[pkg-netfilter-team] Bug#1053564: Acknowledgement (nftables: nft freeze after some times, probably as a result of excessive use of named set)

Daniel Haryo Sugondo sugondo at hlrs.de
Wed Oct 11 06:54:04 BST 2023


Additional Information after upgrade to 12.2

dpkg -l | grep nft
ii  libnftables1:amd64             1.0.6-2+deb12u2                amd64 
       Netfilter nftables high level userspace API library
ii  libnftnl11:amd64               1.2.4-2                        amd64 
       Netfilter nftables userspace API library
ii  nftables                       1.0.6-2+deb12u2                amd64 
       Program to control packet filtering rules by Netfilter project


Oct 11 02:12:17 kernel: general protection fault, probably for 
non-canonical address 0xf54db85b35fdfe19: 0000 [#34] PREEMPT SMP PTI
Oct 11 02:12:17 kernel: CPU: 5 PID: 1692386 Comm: nft Tainted: G      D 
W          6.1.0-13-amd64 #1  Debian 6.1.55-1
Oct 11 02:12:17 kernel: Hardware name: FUJITSU PRIMERGY RX1330 
M2/D3375-A1, BIOS V5.0.0.11 R1.31.0 for D3375-A1x 
02/22/2023
Oct 11 02:12:17 kernel: RIP: 0010:nft_setelem_data_deactivate+0x44/0x80 
[nf_tables]
Oct 11 02:12:17 kernel: Code: 36 0f b6 50 03 84 d2 74 15 8b 4e 4c 81 f9 
ff fe ff ff 76 0a 81 f9 00 ff ff ff 74 20 0f 0b 0f b6 50 09 84 d2 74 11 
48 8b 14 10 <8b> 42 34 8d 48 ff 89 4a 34 85 c0 74 27 c3 cc cc cc cc 48 
01 c2 8b
Oct 11 02:12:17 kernel: RSP: 0018:ffffaec90bebb728 EFLAGS: 00010206
Oct 11 02:12:17 kernel: RAX: ffff9c2a8ad217c0 RBX: ffffaec90bebb908 RCX: 
000000003660e005
Oct 11 02:12:17 kernel: RDX: f54db85b35fdfde5 RSI: ffff9c2aa1165e00 RDI: 
ffffffff9208ca40
Oct 11 02:12:17 kernel: RBP: ffffaec90bebb7c0 R08: ffff9c2a8a4c6840 R09: 
0000000000000001
Oct 11 02:12:17 kernel: R10: 0000000000000020 R11: 0000000000000004 R12: 
ffff9c2aa1165e00
Oct 11 02:12:17 kernel: R13: ffff9c2a8ad217c0 R14: ffff9c2a8144e400 R15: 
ffffffff9208ca40
Oct 11 02:12:17 kernel: FS:  00007f0a1ac54740(0000) 
GS:ffff9c31cfd40000(0000) knlGS:0000000000000000
Oct 11 02:12:17 kernel: CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
Oct 11 02:12:17 kernel: CR2: 00007f0a1a97e000 CR3: 0000000151a1c005 CR4: 
00000000003706e0
Oct 11 02:12:17 kernel: DR0: 0000000000000000 DR1: 0000000000000000 DR2: 
0000000000000000
Oct 11 02:12:17 kernel: DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 
0000000000000400
Oct 11 02:12:17 kernel: Call Trace:
Oct 11 02:12:17 kernel:  <TASK>
Oct 11 02:12:17 kernel:  ? __die_body.cold+0x1a/0x1f
Oct 11 02:12:17 kernel:  ? die_addr+0x38/0x60
Oct 11 02:12:17 kernel:  ? exc_general_protection+0x234/0x4a0
Oct 11 02:12:17 kernel:  ? asm_exc_general_protection+0x22/0x30
Oct 11 02:12:17 kernel:  ? nft_setelem_data_deactivate+0x44/0x80 [nf_tables]
Oct 11 02:12:17 kernel:  nft_del_setelem+0x47e/0x4f0 [nf_tables]
Oct 11 02:12:17 kernel:  nf_tables_delsetelem+0x1fc/0x300 [nf_tables]
Oct 11 02:12:17 kernel:  ? __kmem_cache_alloc_node+0x139/0x2a0
Oct 11 02:12:17 kernel:  ? nfnetlink_rcv_batch+0x20a/0x9a0 [nfnetlink]
Oct 11 02:12:17 kernel:  nfnetlink_rcv_batch+0x5df/0x9a0 [nfnetlink]
Oct 11 02:12:17 kernel:  nfnetlink_rcv+0x175/0x193 [nfnetlink]
Oct 11 02:12:17 kernel:  netlink_unicast+0x247/0x390
Oct 11 02:12:17 kernel:  netlink_sendmsg+0x250/0x4c0
Oct 11 02:12:17 kernel:  sock_sendmsg+0x5c/0x70
Oct 11 02:12:17 kernel:  ____sys_sendmsg+0x277/0x2f0
Oct 11 02:12:17 kernel:  ? copy_msghdr_from_user+0x7d/0xc0
Oct 11 02:12:17 kernel:  ___sys_sendmsg+0x9a/0xe0
Oct 11 02:12:17 kernel:  __sys_sendmsg+0x76/0xc0
Oct 11 02:12:17 kernel:  do_syscall_64+0x58/0xc0
Oct 11 02:12:17 kernel:  ? fpregs_assert_state_consistent+0x22/0x50
Oct 11 02:12:17 kernel:  ? exit_to_user_mode_prepare+0x40/0x1d0
Oct 11 02:12:17 kernel:  entry_SYSCALL_64_after_hwframe+0x64/0xce
Oct 11 02:12:17 kernel: RIP: 0033:0x7f0a1ae9b930
Oct 11 02:12:17 kernel: Code: 00 f7 d8 64 89 02 48 c7 c0 ff ff ff ff eb 
b7 66 2e 0f 1f 84 00 00 00 00 00 90 80 3d b1 fc 0c 00 00 74 17 b8 2e 00 
00 00 0f 05 <48> 3d 00 f0 ff ff 77 58 c3 0f 1f 80 00 00 00 00 48 83 ec 
28 89 54
Oct 11 02:12:17 kernel: RSP: 002b:00007fff7ffdb938 EFLAGS: 00000202 
ORIG_RAX: 000000000000002e
Oct 11 02:12:17 kernel: RAX: ffffffffffffffda RBX: 00007fff7ffecb30 RCX: 
00007f0a1ae9b930
Oct 11 02:12:17 kernel: RDX: 0000000000000000 RSI: 00007fff7ffec9e0 RDI: 
0000000000000003
Oct 11 02:12:17 kernel: RBP: 00007fff7ffecae0 R08: 00007fff7ffdb914 R09: 
000055b934860170
Oct 11 02:12:17 kernel: R10: 00007f0a1b083f00 R11: 0000000000000202 R12: 
000055b93483ab50
Oct 11 02:12:17 kernel: R13: 0000000000010c00 R14: 00007fff7ffdb950 R15: 
0000000000000001
Oct 11 02:12:17 kernel:  </TASK>
Oct 11 02:12:17 kernel: Modules linked in: bridge 8021q garp stp mrp llc 
nfnetlink_log nft_log nft_limit nft_ct nf_tables nf_conntrack_netlink 
nf_conntrack nf_defrag_ipv6 nf_defrag_ipv4 nfnetlink binfmt_misc 
intel_rapl_msr intel_rapl_common x86_pkg_temp_thermal i>
Oct 11 02:12:17 kernel:  crct10dif_generic crct10dif_pclmul 
crct10dif_common ahci crc32_pclmul i2c_i801 xhci_pci libahci 
crc32c_intel i2c_smbus xhci_hcd cxgb4 libata scsi_transport_fc usbcore 
igb scsi_mod tls i2c_algo_bit dca scsi_common usb_common video wmi
Oct 11 02:12:17 kernel: ---[ end trace 0000000000000000 ]---
Oct 11 02:12:17 kernel: RIP: 0010:strlen+0x0/0x20
Oct 11 02:12:17 kernel: Code: b6 07 38 d0 74 14 48 83 c7 01 84 c0 74 05 
48 39 f7 75 ec 31 c0 c3 cc cc cc cc 48 89 f8 c3 cc cc cc cc 0f 1f 84 00 
00 00 00 00 <80> 3f 00 74 14 48 89 f8 48 83 c0 01 80 38 00 75 f7 48 29 
f8 c3 cc
Oct 11 02:12:17 kernel: RSP: 0018:ffffaec90b8e36b8 EFLAGS: 00010202
Oct 11 02:12:17 kernel: RAX: ffff9c2aa10b8aa0 RBX: ffff9c2a8ad214c0 RCX: 
0000000000000000
Oct 11 02:12:17 kernel: RDX: 0000000000000000 RSI: ffff9c2a8ad214cd RDI: 
0000000000000000
Oct 11 02:12:17 kernel: RBP: ffff9c2ad109c500 R08: 0000000000007e80 R09: 
ffff9c2a85038050
Oct 11 02:12:17 kernel: R10: ffff9c31cfc37950 R11: 0000000000000001 R12: 
ffff9c2a85038038
Oct 11 02:12:17 kernel: R13: 0000000000000000 R14: ffff9c2ad15671a0 R15: 
0000000000000004
Oct 11 02:12:17 kernel: FS:  00007f0a1ac54740(0000) 
GS:ffff9c31cfd40000(0000) knlGS:0000000000000000
Oct 11 02:12:17 kernel: CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
Oct 11 02:12:17 kernel: CR2: 00007f0a1a97e000 CR3: 0000000151a1c005 CR4: 
00000000003706e0
Oct 11 02:12:17 kernel: DR0: 0000000000000000 DR1: 0000000000000000 DR2: 
0000000000000000
Oct 11 02:12:17 kernel: DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 
0000000000000400

Regards,

Daniel

On 10/6/23 14:57, Debian Bug Tracking System wrote:
> Thank you for filing a new Bug report with Debian.
> 
> You can follow progress on this Bug here: 1053564: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1053564.
> 
> This is an automatically generated reply to let you know your message
> has been received.
> 
> Your message is being forwarded to the package maintainers and other
> interested parties for their attention; they will reply in due course.
> 
> Your message has been sent to the package maintainer(s):
>   Debian Netfilter Packaging Team <pkg-netfilter-team at lists.alioth.debian.org>
> 
> If you wish to submit further information on this problem, please
> send it to 1053564 at bugs.debian.org.
> 
> Please do not send mail to owner at bugs.debian.org unless you wish
> to report a problem with the Bug-tracking system.
> 

-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_0x2EA5BDE197A21C82.asc
Type: application/pgp-keys
Size: 3118 bytes
Desc: OpenPGP public key
URL: <http://alioth-lists.debian.net/pipermail/pkg-netfilter-team/attachments/20231011/842d8ee1/attachment.key>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_signature.asc
Type: application/pgp-signature
Size: 840 bytes
Desc: OpenPGP digital signature
URL: <http://alioth-lists.debian.net/pipermail/pkg-netfilter-team/attachments/20231011/842d8ee1/attachment.sig>


More information about the pkg-netfilter-team mailing list