[50355.077325] Here I am: rose_remove_node:209
[50355.077396] ==================================================================
[50355.077411] BUG: KASAN: slab-use-after-free in lock_timer_base (kernel/time/timer.c:1000 (discriminator 2))
[50355.077447] Read of size 4 at addr ffff888133567998 by task ax25ipd/2247
[50355.077468] CPU: 1 UID: 0 PID: 2247 Comm: ax25ipd Not tainted 6.16.4-local-dirty #3 PREEMPT(voluntary)
[50355.077481] Hardware name: To be filled by O.E.M. To be filled by O.E.M./CK3, BIOS 5.011 09/16/2020
[50355.077486] Call Trace:
[50355.077489]
[50355.077494] dump_stack_lvl (lib/dump_stack.c:123)
[50355.077510] print_report (mm/kasan/report.c:379 mm/kasan/report.c:482)
[50355.077523] ? __pfx__raw_spin_lock_irqsave (kernel/locking/spinlock.c:161)
[50355.077535] ? unregister_netdevice_queue (net/core/dev.c:11998)
[50355.077547] ? kasan_complete_mode_report_info (mm/kasan/report_generic.c:179 (discriminator 14))
[50355.077561] kasan_report (mm/kasan/report.c:597)
[50355.077567] ? lock_timer_base (kernel/time/timer.c:1000 (discriminator 2))
[50355.077581] ? lock_timer_base (kernel/time/timer.c:1000 (discriminator 2))
[50355.077596] __asan_report_load4_noabort (mm/kasan/report_generic.c:380)
[50355.077607] lock_timer_base (kernel/time/timer.c:1000 (discriminator 2))
[50355.077618] __timer_delete_sync (kernel/time/timer.c:1461 kernel/time/timer.c:1620)
[50355.077628] ? __pfx___timer_delete_sync (kernel/time/timer.c:1591)
[50355.077635] ? __kasan_slab_free (mm/kasan/common.c:281)
[50355.077644] timer_delete_sync (kernel/time/timer.c:1676)
[50355.077653] rose_remove_neigh (net/rose/rose_route.c:237) rose
[50355.077683] rose_rt_device_down (./include/linux/instrumented.h:96 ./include/linux/atomic/atomic-instrumented.h:400 ./include/linux/refcount.h:389 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/rose.h:162 net/rose/rose_route.c:520) rose
[50355.077700] ? _raw_spin_unlock_bh (kernel/locking/spinlock.c:211)
[50355.077714] ? rose_kill_by_neigh (net/rose/af_rose.c:178) rose
[50355.077735] rose_device_event (net/rose/af_rose.c:249) rose
[50355.077752] notifier_call_chain (kernel/notifier.c:87)
[50355.077766] ? nlmsg_notify (./include/net/netlink.h:1151 ./include/net/netlink.h:1170 net/netlink/af_netlink.c:2595)
[50355.077783] raw_notifier_call_chain (kernel/notifier.c:454)
[50355.077797] call_netdevice_notifiers_info (net/core/dev.c:2231)
[50355.077812] dev_close_many (net/core/dev.c:1786)
[50355.077819] ? __pfx_stack_trace_consume_entry (kernel/stacktrace.c:83)
[50355.077828] ? __pfx_dev_close_many (net/core/dev.c:1773)
[50355.077836] ? update_stack_state (./arch/x86/include/asm/unwind.h:111 (discriminator 1) ./arch/x86/include/asm/unwind.h:127 (discriminator 1) arch/x86/kernel/unwind_frame.c:253 (discriminator 1))
[50355.077850] unregister_netdevice_many_notify (net/core/dev.c:12061)
[50355.077862] ? __pfx_unregister_netdevice_many_notify (net/core/dev.c:12016)
[50355.077870] ? is_bpf_text_address (kernel/bpf/core.c:773 (discriminator 1))
[50355.077879] ? kernel_text_address (kernel/extable.c:125 (discriminator 1) kernel/extable.c:94 (discriminator 1))
[50355.077891] ? __kernel_text_address (kernel/extable.c:79 (discriminator 1))
[50355.077899] ? unwind_get_return_address (arch/x86/kernel/unwind_frame.c:19 (discriminator 1))
[50355.077909] ? __pfx_stack_trace_consume_entry (kernel/stacktrace.c:83)
[50355.077917] ? arch_stack_walk (arch/x86/kernel/stacktrace.c:26)
[50355.077931] unregister_netdevice_queue (net/core/dev.c:11998)
[50355.077941] ? __pfx_unregister_netdevice_queue (net/core/dev.c:11987)
[50355.077948] ? __kasan_check_write (mm/kasan/shadow.c:38)
[50355.077959] ? rtnl_lock (net/core/rtnetlink.c:81)
[50355.077972] unregister_netdev (./include/net/net_namespace.h:409 ./include/linux/netdevice.h:2713 net/core/dev.c:2158 net/core/dev.c:12171)
[50355.077979] mkiss_close (drivers/net/hamradio/mkiss.c:800) mkiss
[50355.077993] tty_ldisc_close (drivers/tty/tty_ldisc.c:457)
[50355.078003] tty_ldisc_hangup (drivers/tty/tty_ldisc.c:614 drivers/tty/tty_ldisc.c:729)
[50355.078012] __tty_hangup.part.0 (./include/linux/spinlock.h:376 drivers/tty/tty_io.c:623)
[50355.078022] ? mutex_unlock (./arch/x86/include/asm/atomic64_64.h:101 (discriminator 5) ./include/linux/atomic/atomic-arch-fallback.h:4329 (discriminator 5) ./include/linux/atomic/atomic-long.h:1506 (discriminator 5) ./include/linux/atomic/atomic-instrumented.h:4481 (discriminator 5) kernel/locking/mutex.c:167 (discriminator 5) kernel/locking/mutex.c:537 (discriminator 5))
[50355.078035] tty_vhangup (drivers/tty/tty_io.c:692)
[50355.078044] pty_close (drivers/tty/pty.c:81)
[50355.078056] tty_release (drivers/tty/tty_io.c:1748)
[50355.078063] ? __pfx_locks_remove_file (fs/locks.c:2686)
[50355.078074] __fput (fs/file_table.c:465)
[50355.078084] ? _raw_spin_lock_irq (./arch/x86/include/asm/atomic.h:107 (discriminator 4) ./include/linux/atomic/atomic-arch-fallback.h:2170 (discriminator 4) ./include/linux/atomic/atomic-instrumented.h:1302 (discriminator 4) ./include/asm-generic/qspinlock.h:111 (discriminator 4) ./include/linux/spinlock.h:187 (discriminator 4) ./include/linux/spinlock_api_smp.h:120 (discriminator 4) kernel/locking/spinlock.c:170 (discriminator 4))
[50355.078092] ? __pfx__raw_spin_lock_irq (kernel/locking/spinlock.c:169)
[50355.078102] ____fput (fs/file_table.c:494)
[50355.078110] task_work_run (kernel/task_work.c:228)
[50355.078119] ? __pfx_task_work_run (kernel/task_work.c:195)
[50355.078128] do_exit (kernel/exit.c:965)
[50355.078140] ? do_wp_page (mm/memory.c:4017)
[50355.078153] ? __pfx_do_exit (kernel/exit.c:897)
[50355.078165] ? __pfx_zap_other_threads (kernel/signal.c:1338)
[50355.078172] ? __pfx_do_wp_page (mm/memory.c:3940)
[50355.078182] do_group_exit (kernel/exit.c:1086)
[50355.078192] __x64_sys_exit_group (kernel/exit.c:1114)
[50355.078200] x64_sys_call (arch/x86/entry/syscall_64.c:37)
[50355.078209] do_syscall_64 (arch/x86/entry/syscall_64.c:63 (discriminator 1) arch/x86/entry/syscall_64.c:94 (discriminator 1))
[50355.078219] ? __handle_mm_fault (mm/memory.c:6085 mm/memory.c:6212)
[50355.078227] ? __pfx___handle_mm_fault (mm/memory.c:6121)
[50355.078235] ? __kasan_check_read (mm/kasan/shadow.c:32)
[50355.078243] ? count_memcg_events (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 mm/memcontrol.c:560 mm/memcontrol.c:585 mm/memcontrol.c:564 mm/memcontrol.c:848)
[50355.078254] ? handle_mm_fault (mm/memory.c:6254 mm/memory.c:6407)
[50355.078265] ? __kasan_check_read (mm/kasan/shadow.c:32)
[50355.078274] ? fpregs_assert_state_consistent (./arch/x86/include/asm/bitops.h:206 (discriminator 1) ./arch/x86/include/asm/bitops.h:238 (discriminator 1) ./include/asm-generic/bitops/instrumented-non-atomic.h:142 (discriminator 1) ./include/linux/thread_info.h:126 (discriminator 1) arch/x86/kernel/fpu/core.c:862 (discriminator 1))
[50355.078286] ? irqentry_exit_to_user_mode (./arch/x86/include/asm/entry-common.h:65 (discriminator 1) ./include/linux/entry-common.h:332 (discriminator 1) kernel/entry/common.c:184 (discriminator 1))
[50355.078298] ? irqentry_exit (kernel/entry/common.c:320)
[50355.078308] ? exc_page_fault (arch/x86/mm/fault.c:1536)
[50355.078316] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130)
[50355.078326] RIP: 0033:0x76e08b0ee21d
[50355.078335] Code: Unable to access opcode bytes at 0x76e08b0ee1f3.
Code starting with the faulting instruction
===========================================
[50355.078340] RSP: 002b:00007ffdcf08da78 EFLAGS: 00000206 ORIG_RAX: 00000000000000e7
[50355.078352] RAX: ffffffffffffffda RBX: 000076e08b204fa8 RCX: 000076e08b0ee21d
[50355.078357] RDX: 00000000000000e7 RSI: ffffffffffffff88 RDI: 0000000000000001
[50355.078361] RBP: 00007ffdcf08dad0 R08: 00007ffdcf08da18 R09: 0000000000000000
[50355.078366] R10: 00007ffdcf08d98f R11: 0000000000000206 R12: 0000000000000001
[50355.078371] R13: 0000000000000000 R14: 0000000000000001 R15: 000076e08b204fc0
[50355.078380]
[50355.078611] Allocated by task 2376 on cpu 1 at 80.019686s:
[50355.078625] kasan_save_stack (mm/kasan/common.c:48)
[50355.078648] kasan_save_track (mm/kasan/common.c:68)
[50355.078659] kasan_save_alloc_info (mm/kasan/generic.c:563)
[50355.078672] __kasan_kmalloc (mm/kasan/common.c:377 mm/kasan/common.c:394)
[50355.078684] __kmalloc_cache_noprof (mm/slub.c:4366)
[50355.078705] rose_rt_ioctl (./include/linux/slab.h:905 net/rose/rose_route.c:85 net/rose/rose_route.c:760) rose
[50355.078731] rose_ioctl (net/rose/af_rose.c:1387) rose
[50355.078747] sock_do_ioctl (net/socket.c:1198)
[50355.078764] sock_ioctl (net/socket.c:1316)
[50355.078772] __x64_sys_ioctl (fs/ioctl.c:52 fs/ioctl.c:907 fs/ioctl.c:893 fs/ioctl.c:893)
[50355.078786] x64_sys_call (arch/x86/entry/syscall_64.c:41)
[50355.078803] do_syscall_64 (arch/x86/entry/syscall_64.c:63 (discriminator 1) arch/x86/entry/syscall_64.c:94 (discriminator 1))
[50355.078818] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130)
[50355.078833] Freed by task 2247 on cpu 1 at 50355.077393s:
[50355.078842] kasan_save_stack (mm/kasan/common.c:48)
[50355.078856] kasan_save_track (mm/kasan/common.c:68)
[50355.078862] kasan_save_free_info (mm/kasan/generic.c:579 (discriminator 1))
[50355.078871] __kasan_slab_free (mm/kasan/common.c:271)
[50355.078879] kfree (mm/slub.c:4648 (discriminator 3) mm/slub.c:4847 (discriminator 3))
[50355.078893] rose_rt_device_down (./include/net/rose.h:166 ./include/net/rose.h:160 net/rose/rose_route.c:512) rose
[50355.078910] rose_device_event (net/rose/af_rose.c:249) rose
[50355.078923] notifier_call_chain (kernel/notifier.c:87)
[50355.078936] raw_notifier_call_chain (kernel/notifier.c:454)
[50355.078947] call_netdevice_notifiers_info (net/core/dev.c:2231)
[50355.078957] dev_close_many (net/core/dev.c:1786)
[50355.078965] unregister_netdevice_many_notify (net/core/dev.c:12061)
[50355.078973] unregister_netdevice_queue (net/core/dev.c:11998)
[50355.078982] unregister_netdev (./include/net/net_namespace.h:409 ./include/linux/netdevice.h:2713 net/core/dev.c:2158 net/core/dev.c:12171)
[50355.078989] mkiss_close (drivers/net/hamradio/mkiss.c:800) mkiss
[50355.078999] tty_ldisc_close (drivers/tty/tty_ldisc.c:457)
[50355.079008] tty_ldisc_hangup (drivers/tty/tty_ldisc.c:614 drivers/tty/tty_ldisc.c:729)
[50355.079014] __tty_hangup.part.0 (./include/linux/spinlock.h:376 drivers/tty/tty_io.c:623)
[50355.079026] tty_vhangup (drivers/tty/tty_io.c:692)
[50355.079034] pty_close (drivers/tty/pty.c:81)
[50355.079046] tty_release (drivers/tty/tty_io.c:1748)
[50355.079053] __fput (fs/file_table.c:465)
[50355.079066] ____fput (fs/file_table.c:494)
[50355.079076] task_work_run (kernel/task_work.c:228)
[50355.079087] do_exit (kernel/exit.c:965)
[50355.079096] do_group_exit (kernel/exit.c:1086)
[50355.079103] __x64_sys_exit_group (kernel/exit.c:1114)
[50355.079113] x64_sys_call (arch/x86/entry/syscall_64.c:37)
[50355.079127] do_syscall_64 (arch/x86/entry/syscall_64.c:63 (discriminator 1) arch/x86/entry/syscall_64.c:94 (discriminator 1))
[50355.079140] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130)
[50355.079156] The buggy address belongs to the object at ffff888133567900
which belongs to the cache kmalloc-rnd-15-192 of size 192
[50355.079165] The buggy address is located 152 bytes inside of
freed 192-byte region [ffff888133567900, ffff8881335679c0)
[50355.079178] The buggy address belongs to the physical page:
[50355.079189] page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x133567
[50355.079201] ksm flags: 0x17ffffc0000000(node=0|zone=2|lastcpupid=0x1fffff)
[50355.079213] page_type: f5(slab)
[50355.079225] raw: 0017ffffc0000000 ffff888100059cc0 ffffea0004c60380 dead000000000003
[50355.079234] raw: 0000000000000000 0000000000100010 00000000f5000000 0000000000000000
[50355.079240] page dumped because: kasan: bad access detected
[50355.079250] Memory state around the buggy address:
[50355.079257] ffff888133567880: 00 00 00 fc fc fc fc fc fc fc fc fc fc fc fc fc
[50355.079265] ffff888133567900: fa fb fb fb fb fb fb fb fb fb fb fb fb fb fb fb
[50355.079272] >ffff888133567980: fb fb fb fb fb fb fb fb fc fc fc fc fc fc fc fc
[50355.079278] ^
[50355.079285] ffff888133567a00: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
[50355.079292] ffff888133567a80: 00 00 fc fc fc fc fc fc fc fc fc fc fc fc fc fc
[50355.079298] ==================================================================
[50355.079335] Disabling lock debugging due to kernel taint
[50355.079345] ------------[ cut here ]------------
[50355.079351] refcount_t: underflow; use-after-free.
[50355.079389] WARNING: CPU: 1 PID: 2247 at lib/refcount.c:28 refcount_warn_saturate (lib/refcount.c:28 (discriminator 1))
[50355.079405] Modules linked in: netrom mkiss rose ax25 snd_seq_dummy snd_hrtimer cmac nls_utf8 cifs cifs_arc4 nls_ucs2_utils netfs cifs_md4 snd_hda_codec_hdmi x86_pkg_temp_thermal intel_powerclamp coretemp i915 qrtr kvm_intel snd_hda_codec_realtek snd_hda_codec_generic kvm snd_hda_scodec_component snd_hda_intel snd_intel_dspcfg snd_hda_codec spi_nor snd_hwdep snd_hda_core mtd snd_pcm at24 mei_hdcp mei_pxp spi_intel_platform spi_intel intel_rapl_msr irqbypass snd_seq polyval_clmulni ghash_clmulni_intel aesni_intel binfmt_misc snd_seq_device rapl i2c_algo_bit processor_thermal_device_pci_legacy drm_buddy intel_soc_dts_iosf intel_cstate ttm processor_thermal_device processor_thermal_wt_hint snd_timer i2c_i801 platform_temperature_control i2c_smbus snd processor_thermal_rfim intel_pch_thermal mei_me processor_thermal_rapl lpc_ich intel_rapl_common soundcore mei drm_display_helper processor_thermal_wt_req intel_pmc_core processor_thermal_power_floor processor_thermal_mbox int340x_thermal_zone pmt_telemetry pmt_class
[50355.079675] intel_pmc_ssram_telemetry video acpi_pad wmi intel_vsec nls_iso8859_1 input_leds mac_hid sch_fq_codel msr parport_pc ppdev lp parport efi_pstore nfnetlink dmi_sysfs autofs4 r8169 ahci realtek libahci hid_generic usbhid hid uas usb_storage [last unloaded: mkiss]
[50355.079783] CPU: 1 UID: 0 PID: 2247 Comm: ax25ipd Tainted: G B 6.16.4-local-dirty #3 PREEMPT(voluntary)
[50355.079798] Tainted: [B]=BAD_PAGE
[50355.079804] Hardware name: To be filled by O.E.M. To be filled by O.E.M./CK3, BIOS 5.011 09/16/2020
[50355.079811] RIP: 0010:refcount_warn_saturate (lib/refcount.c:28 (discriminator 1))
[50355.079821] Code: eb 97 0f b6 1d 75 73 8d 03 80 fb 01 0f 87 fe 80 81 fe 83 e3 01 75 82 48 c7 c7 40 51 ac b3 c6 05 59 73 8d 03 01 e8 52 c0 aa fe <0f> 0b e9 68 ff ff ff 0f b6 1d 47 73 8d 03 80 fb 01 0f 87 bb 80 81
All code
========
0: eb 97 jmp 0xffffffffffffff99
2: 0f b6 1d 75 73 8d 03 movzbl 0x38d7375(%rip),%ebx # 0x38d737e
9: 80 fb 01 cmp $0x1,%bl
c: 0f 87 fe 80 81 fe ja 0xfffffffffe818110
12: 83 e3 01 and $0x1,%ebx
15: 75 82 jne 0xffffffffffffff99
17: 48 c7 c7 40 51 ac b3 mov $0xffffffffb3ac5140,%rdi
1e: c6 05 59 73 8d 03 01 movb $0x1,0x38d7359(%rip) # 0x38d737e
25: e8 52 c0 aa fe call 0xfffffffffeaac07c
2a:* 0f 0b ud2 <-- trapping instruction
2c: e9 68 ff ff ff jmp 0xffffffffffffff99
31: 0f b6 1d 47 73 8d 03 movzbl 0x38d7347(%rip),%ebx # 0x38d737f
38: 80 fb 01 cmp $0x1,%bl
3b: 0f .byte 0xf
3c: 87 .byte 0x87
3d: bb .byte 0xbb
3e: 80 .byte 0x80
3f: 81 .byte 0x81
Code starting with the faulting instruction
===========================================
0: 0f 0b ud2
2: e9 68 ff ff ff jmp 0xffffffffffffff6f
7: 0f b6 1d 47 73 8d 03 movzbl 0x38d7347(%rip),%ebx # 0x38d7355
e: 80 fb 01 cmp $0x1,%bl
11: 0f .byte 0xf
12: 87 .byte 0x87
13: bb .byte 0xbb
14: 80 .byte 0x80
15: 81 .byte 0x81
[50355.079831] RSP: 0018:ffff8881140cf370 EFLAGS: 00010246
[50355.079842] RAX: 0000000000000000 RBX: 0000000000000000 RCX: 0000000000000000
[50355.079849] RDX: 0000000000000000 RSI: 0000000000000000 RDI: 0000000000000000
[50355.079856] RBP: ffff8881140cf380 R08: 0000000000000000 R09: 0000000000000000
[50355.079864] R10: 0000000000000000 R11: 0000000000000000 R12: 0000000000000003
[50355.079871] R13: ffff888128d67a00 R14: ffff88812d7e0000 R15: ffff888133567900
[50355.079879] FS: 0000000000000000(0000) GS:ffff8882592fd000(0000) knlGS:0000000000000000
[50355.079888] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033
[50355.079896] CR2: 000076e08b265008 CR3: 000000011e8be006 CR4: 00000000001726f0
[50355.079904] Call Trace:
[50355.079910]
[50355.079917] rose_rt_device_down (./include/linux/refcount.h:400 ./include/linux/refcount.h:432 ./include/linux/refcount.h:450 ./include/net/rose.h:162 net/rose/rose_route.c:520) rose
[50355.079937] ? _raw_spin_unlock_bh (kernel/locking/spinlock.c:211)
[50355.079948] ? rose_kill_by_neigh (net/rose/af_rose.c:178) rose
[50355.079969] rose_device_event (net/rose/af_rose.c:249) rose
[50355.079986] notifier_call_chain (kernel/notifier.c:87)
[50355.079998] ? nlmsg_notify (./include/net/netlink.h:1151 ./include/net/netlink.h:1170 net/netlink/af_netlink.c:2595)
[50355.080011] raw_notifier_call_chain (kernel/notifier.c:454)
[50355.080022] call_netdevice_notifiers_info (net/core/dev.c:2231)
[50355.080034] dev_close_many (net/core/dev.c:1786)
[50355.080044] ? __pfx_stack_trace_consume_entry (kernel/stacktrace.c:83)
[50355.080055] ? __pfx_dev_close_many (net/core/dev.c:1773)
[50355.080067] ? update_stack_state (./arch/x86/include/asm/unwind.h:111 (discriminator 1) ./arch/x86/include/asm/unwind.h:127 (discriminator 1) arch/x86/kernel/unwind_frame.c:253 (discriminator 1))
[50355.080082] unregister_netdevice_many_notify (net/core/dev.c:12061)
[50355.080096] ? __pfx_unregister_netdevice_many_notify (net/core/dev.c:12016)
[50355.080107] ? is_bpf_text_address (kernel/bpf/core.c:773 (discriminator 1))
[50355.080119] ? kernel_text_address (kernel/extable.c:125 (discriminator 1) kernel/extable.c:94 (discriminator 1))
[50355.080131] ? __kernel_text_address (kernel/extable.c:79 (discriminator 1))
[50355.080141] ? unwind_get_return_address (arch/x86/kernel/unwind_frame.c:19 (discriminator 1))
[50355.080152] ? __pfx_stack_trace_consume_entry (kernel/stacktrace.c:83)
[50355.080165] ? arch_stack_walk (arch/x86/kernel/stacktrace.c:26)
[50355.080184] unregister_netdevice_queue (net/core/dev.c:11998)
[50355.080197] ? __pfx_unregister_netdevice_queue (net/core/dev.c:11987)
[50355.080221] ? __kasan_check_write (mm/kasan/shadow.c:38)
[50355.080235] ? rtnl_lock (net/core/rtnetlink.c:81)
[50355.080251] unregister_netdev (./include/net/net_namespace.h:409 ./include/linux/netdevice.h:2713 net/core/dev.c:2158 net/core/dev.c:12171)
[50355.080262] mkiss_close (drivers/net/hamradio/mkiss.c:800) mkiss
[50355.080276] tty_ldisc_close (drivers/tty/tty_ldisc.c:457)
[50355.080288] tty_ldisc_hangup (drivers/tty/tty_ldisc.c:614 drivers/tty/tty_ldisc.c:729)
[50355.080300] __tty_hangup.part.0 (./include/linux/spinlock.h:376 drivers/tty/tty_io.c:623)
[50355.080310] ? mutex_unlock (./arch/x86/include/asm/atomic64_64.h:101 (discriminator 5) ./include/linux/atomic/atomic-arch-fallback.h:4329 (discriminator 5) ./include/linux/atomic/atomic-long.h:1506 (discriminator 5) ./include/linux/atomic/atomic-instrumented.h:4481 (discriminator 5) kernel/locking/mutex.c:167 (discriminator 5) kernel/locking/mutex.c:537 (discriminator 5))
[50355.080327] tty_vhangup (drivers/tty/tty_io.c:692)
[50355.080337] pty_close (drivers/tty/pty.c:81)
[50355.080350] tty_release (drivers/tty/tty_io.c:1748)
[50355.080361] ? __pfx_locks_remove_file (fs/locks.c:2686)
[50355.080376] __fput (fs/file_table.c:465)
[50355.080387] ? _raw_spin_lock_irq (./arch/x86/include/asm/atomic.h:107 (discriminator 4) ./include/linux/atomic/atomic-arch-fallback.h:2170 (discriminator 4) ./include/linux/atomic/atomic-instrumented.h:1302 (discriminator 4) ./include/asm-generic/qspinlock.h:111 (discriminator 4) ./include/linux/spinlock.h:187 (discriminator 4) ./include/linux/spinlock_api_smp.h:120 (discriminator 4) kernel/locking/spinlock.c:170 (discriminator 4))
[50355.080400] ? __pfx__raw_spin_lock_irq (kernel/locking/spinlock.c:169)
[50355.080412] ____fput (fs/file_table.c:494)
[50355.080423] task_work_run (kernel/task_work.c:228)
[50355.080435] ? __pfx_task_work_run (kernel/task_work.c:195)
[50355.080449] do_exit (kernel/exit.c:965)
[50355.080462] ? do_wp_page (mm/memory.c:4017)
[50355.080478] ? __pfx_do_exit (kernel/exit.c:897)
[50355.080488] ? __pfx_zap_other_threads (kernel/signal.c:1338)
[50355.080499] ? __pfx_do_wp_page (mm/memory.c:3940)
[50355.080513] do_group_exit (kernel/exit.c:1086)
[50355.080525] __x64_sys_exit_group (kernel/exit.c:1114)
[50355.080536] x64_sys_call (arch/x86/entry/syscall_64.c:37)
[50355.080550] do_syscall_64 (arch/x86/entry/syscall_64.c:63 (discriminator 1) arch/x86/entry/syscall_64.c:94 (discriminator 1))
[50355.080565] ? __handle_mm_fault (mm/memory.c:6085 mm/memory.c:6212)
[50355.080579] ? __pfx___handle_mm_fault (mm/memory.c:6121)
[50355.080593] ? __kasan_check_read (mm/kasan/shadow.c:32)
[50355.080605] ? count_memcg_events (./arch/x86/include/asm/atomic.h:23 ./include/linux/atomic/atomic-arch-fallback.h:457 ./include/linux/atomic/atomic-instrumented.h:33 mm/memcontrol.c:560 mm/memcontrol.c:585 mm/memcontrol.c:564 mm/memcontrol.c:848)
[50355.080619] ? handle_mm_fault (mm/memory.c:6254 mm/memory.c:6407)
[50355.080632] ? __kasan_check_read (mm/kasan/shadow.c:32)
[50355.080642] ? fpregs_assert_state_consistent (./arch/x86/include/asm/bitops.h:206 (discriminator 1) ./arch/x86/include/asm/bitops.h:238 (discriminator 1) ./include/asm-generic/bitops/instrumented-non-atomic.h:142 (discriminator 1) ./include/linux/thread_info.h:126 (discriminator 1) arch/x86/kernel/fpu/core.c:862 (discriminator 1))
[50355.080654] ? irqentry_exit_to_user_mode (./arch/x86/include/asm/entry-common.h:65 (discriminator 1) ./include/linux/entry-common.h:332 (discriminator 1) kernel/entry/common.c:184 (discriminator 1))
[50355.080669] ? irqentry_exit (kernel/entry/common.c:320)
[50355.080680] ? exc_page_fault (arch/x86/mm/fault.c:1536)
[50355.080691] entry_SYSCALL_64_after_hwframe (arch/x86/entry/entry_64.S:130)
[50355.080703] RIP: 0033:0x76e08b0ee21d
[50355.080713] Code: Unable to access opcode bytes at 0x76e08b0ee1f3.
Code starting with the faulting instruction
===========================================
[50355.080720] RSP: 002b:00007ffdcf08da78 EFLAGS: 00000206 ORIG_RAX: 00000000000000e7
[50355.080734] RAX: ffffffffffffffda RBX: 000076e08b204fa8 RCX: 000076e08b0ee21d
[50355.080742] RDX: 00000000000000e7 RSI: ffffffffffffff88 RDI: 0000000000000001
[50355.080750] RBP: 00007ffdcf08dad0 R08: 00007ffdcf08da18 R09: 0000000000000000
[50355.080759] R10: 00007ffdcf08d98f R11: 0000000000000206 R12: 0000000000000001
[50355.080768] R13: 0000000000000000 R14: 0000000000000001 R15: 000076e08b204fc0
[50355.080782]
[50355.080788] ---[ end trace 0000000000000000 ]---
[50355.080798] Here I am: rose_remove_node:209
[50355.080826] Here I am: rose_remove_node:209
[50357.352785] NET: Unregistered PF_NETROM protocol family
root@ubuntu-f6bvp:/media/udisk/home/bernard#