Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 26 Feb 2008 09:41:45 +0100
From:      "Petr Holub" <hopet@ics.muni.cz>
To:        <freebsd-stable@freebsd.org>
Cc:        'Kris Kennaway' <kris@freebsd.org>, "'Andrey V. Elsukov'" <bu7cher@yandex.ru>, rwatson@freebsd.org, 'John Baldwin' <jhb@freebsd.org>
Subject:   RE: 6.3-RELEASE panic
Message-ID:  <030a01c87853$6e90a110$4bb1e330$@muni.cz>
In-Reply-To: <200801230930.11751.jhb@freebsd.org>
References:  <004b01c85c4e$e1c44540$a54ccfc0$@muni.cz> <47952160.7030106@freebsd.org> <47953526.5020501@FreeBSD.org> <200801230930.11751.jhb@freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help
Hi all,

I've encountered the panic on 6.3-RELEASE once again - this time with
prepared debug kernel, so here you go. It seems like the panic is =
usually
initiated when firefox exits. Let me know if any further information is=20

Petr


GNU gdb 6.1.1 [FreeBSD]
Copyright 2004 Free Software Foundation, Inc.
GDB is free software, covered by the GNU General Public License, and you =
are
welcome to change it and/or distribute copies of it under certain
conditions.
Type "show copying" to see the conditions.
There is absolutely no warranty for GDB.  Type "show warranty" for =
details.
This GDB was configured as "i386-marcel-freebsd".

Unread portion of the kernel message buffer:


Fatal trap 12: page fault while in kernel mode
fault virtual address	=3D 0x9ef418
fault code		=3D supervisor read, page not present
instruction pointer	=3D 0x20:0xc07f2348
stack pointer	        =3D 0x28:0xea61cb08
frame pointer	        =3D 0x28:0xea61cb14
code segment		=3D base 0x0, limit 0xfffff, type 0x1b
			=3D DPL 0, pres 1, def32 1, gran 1
processor eflags	=3D interrupt enabled, resume, IOPL =3D 0
current process		=3D 1808 (firefox-bin)
trap number		=3D 12
panic: page fault
Uptime: 4d23h12m54s
Dumping 1023 MB (2 chunks)
  chunk 0: 1MB (159 pages) ... ok
  chunk 1: 1023MB (261760 pages) 1007 991 975 959 943 927 911 895 879 =
863
847 831 815 799 783 767 751 735 719 703 687 671 655 639 623 607 591 575
(CTRL-C to abort)  (CTRL-C to abort)  (CTRL-C to abort)  559 543 527 511 =
495
479 463 447 431 415 399 383 367 351 335 319 303 287 271 255 239 223 207 =
191
175 159 143 127 111 95 79 63 47 31 15

#0  doadump () at pcpu.h:165
	in pcpu.h
(kgdb) bt
#0  doadump () at pcpu.h:165
#1  0xc06a4ad6 in boot (howto=3D260) at =
/usr/src/sys/kern/kern_shutdown.c:409
#2  0xc06a4d6c in panic (fmt=3D0xc096ba63 "%s")
    at /usr/src/sys/kern/kern_shutdown.c:565
#3  0xc090d0d4 in trap_fatal (frame=3D0xea61cac8, eva=3D10417176)
    at /usr/src/sys/i386/i386/trap.c:838
#4  0xc090ce3b in trap_pfault (frame=3D0xea61cac8, usermode=3D0, =
eva=3D10417176)
    at /usr/src/sys/i386/i386/trap.c:745
#5  0xc090ca79 in trap (frame=3D
      {tf_fs =3D -1066532856, tf_es =3D -648871896, tf_ds =3D =
-949551064, tf_edi =3D
2590720, tf_esi =3D 0, tf_ebp =3D -362689772, tf_isp =3D -362689804, =
tf_ebx =3D 0,
tf_edx =3D 2590720, tf_ecx =3D 10417152, tf_eax =3D -981897076, =
tf_trapno =3D 12,
tf_err =3D 0, tf_eip =3D -1065409720, tf_cs =3D 32, tf_eflags =3D =
2163206, tf_esp =3D
-981897076, tf_ss =3D 132}) at /usr/src/sys/i386/i386/trap.c:435
#6  0xc08f9f0a in calltrap () at /usr/src/sys/i386/i386/exception.s:139
#7  0xc07f2348 in pagedep_find (pagedephd=3D0xc579708c, ino=3D2590720, =
lbn=3D)
    at /usr/src/sys/ufs/ffs/ffs_softdep.c:1165
#8  0xc07f23ea in pagedep_lookup (ip=3D0xc771f7bc, lbn=3D0, flags=3D1,=20
    pagedeppp=3D0xea61cb64) at /usr/src/sys/ufs/ffs/ffs_softdep.c:1204
#9  0xc07f620b in newdirrem (bp=3D0xd953e678, dp=3D0xc771f7bc, =
ip=3D0xc6736084,=20
    isrmdir=3D0, prevdirremp=3D0xea61cb90)
    at /usr/src/sys/ufs/ffs/ffs_softdep.c:3301
#10 0xc07f5fc0 in softdep_setup_remove (bp=3D0xd953e678, =
dp=3D0xc771f7bc,=20
    ip=3D0xc6736084, isrmdir=3D0) at =
/usr/src/sys/ufs/ffs/ffs_softdep.c:3230
#11 0xc0806bb6 in ufs_dirremove (dvp=3D0xc719b440, ip=3D0xc6736084,=20
    flags=3D83918860, isrmdir=3D0) at =
/usr/src/sys/ufs/ufs/ufs_lookup.c:1020
#12 0xc0809b93 in ufs_remove (ap=3D0x278800)
    at /usr/src/sys/ufs/ufs/ufs_vnops.c:798
#13 0xc091e8b0 in VOP_REMOVE_APV (vop=3D0xc579708c, a=3D0xea61cc3c)
    at vnode_if.c:1077
#14 0xc070401f in kern_unlink (td=3D0xc7678480,=20
    path=3D0xbc29288 <Address 0xbc29288 out of bounds>, =
pathseg=3DUIO_USERSPACE)
    at vnode_if.h:563
#15 0xc0703e8e in unlink (td=3D0xc7678480, uap=3D0xc579708c)
    at /usr/src/sys/kern/vfs_syscalls.c:1642
#16 0xc090d3eb in syscall (frame=3D
      {tf_fs =3D 134611003, tf_es =3D 134742075, tf_ds =3D -1078001605, =
tf_edi =3D
197300736, tf_esi =3D 17, tf_ebp =3D -1077950232, tf_isp =3D -362689180, =
tf_ebx =3D
673223176, tf_edx =3D 197300736, tf_ecx =3D 197300736, tf_eax =3D 10, =
tf_trapno =3D
0, tf_err =3D 2, tf_eip =3D 684230759, tf_cs =3D 51, tf_eflags =3D =
2097810, tf_esp =3D
-1077950388, tf_ss =3D 59}) at /usr/src/sys/i386/i386/trap.c:984
#17 0xc08f9f5f in Xint0x80_syscall ()
    at /usr/src/sys/i386/i386/exception.s:200
#18 0x00000033 in ?? ()
(kgdb) bt full
#0  doadump () at pcpu.h:165
No locals.
#1  0xc06a4ad6 in boot (howto=3D260) at =
/usr/src/sys/kern/kern_shutdown.c:409
	first_buf_printf =3D 1
#2  0xc06a4d6c in panic (fmt=3D0xc096ba63 "%s")
    at /usr/src/sys/kern/kern_shutdown.c:565
	td =3D (struct thread *) 0xc7678480
	bootopt =3D 260
	newpanic =3D 0
	ap =3D 0xc7678480 "0t%=C8=E0z=E5=C5\200'`=C7@t%=C8\200'`=C7=ECz=E5=C5"
	buf =3D "page fault", '\0' <repeats 245 times>
#3  0xc090d0d4 in trap_fatal (frame=3D0xea61cac8, eva=3D10417176)
    at /usr/src/sys/i386/i386/trap.c:838
	code =3D 40
	ss =3D 40
	esp =3D 0
	type =3D 12
	softseg =3D {ssd_base =3D 0, ssd_limit =3D 1048575, ssd_type =3D 27,=20
  ssd_dpl =3D 0, ssd_p =3D 1, ssd_xx =3D 4, ssd_xx1 =3D 3, ssd_def32 =3D =
1,=20
  ssd_gran =3D 1}
	msg =3D 0x0
#4  0xc090ce3b in trap_pfault (frame=3D0xea61cac8, usermode=3D0, =
eva=3D10417176)
    at /usr/src/sys/i386/i386/trap.c:745
	va =3D 10416128
	vm =3D (struct vmspace *) 0x0
	map =3D 0xc5de45c8
	rv =3D 1
	ftype =3D 1 '\001'
	td =3D (struct thread *) 0xc7678480
	p =3D (struct proc *) 0xc8257430
#5  0xc090ca79 in trap (frame=3D
      {tf_fs =3D -1066532856, tf_es =3D -648871896, tf_ds =3D =
-949551064, tf_edi =3D
2590720, tf_esi =3D 0, tf_ebp =3D -362689772, tf_isp =3D -362689804, =
tf_ebx =3D 0,
tf_edx =3D 2590720, tf_ecx =3D 10417152, tf_eax =3D -981897076, =
tf_trapno =3D 12,
tf_err =3D 0, tf_eip =3D -1065409720, tf_cs =3D 32, tf_eflags =3D =
2163206, tf_esp =3D
-981897076, tf_ss =3D 132}) at /usr/src/sys/i386/i386/trap.c:435
	td =3D (struct thread *) 0xc7678480
	p =3D (struct proc *) 0xc8257430
	sticks =3D 3646154360
	type =3D 12
	i =3D 0
	ucode =3D 0
	code =3D 0
	eva =3D 10417176
#6  0xc08f9f0a in calltrap () at /usr/src/sys/i386/i386/exception.s:139
No locals.
#7  0xc07f2348 in pagedep_find (pagedephd=3D0xc579708c, ino=3D2590720, =
lbn=3D)
    at /usr/src/sys/ufs/ffs/ffs_softdep.c:1165
	pagedep =3D (struct pagedep *) 0x9ef400
#8  0xc07f23ea in pagedep_lookup (ip=3D0xc771f7bc, lbn=3D0, flags=3D1,=20
    pagedeppp=3D0xea61cb64) at /usr/src/sys/ufs/ffs/ffs_softdep.c:1204
	pagedep =3D (struct pagedep *) 0xc9c4a8c0
	pagedephd =3D (struct pagedep_hashhead *) 0xc579708c
	mp =3D (struct mount *) 0xc58477c8
	ret =3D 132
	i =3D -981897076
#9  0xc07f620b in newdirrem (bp=3D0xd953e678, dp=3D0xc771f7bc, =
ip=3D0xc6736084,=20
    isrmdir=3D0, prevdirremp=3D0xea61cb90)
    at /usr/src/sys/ufs/ffs/ffs_softdep.c:3301
	offset =3D 132
	lbn =3D (kgdb) q





Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?030a01c87853$6e90a110$4bb1e330$>