Date: Mon, 29 May 2017 13:00:59 +0000 From: bugzilla-noreply@freebsd.org To: freebsd-stable@FreeBSD.org Subject: [Bug 213903] Kernel crashes from turnstile_broadcast (/usr/src/sys/kern/subr_turnstile.c:837) Message-ID: <bug-213903-8075-y73VMszBmN@https.bugs.freebsd.org/bugzilla/> In-Reply-To: <bug-213903-8075@https.bugs.freebsd.org/bugzilla/> References: <bug-213903-8075@https.bugs.freebsd.org/bugzilla/>
next in thread | previous in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D213903 --- Comment #31 from Cassiano Peixoto <peixoto.cassiano@gmail.com> --- Hi Mateusz, After some time i had a server with FreeBSD 11-p1 crashed with your patch applied.=20 See bellow:=20 (kgdb) list *0xffffffff80b317ac 0xffffffff80b317ac is in turnstile_broadcast (/usr/src/sys/kern/subr_turnstile.c:837). 832=20=20=20=20=20 833 /* 834 * Transfer the blocked list to the pending list. 835 */ 836 mtx_lock_spin(&td_contested_lock); 837 TAILQ_CONCAT(&ts->ts_pending, &ts->ts_blocked[queue], td_lockq); 838 mtx_unlock_spin(&td_contested_lock); 839=20=20=20=20=20 840 /* 841 * Give a turnstile to each thread. The last thread gets Current language: auto; currently minimal (kgdb) bt #0 doadump (textdump=3D<value optimized out>) at pcpu.h:221 #1 0xffffffff80acfd69 in kern_reboot (howto=3D260) at /usr/src/sys/kern/kern_shutdown.c:366 #2 0xffffffff80ad031b in vpanic (fmt=3D<value optimized out>, ap=3D<value optimized out>) at /usr/src/sys/kern/kern_shutdown.c:759 #3 0xffffffff80ad0153 in panic (fmt=3D0x0) at /usr/src/sys/kern/kern_shutdown.c:690 #4 0xffffffff80ee2d21 in trap_fatal (frame=3D0xfffffe02378e0850, eva=3D32)= at /usr/src/sys/amd64/amd64/trap.c:841 #5 0xffffffff80ee2f13 in trap_pfault (frame=3D0xfffffe02378e0850, usermode= =3D0) at /usr/src/sys/amd64/amd64/trap.c:691 #6 0xffffffff80ee24bc in trap (frame=3D0xfffffe02378e0850) at /usr/src/sys/amd64/amd64/trap.c:442 #7 0xffffffff80ec5951 in calltrap () at /usr/src/sys/amd64/amd64/exception.S:236 #8 0xffffffff80b317ac in turnstile_broadcast (ts=3D0x0, queue=3D0) at /usr/src/sys/kern/subr_turnstile.c:837 #9 0xffffffff80aabb70 in __mtx_unlock_sleep (c=3D0xffffffff81cab130, opts= =3D<value optimized out>, file=3D0x1 <Address 0x1 out of bounds>, line=3D1) at /usr/src/sys/kern/kern_mutex.c:865 #10 0xffffffff80d42dd1 in swap_reserve_by_cred (incr=3D<value optimized out= >, cred=3D<value optimized out>) at /usr/src/sys/vm/swap_pager.c:224 #11 0xffffffff80d58f49 in kmap_alloc_wait (map=3D0xfffff800061d7c30, size= =3D266240) at /usr/src/sys/vm/vm_kern.c:437 #12 0xffffffff80a7cf5c in exec_copyin_args (args=3D0xfffffe02378e0a70, fname=3D0x801436b58 <Address 0x801436b58 out of bounds>, segflg=3DUIO_USERS= PACE, argv=3D0x801436a98, envv=3D0x801436b20) at /usr/src/sys/kern/kern_exec.c:1326 #13 0xffffffff80a7cdb8 in sys_execve (td=3D0xfffff8013d03ba00, uap=3D0xfffffe02378e0b80) at /usr/src/sys/kern/kern_exec.c:215 #14 0xffffffff80ee367e in amd64_syscall (td=3D<value optimized out>, traced= =3D0) at subr_syscall.c:135 #15 0xffffffff80ec5c3b in Xfast_syscall () at /usr/src/sys/amd64/amd64/exception.S:396 #16 0x0000000800b45daa in ?? () --=20 You are receiving this mail because: You are on the CC list for the bug.=
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-213903-8075-y73VMszBmN>