628.172578][ T9621] ? napi_skb_cache_get+0x7a0/0x7a0 [ 628.172579][ T9621] ? __lock_acquire+0x577/0xc10 [ 628.172581][ T9621] netlink_sendmsg+0x735/0xc60 [ 628.172583][ T9621] ? netlink_unicast+0x770/0x770 [ 628.172586][ T9621] ? __might_fault+0x97/0x140 [ 628.172588][ T9621] ? __might_fault+0x97/0x140 [ 628.172591][ T9621] __sys_sendto+0x265/0x390 [ 628.172594][ T9621] ? __ia32_sys_getpeername+0xd0/0xd0 [ 628.172599][ T9621] ? exc_page_fault+0x6f/0xd0 [ 628.172604][ T9621] __x64_sys_sendto+0xe4/0x1f0 [ 628.172606][ T9621] ? trace_irq_enable.constprop.0+0x13c/0x190 [ 628.172609][ T9621] ? lockdep_hardirqs_on+0x84/0x130 [ 628.172611][ T9621] ? do_syscall_64+0x87/0xfc0 [ 628.172612][ T9621] do_syscall_64+0x117/0xfc0 [ 628.172614][ T9621] ? exc_page_fault+0xaf/0xd0 [ 628.172616][ T9621] entry_SYSCALL_64_after_hwframe+0x4b/0x53 [ 628.172618][ T9621] RIP: 0033:0x7f2d4379cc5e [ 628.172621][ T9621] Code: 4d 89 d8 e8 34 bd 00 00 4c 8b 5d f8 41 8b 93 08 03 00 00 59 5e 48 83 f8 fc 74 11 c9 c3 0f 1f 80 00 00 00 00 48 8b 45 10 0f 05 c3 83 e2 39 83 fa 08 75 e7 e8 13 ff ff ff 0f 1f 00 f3 0f 1e fa [ 628.172623][ T9621] RSP: 002b:00007fff1bc610e0 EFLAGS: 00000202 ORIG_RAX: 000000000000002c [ 628.172627][ T9621] RAX: ffffffffffffffda RBX: 000000002b052310 RCX: 00007f2d4379cc5e [ 628.172628][ T9621] RDX: 0000000000000014 RSI: 000000002b052530 RDI: 0000000000000005 [ 628.172629][ T9621] RBP: 00007fff1bc610f0 R08: 00007f2d43a27980 R09: 000000000000000c [ 628.172630][ T9621] R10: 0000000000000000 R11: 0000000000000202 R12: 0000000000407ef0 [ 628.172631][ T9621] R13: 000000002b052310 R14: 0000000000000000 R15: 0000000000000001 [ 628.172634][ T9621] [ 628.172635][ T9621] [ 628.179797][ T9621] Allocated by task 9621: [ 628.179872][ T9621] kasan_save_stack+0x30/0x50 [ 628.179970][ T9621] kasan_save_track+0x14/0x30 [ 628.180063][ T9621] __kasan_kmalloc+0x7b/0x90 [ 628.180159][ T9621] __kmalloc_noprof+0x2a8/0x730 [ 628.180257][ T9621] genl_family_rcv_msg_attrs_parse.isra.0+0xa0/0x2c0 [ 628.180376][ T9621] genl_start+0x14a/0x940 [ 628.180446][ T9621] __netlink_dump_start+0x562/0x890 [ 628.180545][ T9621] genl_family_rcv_msg_dumpit+0x1aa/0x320 [ 628.180644][ T9621] genl_family_rcv_msg+0x2de/0x5b0 [ 628.180738][ T9621] genl_rcv_msg+0xa3/0x130 [ 628.180832][ T9621] netlink_rcv_skb+0x123/0x380 [ 628.180924][ T9621] genl_rcv+0x28/0x40 [ 628.180994][ T9621] netlink_unicast+0x4a3/0x770 [ 628.181086][ T9621] netlink_sendmsg+0x735/0xc60 [ 628.181185][ T9621] __sys_sendto+0x265/0x390 [ 628.181288][ T9621] __x64_sys_sendto+0xe4/0x1f0 [ 628.181402][ T9621] do_syscall_64+0x117/0xfc0 [ 628.181495][ T9621] entry_SYSCALL_64_after_hwframe+0x4b/0x53 [ 628.181616][ T9621] [ 628.181663][ T9621] The buggy address belongs to the object at ff11000001cfb3d0 [ 628.181663][ T9621] which belongs to the cache kmalloc-16 of size 16 [ 628.181891][ T9621] The buggy address is located 0 bytes to the right of [ 628.181891][ T9621] allocated 16-byte region [ff11000001cfb3d0, ff11000001cfb3e0) [ 628.182148][ T9621] [ 628.182197][ T9621] The buggy address belongs to the physical page: [ 628.182314][ T9621] page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x1cfb [ 628.182485][ T9621] flags: 0x80000000000000(node=0|zone=1) [ 628.182587][ T9621] page_type: f5(slab) [ 628.182665][ T9621] raw: 0080000000000000 ff1100000103c7c0 ffd400000009b450 ffd4000000320750 [ 628.182833][ T9621] raw: 0000000000000000 0000000000190019 00000000f5000000 0000000000000000 [ 628.182998][ T9621] page dumped because: kasan: bad access detected [ 628.183116][ T9621] [ 628.183164][ T9621] Memory state around the buggy address: [ 628.183257][ T9621] ff11000001cfb280: fc fc fa fb fc fc fc fc fc fc fc fc fc fc fc fc [ 628.183397][ T9621] ff11000001cfb300: fc fc fc fc fc fc 00 05 fc fc fc fc fc fc fc fc [ 628.183535][ T9621] >ff11000001cfb380: fc fc fc fc fc fc fc fc fc fc 00 00 fc fc fc fc [ 628.183672][ T9621] ^ [ 628.183807][ T9621] ff11000001cfb400: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fa fb [ 628.183942][ T9621] ff11000001cfb480: fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc fc [ 628.184076][ T9621] ================================================================== [ 628.185148][ T9621] Disabling lock debugging due to kernel taint [ 628.215027][ T9484] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 628.218150][ T9493] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 628.224058][ T9492] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 628.228157][ T9490] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 630.963857][ T9874] Failed to register fib notifier [ 631.047856][ T9845] netdevsim netdevsim10 eni10np2: renamed from eth1 [ 631.052462][ T9839] netdevsim netdevsim10 eni10np1: renamed from eth0 [ 631.053440][ T9844] netdevsim netdevsim10 eni10np3: renamed from eth2 [ 631.136680][ T9841] netdevsim netdevsim10 eni10np4: renamed from eth3 [ 635.021912][T10334] netdevsim netdevsim10 eni10npf0vf0: renamed from eth0 [ 635.041178][T10335] netdevsim netdevsim10 eni10npf0vf1: renamed from eth1 [ 635.044271][T10339] netdevsim netdevsim10 eni10npf0vf3: renamed from eth3 [ 635.047355][T10338] netdevsim netdevsim10 eni10npf0vf2: renamed from eth2