Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 13 Jan 2002 18:48:13 +0000
From:      Ceri Storey <cez@pkl.net>
To:        freebsd-stable@FreeBSD.ORG
Subject:   sysctl(2) related panic? 
Message-ID:  <20020113184813.GD84064@mandelbrot.house>

next in thread | raw e-mail | index | archive | help

--OgqxwSJOaUobr8KG
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline

Hi, i'm running FreeBSD-stable on one of my machines here, and just
a moment ago, it paniced, after me running a sysctl -a. The backtrace
seems to indicated it paniced in the sysctl code, with a NULL oid. 
Here's the dmesg / gdb session, if you need anything else, just ask.

-- 
Ceri Storey <cez@pkl.net> http://pkl.net/~cez/
vi(1)! postfix(7)! pie(5)!

--OgqxwSJOaUobr8KG
Content-Type: text/plain; charset=us-ascii
Content-Disposition: attachment; filename=dmesg

Copyright (c) 1992-2001 The FreeBSD Project.
Copyright (c) 1979, 1980, 1983, 1986, 1988, 1989, 1991, 1992, 1993, 1994
	The Regents of the University of California. All rights reserved.
FreeBSD 4.5-PRERELEASE #6: Thu Dec 20 15:21:06 GMT 2001
    cez@mandelbrot.house:/usr/obj/usr/src/sys/HILBERT
Timecounter "i8254"  frequency 1193182 Hz
CPU: AMD-K6(tm) 3D processor (451.02-MHz 586-class CPU)
  Origin = "AuthenticAMD"  Id = 0x58c  Stepping = 12
  Features=0x8021bf<FPU,VME,DE,PSE,TSC,MSR,MCE,CX8,PGE,MMX>
  AMD Features=0x80000800<SYSCALL,3DNow!>
real memory  = 67043328 (65472K bytes)
avail memory = 62103552 (60648K bytes)
Preloaded elf kernel "kernel" at 0xc0322000.
K6-family MTRR support enabled (2 registers)
md0: Malloc disk
Using $PIR table, 5 entries at 0xc00f7a50
npx0: <math processor> on motherboard
npx0: INT 16 interface
pcib0: <AcerLabs M1541 (Aladdin-V) PCI host bridge> on motherboard
pci0: <PCI bus> on pcib0
pcib1: <AcerLabs M5243 PCI-PCI bridge> at device 1.0 on pci0
pci1: <PCI bus> on pcib1
pci0: <AcerLabs M5237 (Aladdin-V) USB controller> at 2.0 irq 10
isab0: <AcerLabs M1533 portable PCI-ISA bridge> at device 7.0 on pci0
isa0: <ISA bus> on isab0
rl0: <RealTek 8139 10/100BaseTX> port 0xdc00-0xdcff mem 0xdfffef00-0xdfffefff irq 9 at device 8.0 on pci0
rl0: Ethernet address: 00:c0:df:04:df:eb
miibus0: <MII bus> on rl0
rlphy0: <RealTek internal media interface> on miibus0
rlphy0:  10baseT, 10baseT-FDX, 100baseTX, 100baseTX-FDX, auto
dc0: <82c169 PNIC 10/100BaseTX> port 0xd800-0xd8ff mem 0xdfffee00-0xdfffeeff irq 12 at device 9.0 on pci0
dc0: Ethernet address: 00:a0:cc:65:5c:76
miibus1: <MII bus> on dc0
ukphy0: <Generic IEEE 802.3u media interface> on miibus1
ukphy0:  10baseT, 10baseT-FDX, 100baseTX, 100baseTX-FDX, auto
pci0: <S3 868 graphics accelerator> at 10.0 irq 11
atapci0: <AcerLabs Aladdin ATA33 controller> port 0xffa0-0xffaf irq 0 at device 15.0 on pci0
ata0: at 0x1f0 irq 14 on atapci0
orm0: <Option ROM> at iomem 0xc0000-0xc7fff on isa0
fdc0: <NEC 72065B or clone> at port 0x3f0-0x3f5,0x3f7 irq 6 drq 2 on isa0
fdc0: FIFO enabled, 8 bytes threshold
fd0: <1440-KB 3.5" drive> on fdc0 drive 0
atkbdc0: <Keyboard controller (i8042)> at port 0x60,0x64 on isa0
atkbd0: <AT Keyboard> flags 0x1 irq 1 on atkbdc0
kbd0 at atkbd0
vga0: <Generic ISA VGA> at port 0x3c0-0x3df iomem 0xa0000-0xbffff on isa0
sc0: <System console> at flags 0x100 on isa0
sc0: VGA <16 virtual consoles, flags=0x300>
sio0 at port 0x3f8-0x3ff irq 4 flags 0x10 on isa0
sio0: type 16550A
sio1 at port 0x2f8-0x2ff irq 3 on isa0
sio1: type 16550A
ppc0: <Parallel port> at port 0x378-0x37f irq 7 on isa0
ppc0: Generic chipset (EPP/NIBBLE) in COMPATIBLE mode
plip0: <PLIP network interface> on ppbus0
lpt0: <Printer> on ppbus0
lpt0: Interrupt-driven port
ppi0: <Parallel I/O> on ppbus0
ad0: 3681MB <QUANTUM FIREBALL_TM3840A> [7480/16/63] at ata0-master WDMA2
ad1: 4134MB <IBM-DHEA-34330> [8400/16/63] at ata0-slave UDMA33
Mounting root from ufs:/dev/ad0s1a
WARNING: / was not properly dismounted
dc0: promiscuous mode enabled
rl0: promiscuous mode enabled

--OgqxwSJOaUobr8KG
Content-Type: text/plain; charset=iso-8859-1
Content-Disposition: attachment; filename="screenlog.4"
Content-Transfer-Encoding: 8bit

gdb -k
(kgdb) symbol-file /usr/obj/usr/src/sys/HILBERT/kernel.debug
Reading symbols from /usr/obj/usr/src/sys/HILBERT/kernel.debug...done.
(kgdb) core-file vmcore.28
IdlePTD at phsyical address 0x00346000
initial pcb at physical address 0x002b22a0
panicstr: page fault
panic messages:
---
Fatal trap 12: page fault while in kernel mode
fault virtual address   = 0x6e695f72
fault code              = supervisor read, page not present
instruction pointer     = 0x8:0xc01453f8
stack pointer           = 0x10:0xc63f7e00
frame pointer           = 0x10:0xc63f7e24
code segment            = base 0x0, limit 0xfffff, type 0x1b
                        = DPL 0, pres 1, def32 1, gran 1
processor eflags        = interrupt enabled, resume, IOPL = 0
current process         = 23729 (sysctl)
interrupt mask          = none
trap number             = 12
panic: page fault

syncing disks... 13 1
done
Uptime: 23d18h45m38s

dumping to dev #ad/0x20009, offset 131200
dump ata0: resetting devices .. done
63 62 61 60 59 58 57 56 55 54 53 52 51 50 49 48 47 46 45 44 43 42 41 40 39 38 37 36 35 34 33 32 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 0
---
#0  dumpsys () at /usr/src/sys/kern/kern_shutdown.c:473
473             if (dumping++) {
(kgdb) bt
#0  dumpsys () at /usr/src/sys/kern/kern_shutdown.c:473
#1  0xc0140f43 in boot (howto=256) at /usr/src/sys/kern/kern_shutdown.c:313
#2  0xc0141318 in poweroff_wait (junk=0xc028960c, howto=-1071083217)
    at /usr/src/sys/kern/kern_shutdown.c:581
#3  0xc02533a2 in trap_fatal (frame=0xc63f7dc0, eva=1852399474)
    at /usr/src/sys/i386/i386/trap.c:956
#4  0xc0253075 in trap_pfault (frame=0xc63f7dc0, usermode=0, eva=1852399474)
    at /usr/src/sys/i386/i386/trap.c:849
#5  0xc0252c33 in trap (frame={tf_fs = 16, tf_es = 16, tf_ds = 16,
      tf_edi = 1852399474, tf_esi = -968917232, tf_ebp = -968917468,
      tf_isp = -968917524, tf_ebx = -1064370496, tf_edx = -968929280,
      tf_ecx = -1, tf_eax = 0, tf_trapno = 12, tf_err = 0,
      tf_eip = -1072409608, tf_cs = 8, tf_eflags = 66118, tf_esp = -968917388,
      tf_ss = 6}) at /usr/src/sys/i386/i386/trap.c:448
#6  0xc01453f8 in sysctl_sysctl_name (oidp=0xc0298860, arg1=0xc63f7f04,
    arg2=4, req=0xc63f7e74) at /usr/src/sys/kern/kern_sysctl.c:507
#7  0xc0145cde in sysctl_root (oidp=0x0, arg1=0xc63f7efc, arg2=6,
    req=0xc63f7e74) at /usr/src/sys/kern/kern_sysctl.c:1035
#8  0xc0145e99 in userland_sysctl (p=0xc6240dc0, name=0xc63f7efc, namelen=6,
    old=0xbfbfee5c, oldlenp=0xbfbfee20, inkernel=0, new=0x0, newlen=0,
    retval=0xc63f7ef8) at /usr/src/sys/kern/kern_sysctl.c:1131
#9  0xc0145d59 in __sysctl (p=0xc6240dc0, uap=0xc63f7f80)
    at /usr/src/sys/kern/kern_sysctl.c:1067
---Type <return> to continue, or q <return> to quit---
#10 0xc025364d in syscall2 (frame={tf_fs = 47, tf_es = 47, tf_ds = 47,
      tf_edi = -1077940700, tf_esi = 6, tf_ebp = -1077940804,
      tf_isp = -968917036, tf_ebx = -1077940700, tf_edx = -1077940704,
      tf_ecx = 0, tf_eax = 202, tf_trapno = 8, tf_err = 2, tf_eip = 134560580,
      tf_cs = 31, tf_eflags = 647, tf_esp = -1077940864, tf_ss = 47})
    at /usr/src/sys/i386/i386/trap.c:1155
#11 0xc0244985 in Xint0x80_syscall ()
#12 0x8048a78 in ?? ()
#13 0x8049077 in ?? ()
#14 0x8048301 in ?? ()
#15 0x8048137 in ?? ()
(kgdb) up
#1  0xc0140f43 in boot (howto=256) at /usr/src/sys/kern/kern_shutdown.c:313
313                     dumpsys();
(kgdb)
#2  0xc0141318 in poweroff_wait (junk=0xc028960c, howto=-1071083217)
    at /usr/src/sys/kern/kern_shutdown.c:581
581             boot(bootopt);
(kgdb)
#3  0xc02533a2 in trap_fatal (frame=0xc63f7dc0, eva=1852399474)
    at /usr/src/sys/i386/i386/trap.c:956
956                     panic("%s", trap_msg[type]);
(kgdb)
#4  0xc0253075 in trap_pfault (frame=0xc63f7dc0, usermode=0, eva=1852399474)
    at /usr/src/sys/i386/i386/trap.c:849
849                     trap_fatal(frame, eva);
(kgdb)
#5  0xc0252c33 in trap (frame={tf_fs = 16, tf_es = 16, tf_ds = 16,
      tf_edi = 1852399474, tf_esi = -968917232, tf_ebp = -968917468,
      tf_isp = -968917524, tf_ebx = -1064370496, tf_edx = -968929280,
      tf_ecx = -1, tf_eax = 0, tf_trapno = 12, tf_err = 0,
      tf_eip = -1072409608, tf_cs = 8, tf_eflags = 66118, tf_esp = -968917388,
      tf_ss = 6}) at /usr/src/sys/i386/i386/trap.c:448
448                             (void) trap_pfault(&frame, FALSE, eva);
(kgdb)
#6  0xc01453f8 in sysctl_sysctl_name (oidp=0xc0298860, arg1=0xc63f7f04,
    arg2=4, req=0xc63f7e74) at /usr/src/sys/kern/kern_sysctl.c:507
507                                     error = SYSCTL_OUT(req, oid->oid_name,
(kgdb) ist
Undefined command: "ist".  Try "help".
(kgdb) list
502                                     continue;
503
504                             if (req->oldidx)
505                                     error = SYSCTL_OUT(req, ".", 1);
506                             if (!error)
507                                     error = SYSCTL_OUT(req, oid->oid_name,
508                                             strlen(oid->oid_name));
509                             if (error)
510                                     return (error);
511
(kgdb) print oid
$1 = (struct sysctl_oid *) 0x0
(kgdb)info locals

name = (int *) 0xc63f7f10

namelen = 1

error = 1852399474

oid = (struct sysctl_oid *) 0x0

lsp = (struct sysctl_oid_list *) 0x0

lsp2 = (struct sysctl_oid_list *) 0x0

buf = "\006\000\000\000ü~?ÆP~"

(kgdb) up
#7  0xc0145cde in sysctl_root (oidp=0x0, arg1=0xc63f7efc, arg2=6, 

    req=0xc63f7e74) at /usr/src/sys/kern/kern_sysctl.c:1035

1035			error = oid->oid_handler(oid, (int *)arg1 + indx, arg2 - indx,

(kgdb) info locals

arg1 = (void *) 0xc63f7efc

arg2 = 6

req = (struct sysctl_req *) 0xc63f7e74

oid = (struct sysctl_oid *) 0xc0298860

error = 0

indx = 2

(kgdb) up

#8  0xc0145e99 in userland_sysctl (p=0xc6240dc0, name=0xc63f7efc, namelen=6, 

    old=0xbfbfee5c, oldlenp=0xbfbfee20, inkernel=0, new=0x0, newlen=0, 

    retval=0xc63f7ef8) at /usr/src/sys/kern/kern_sysctl.c:1131

1131		    error = sysctl_root(0, name, namelen, &req2);

(kgdb) info locals

p = (struct proc *) 0x0

old = (void *) 0xc63f7e9c

oldlenp = (size_t *) 0xc63f7ec4

newlen = 0

error = 0

req = {p = 0xc6240dc0, lock = 1, oldptr = 0xbfbfee5c, oldlen = 1024, 

  oldidx = 0, oldfunc = 0xc0145aa8 <sysctl_old_user>, newptr = 0x0, 

  newlen = 0, newidx = 0, newfunc = 0xc0145b34 <sysctl_new_user>}

req2 = {p = 0xc6240dc0, lock = 2, oldptr = 0xbfbfee5c, oldlen = 1024, 

  oldidx = 15, oldfunc = 0xc0145aa8 <sysctl_old_user>, newptr = 0x0, 

  newlen = 0, newidx = 0, newfunc = 0xc0145b34 <sysctl_new_user>}

(kgdb) up

#9  0xc0145d59 in __sysctl (p=0xc6240dc0, uap=0xc63f7f80)

    at /usr/src/sys/kern/kern_sysctl.c:1067

1067		error = userland_sysctl(p, name, uap->namelen,

(kgdb) info locals

uap = (struct sysctl_args *) 0xc63f7f80

error = 0

i = 0

name = {0, 1, 4, 18, 6, 1869414501, 106, -1060258752, -970715712, -970715712, 

  -968917120, 6}

j = 16

(kgdb) up

#10 0xc025364d in syscall2 (frame={tf_fs = 47, tf_es = 47, tf_ds = 47, 

      tf_edi = -1077940700, tf_esi = 6, tf_ebp = -1077940804, 

      tf_isp = -968917036, tf_ebx = -1077940700, tf_edx = -1077940704, 

      tf_ecx = 0, tf_eax = 202, tf_trapno = 8, tf_err = 2, tf_eip = 134560580, 

      tf_cs = 31, tf_eflags = 647, tf_esp = -1077940864, tf_ss = 47})

    at /usr/src/sys/i386/i386/trap.c:1155

1155		error = (*callp->sy_call)(p, args);

(kgdb) info locals

params = 0xbfbfed84 "$î¿¿\006"

i = 0

callp = (struct sysent *) 0xc0294cb0

p = (struct proc *) 0xc6240dc0

sticks = 6

error = 0

narg = 6

args = {-1077940700, 6, -1077940644, -1077940704, 0, 0, 0, 47}

have_mplock = 1

code = 202

(kgdb) up

#11 0xc0244985 in Xint0x80_syscall ()

(kgdb) 

--OgqxwSJOaUobr8KG--


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20020113184813.GD84064>