Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 14 Jan 2007 12:29:38 GMT
From:      Luka Kanduc<luka.kanduc@gmail.com>
To:        freebsd-gnats-submit@FreeBSD.org
Subject:   kern/107905: Kernel panic during normal operation (page fault)
Message-ID:  <200701141229.l0ECTcJu089418@www.freebsd.org>
Resent-Message-ID: <200701141230.l0ECUU3g026433@freefall.freebsd.org>

next in thread | raw e-mail | index | archive | help

>Number:         107905
>Category:       kern
>Synopsis:       Kernel panic during normal operation (page fault)
>Confidential:   no
>Severity:       serious
>Priority:       medium
>Responsible:    freebsd-bugs
>State:          open
>Quarter:        
>Keywords:       
>Date-Required:
>Class:          sw-bug
>Submitter-Id:   current-users
>Arrival-Date:   Sun Jan 14 12:30:29 GMT 2007
>Closed-Date:
>Last-Modified:
>Originator:     Luka Kanduc
>Release:        6.2-PRERELEASE
>Organization:
>Environment:
FreeBSD borat.xxx.yyy 6.2-PRERELEASE FreeBSD 6.2-PRERELEASE #5: Tue Jan  9 17:41:50 CET 2007     root@borat.xxx.yyy:/usr/obj/usr/src/sys/borat  i386

>Description:
Kernel panics during normal operation without known reason. It is web server that runs apache+ruby, postgres and mysql.

output of /var/run/dmesg.boot:
ACPI APIC Table: <ASUS   P4SE    >
CPU: Intel(R) Pentium(R) 4 CPU 2.00GHz (2017.98-MHz 686-class CPU)
  Origin = "GenuineIntel"  Id = 0xf24  Stepping = 4
Features=0x3febfbff<FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CLFLUSH,DTS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM>
real memory  = 1610596352 (1535 MB)
avail memory = 1564909568 (1492 MB)
ioapic0 <Version 0.0> irqs 0-23 on motherboard
kbd1 at kbdmux0
ath_hal: 0.9.17.2 (AR5210, AR5211, AR5212, RF5111, RF5112, RF2413, RF5413)
acpi0: <ASUS P4SE> on motherboard
acpi0: Overriding SCI Interrupt from IRQ 9 to IRQ 20
acpi0: Power Button (fixed)
Timecounter "ACPI-fast" frequency 3579545 Hz quality 1000
acpi_timer0: <24-bit timer at 3.579545MHz> port 0xe408-0xe40b on acpi0
cpu0: <ACPI CPU> on acpi0
acpi_throttle0: <ACPI CPU Throttling> on cpu0
acpi_button0: <Power Button> on acpi0
pcib0: <ACPI Host-PCI bridge> port 0xcf8-0xcff on acpi0
pci0: <ACPI PCI bus> on pcib0
agp0: <SiS 645 host to AGP bridge> mem 0xf8000000-0xfbffffff at device 0.0 on pci0
pcib1: <ACPI PCI-PCI bridge> at device 1.0 on pci0
pci1: <ACPI PCI bus> on pcib1
isab0: <PCI-ISA bridge> at device 2.0 on pci0
isa0: <ISA bus> on isab0
ohci0: <SiS 5571 USB controller> mem 0xf7800000-0xf7800fff irq 20 at device 2.2 on pci0
ohci0: [GIANT-LOCKED]
usb0: OHCI version 1.0, legacy support
usb0: <SiS 5571 USB controller> on ohci0
usb0: USB revision 1.0
uhub0: SiS OHCI root hub, class 9/0, rev 1.00/1.00, addr 1
uhub0: 3 ports with 3 removable, self powered
ohci1: <SiS 5571 USB controller> mem 0xf7000000-0xf7000fff irq 23 at device 2.3 on pci0
ohci1: [GIANT-LOCKED]
usb1: OHCI version 1.0, legacy support
usb1: <SiS 5571 USB controller> on ohci1
usb1: USB revision 1.0
uhub1: SiS OHCI root hub, class 9/0, rev 1.00/1.00, addr 1
uhub1: 3 ports with 3 removable, self powered
atapci0: <SiS 961 UDMA100 controller> port 0x1f0-0x1f7,0x3f6,0x170-0x177,0x376,0xd800-0xd80f at device 2.5 on pci0
ata0: <ATA channel 0> on atapci0
ata1: <ATA channel 1> on atapci0
pci0: <multimedia, audio> at device 2.7 (no driver attached)
pci0: <display, VGA> at device 8.0 (no driver attached)
xl0: <3Com 3c905C-TX Fast Etherlink XL> port 0xa800-0xa87f mem 0xf5000000-0xf500007f irq 18 at device 10.0 on pci0
miibus0: <MII bus> on xl0
ukphy0: <Generic IEEE 802.3u media interface> on miibus0
ukphy0:  10baseT, 10baseT-FDX, 100baseTX, 100baseTX-FDX, auto
xl0: Ethernet address: 00:04:75:d2:ff:6d
fdc0: <floppy drive controller> port 0x3f2-0x3f5,0x3f7 irq 6 drq 2 on acpi0
fdc0: [FAST]
ppc0: <ECP parallel printer port> port 0x378-0x37f,0x778-0x77b irq 7 drq 3 on acpi0
ppc0: SMC-like chipset (ECP/EPP/PS2/NIBBLE) in COMPATIBLE mode
ppc0: FIFO with 16/16/16 bytes threshold
ppbus0: <Parallel port bus> on ppc0
plip0: <PLIP network interface> on ppbus0
lpt0: <Printer> on ppbus0
lpt0: Interrupt-driven port
ppi0: <Parallel I/O> on ppbus0
sio0: <16550A-compatible COM port> port 0x3f8-0x3ff irq 4 flags 0x10 on acpi0
sio0: type 16550A
sio1: <16550A-compatible COM port> port 0x2f8-0x2ff irq 3 on acpi0
sio1: type 16550A
atkbdc0: <Keyboard controller (i8042)> port 0x60,0x64 irq 1 on acpi0
atkbd0: <AT Keyboard> irq 1 on atkbdc0
kbd0 at atkbd0
atkbd0: [GIANT-LOCKED]
pmtimer0 on isa0
orm0: <ISA Option ROMs> at iomem 0xc0000-0xc7fff,0xc8000-0xc87ff on isa0
sc0: <System console> at flags 0x100 on isa0
sc0: VGA <16 virtual consoles, flags=0x300>
vga0: <Generic ISA VGA> at port 0x3c0-0x3df iomem 0xa0000-0xbffff on isa0
Timecounter "TSC" frequency 2017980700 Hz quality 800
Timecounters tick every 1.000 msec
ipfw2 (+ipv6) initialized, divert loadable, rule-based forwarding enabled, default to accept, logging disabled
ad0: 76319MB <WDC WD800JB-00JJC0 05.01C05> at ata0-master UDMA100
ad3: 156334MB <Maxtor 6Y160P0 YAR41BW0> at ata1-slave UDMA100

kernel config:
GENERIC + :
options         IPFIREWALL
options         IPFIREWALL_DEFAULT_TO_ACCEPT
options         IPFIREWALL_VERBOSE_LIMIT=500
options         IPFIREWALL_FORWARD
options         IPDIVERT
options         TCP_DROP_SYNFIN
options         DUMMYNET

kgdb backtrace:
Unread portion of the kernel message buffer:


Fatal trap 12: page fault while in kernel mode
fault virtual address   = 0x8
fault code              = supervisor read, page not present
instruction pointer     = 0x20:0xc093fdd9
stack pointer           = 0x28:0xec4b962c
frame pointer           = 0x28:0xec4b9640
code segment            = base 0x0, limit 0xfffff, type 0x1b
                        = DPL 0, pres 1, def32 1, gran 1
processor eflags        = interrupt enabled, resume, IOPL = 0
current process         = 41881 (cvsup)
trap number             = 12
panic: page fault
Uptime: 1d3h4m47s
Dumping 1535 MB (2 chunks)
  chunk 0: 1MB (160 pages) ... ok
  chunk 1: 1535MB (392956 pages) 1520 1504 1488 1472 1456 1440 1424 1408 1392 1376                                            1360 1344 1328 1312 1296 1280 1264 1248 1232 1216 1200 1184 1168 1152 1136 1120 110                                           4 1088 1072 1056 1040 1024 1008 992 976 960 944 928 912 896 880 864 848 832 816 800                                            784 768 752 736 720 704 688 672 656 640 624 608 592 576 560 544 528 512 496 480 46                                           4 448 432 416 400 384 368 352 336 320 304 288 272 256 240 224 208 192 176 160 144 1                                           28 112 96 80 64 48 32 16

#0  doadump () at pcpu.h:165
165             __asm __volatile("movl %%fs:0,%0" : "=r" (td));

(kgdb) bt
#0  doadump () at pcpu.h:165
#1  0xc06d6f78 in boot (howto=260) at /usr/src/sys/kern/kern_shutdown.c:409
#2  0xc06d74ef in panic (fmt=0xc09a4a51 "%s")
    at /usr/src/sys/kern/kern_shutdown.c:565
#3  0xc0945220 in trap_fatal (frame=0xec4b95ec, eva=8)
    at /usr/src/sys/i386/i386/trap.c:837
#4  0xc09454e6 in trap_pfault (frame=0xec4b95ec, usermode=0, eva=8)
    at /usr/src/sys/i386/i386/trap.c:745
#5  0xc09458cf in trap (frame=
      {tf_fs = -1052442616, tf_es = -330629080, tf_ds = -1064828888, tf_edi = 58380, tf_esi = -1062381408, tf_ebp = -330590656, tf_isp = -330590696, tf_ebx = 0, tf_edx = -1052359768, tf_ecx = -879742976, tf_eax = 24979, tf_trapno = 12, tf_err = 0, tf_eip = -1064043047, tf_cs = 32, tf_eflags = 66118, tf_esp = 0, tf_ss = -1052416448}) at /usr/src/sys/i386/i386/trap.c:435
#6  0xc0931f8a in calltrap () at /usr/src/sys/i386/i386/exception.s:139
#7  0xc093fdd9 in pmap_remove_entry (pmap=0xc0ad58a0, m=0xc14643a8, va=3415224320)
    at /usr/src/sys/i386/i386/pmap.c:1503
#8  0xc094186c in pmap_enter (pmap=0xc0ad58a0, va=3415224320, m=0xc1b31e30,
    prot=7 '\a', wired=1) at /usr/src/sys/i386/i386/pmap.c:1978
#9  0xc089600f in kmem_malloc (map=0xc144b0c0, size=4096, flags=3)
    at /usr/src/sys/vm/vm_kern.c:403
#10 0xc088ada5 in slab_zalloc (zone=0xc1455a80, wait=3)
    at /usr/src/sys/vm/uma_core.c:823
#11 0xc088b29e in uma_zone_slab (zone=0xc1455a80, flags=3)
    at /usr/src/sys/vm/uma_core.c:2025
#12 0xc088cf2a in uma_zalloc_arg (zone=0xc1455a80, udata=0x0, flags=2)
    at /usr/src/sys/vm/uma_core.c:2134
#13 0xc06c9e01 in malloc (size=24979, mtp=0xc0a3c980, flags=2) at uma.h:275
#14 0xc072a4f8 in allocbuf (bp=0xd9cc2970, size=2048)
    at /usr/src/sys/kern/vfs_bio.c:2679
#15 0xc072ce14 in getblk (vp=0xcad3b330, blkno=0, size=2048, slpflag=0,
    slptimeo=0, flags=0) at /usr/src/sys/kern/vfs_bio.c:2566
#16 0xc072ebf1 in breadn (vp=0xcad3b330, blkno=Unhandled dwarf expression opcode 0x93
)
    at /usr/src/sys/kern/vfs_bio.c:738
#17 0xc072f11d in bread (vp=0x6193, blkno=Unhandled dwarf expression opcode 0x93
) at /usr/src/sys/kern/vfs_bio.c:719
#18 0xc0871cbe in ffs_blkatoff (vp=0xcad3b330, offset=0, res=0x0, bpp=0xec4b999c)
    at /usr/src/sys/ufs/ffs/ffs_subr.c:87
#19 0xc087d793 in ufs_lookup (ap=0xec4b9a3c)
    at /usr/src/sys/ufs/ufs/ufs_lookup.c:259
#20 0xc0958a4b in VOP_CACHEDLOOKUP_APV (vop=0x6193, a=0xcb903000)
    at vnode_if.c:150
#21 0xc073086c in vfs_cache_lookup (ap=0x6193) at vnode_if.h:82
#22 0xc095943a in VOP_LOOKUP_APV (vop=0xc0a709c0, a=0xec4b9ae8) at vnode_if.c:99
#23 0xc0735564 in lookup (ndp=0xec4b9b90) at vnode_if.h:56
#24 0xc073622e in namei (ndp=0xec4b9b90) at /usr/src/sys/kern/vfs_lookup.c:211
#25 0xc0747da1 in kern_lstat (td=0xc6291300,
    path=0x6193 <Address 0x6193 out of bounds>, pathseg=24979, sbp=0x6193)
    at /usr/src/sys/kern/vfs_syscalls.c:2143
#26 0xc0748110 in lstat (td=0x6193, uap=0xec4b9d04)
    at /usr/src/sys/kern/vfs_syscalls.c:2126
#27 0xc0945d3b in syscall (frame=
      {tf_fs = 673185851, tf_es = -1078001605, tf_ds = 138346555, tf_edi = 673211427, tf_esi = -1077940976, tf_ebp = 138349372, tf_isp = -330588828, tf_ebx = 3, tf_edx = 134569641, tf_ecx = 0, tf_eax = 190, tf_trapno = 22, tf_err = 2, tf_eip = 676165563, tf_cs = 51, tf_eflags = 534, tf_esp = 138349216, tf_ss = 59})
    at /usr/src/sys/i386/i386/trap.c:983
#28 0xc0931fdf in Xint0x80_syscall () at /usr/src/sys/i386/i386/exception.s:200
#29 0x00000033 in ?? ()
Previous frame inner to this frame (corrupt stack?)
(kgdb) up 25
#25 0xc0747da1 in kern_lstat (td=0xc6291300, path=0x6193 <Address 0x6193 out of bounds>, pathseg=24979, sbp=0x6193)
    at /usr/src/sys/kern/vfs_syscalls.c:2143
2143            if ((error = namei(&nd)) != 0)
(kgdb) print nd
$1 = {ni_dirp = 0x838bef0 <Address 0x838bef0 out of bounds>, ni_segflg = UIO_USERSPACE, ni_startdir = 0x0,
  ni_rootdir = 0xc5e07bb0, ni_topdir = 0x0, ni_vp = 0x0, ni_dvp = 0xcad3b330, ni_pathlen = 1, ni_next = 0xc5e0902c "",
  ni_loopcnt = 0, ni_cnd = {cn_nameiop = 0, cn_flags = 83935236, cn_thread = 0xc6291300, cn_cred = 0xcb36cd00,
    cn_lkflags = 2, cn_pnbuf = 0xc5e09000 "/usr/ports/converters/py-iconvcodec/Makefile",
    cn_nameptr = 0xc5e09024 "Makefile", cn_namelen = 8, cn_consume = 0}}
(kgdb)
 
this file is on partition that is also nfs exported:
$ mount
/dev/ad3s1a on / (ufs, local)
devfs on /dev (devfs, local)
/dev/ad3s1e on /tmp (ufs, local, soft-updates)
/dev/ad3s1f on /usr (ufs, NFS exported, local, soft-updates)
/dev/ad3s1d on /var (ufs, local, soft-updates)
/dev/ad0s1d on /disk2 (ufs, local, soft-updates)

it might have to do something with a problem
>How-To-Repeat:

>Fix:

>Release-Note:
>Audit-Trail:
>Unformatted:



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200701141229.l0ECTcJu089418>