From owner-freebsd-net@FreeBSD.ORG Wed Mar 18 17:58:17 2015 Return-Path: Delivered-To: freebsd-net@FreeBSD.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id CD708C6D for ; Wed, 18 Mar 2015 17:58:17 +0000 (UTC) Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2001:1900:2254:206a::16:76]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id B14E9FB6 for ; Wed, 18 Mar 2015 17:58:17 +0000 (UTC) Received: from bugs.freebsd.org ([127.0.1.118]) by kenobi.freebsd.org (8.14.9/8.14.9) with ESMTP id t2IHwH4B039916 for ; Wed, 18 Mar 2015 17:58:17 GMT (envelope-from bugzilla-noreply@freebsd.org) From: bugzilla-noreply@freebsd.org To: freebsd-net@FreeBSD.org Subject: [Bug 148807] [panic] 8.1-RELEASE "panic: sbdrop" and "panic: sbsndptr: sockbuf _ and mbuf _ clashing" under heavy load Date: Wed, 18 Mar 2015 17:58:17 +0000 X-Bugzilla-Reason: AssignedTo X-Bugzilla-Type: changed X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Base System X-Bugzilla-Component: kern X-Bugzilla-Version: 10.1-STABLE X-Bugzilla-Keywords: X-Bugzilla-Severity: Affects Only Me X-Bugzilla-Who: hiren@FreeBSD.org X-Bugzilla-Status: Open X-Bugzilla-Priority: Normal X-Bugzilla-Assigned-To: freebsd-net@FreeBSD.org X-Bugzilla-Target-Milestone: --- X-Bugzilla-Flags: X-Bugzilla-Changed-Fields: version cc Message-ID: In-Reply-To: References: Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: 7bit X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated MIME-Version: 1.0 X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 18 Mar 2015 17:58:18 -0000 https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=148807 Hiren Panchasara changed: What |Removed |Added ---------------------------------------------------------------------------- Version|8.1-RELEASE |10.1-STABLE CC| |hiren@FreeBSD.org, | |nitroboost@gmail.com --- Comment #15 from Hiren Panchasara --- We saw this panic on stable10 from Jan. Dump header from device /dev/da0s1b Architecture: amd64 Architecture Version: 2 Dump Length: 1050050560B (1001 MB) Blocksize: 512 Dumptime: Wed Mar 11 23:12:59 2015 Hostname: xxxxxxxxxxxxxxxxxx Magic: FreeBSD Kernel Dump Version String: FreeBSD 10.1-STABLE-llnw10 #0: Fri Jan 16 00:19:27 MST 2015 xxxx@xxxxxxxxxxx:/usr/obj/usr/src/sys/SIXFOUR Panic String: sbsndptr: sockbuf 0xfffff802d3e79440 and mbuf 0xfffff80238089b00 clashing Dump Parity: 747892521 Bounds: 0 Dump Status: good (kgdb) #0 doadump (textdump=1) at pcpu.h:219 #1 0xffffffff8072d397 in kern_reboot (howto=260) at /usr/src/sys/kern/kern_shutdown.c:452 #2 0xffffffff8072d774 in panic (fmt=) at /usr/src/sys/kern/kern_shutdown.c:759 #3 0xffffffff807a38a0 in sbsndptr (sb=, off=, len=, moff=) at /usr/src/sys/kern/uipc_sockbuf.c:1011 #4 0xffffffff80895f1f in tcp_output (tp=0xfffff802d5315400) at /usr/src/sys/netinet/tcp_output.c:1092 #5 0xffffffff80891685 in tcp_do_segment (m=0xfffff80128e51d00, th=0xfffff8020ca95022, so=0xfffff802d3e792b8, tp=0xfffff802d5315400, drop_hdrlen=, tlen=0, iptos=, ti_locked=-1) at /usr/src/sys/netinet/tcp_input.c:2729 #6 0xffffffff8088f54d in tcp_input (m=, off0=) at /usr/src/sys/netinet/tcp_input.c:1388 #7 0xffffffff808216b7 in ip_input (m=0xfffff80128e51d00) at /usr/src/sys/netinet/ip_input.c:734 #8 0xffffffff807fbc92 in netisr_dispatch_src (proto=, source=, m=0x0) at /usr/src/sys/net/netisr.c:972 #9 0xffffffff807f4656 in ether_demux (ifp=, m=0xfffff80128e51d00) at /usr/src/sys/net/if_ethersubr.c:851 #10 0xffffffff807f52e9 in ether_nh_input (m=) at /usr/src/sys/net/if_ethersubr.c:646 #11 0xffffffff807fbc92 in netisr_dispatch_src (proto=, source=, m=0x0) at /usr/src/sys/net/netisr.c:972 #12 0xffffffff8042332b in em_rxeof (count=94) at /usr/src/sys/dev/e1000/if_em.c:4532 #13 0xffffffff80423703 in em_msix_rx (arg=0xfffff80003ce6600) at /usr/src/sys/dev/e1000/if_em.c:1600 #14 0xffffffff806fe0fb in intr_event_execute_handlers ( p=, ie=0xfffff80003d04200) at /usr/src/sys/kern/kern_intr.c:1264 #15 0xffffffff806fea96 in ithread_loop (arg=0xfffff80003cfb3c0) at /usr/src/sys/kern/kern_intr.c:1277 #16 0xffffffff806fbd1a in fork_exit ( callout=0xffffffff806fea00 , arg=0xfffff80003cfb3c0, frame=0xfffffe03438d7c00) at /usr/src/sys/kern/kern_fork.c:1017 #17 0xffffffff80acdf5e in fork_trampoline () at /usr/src/sys/amd64/amd64/exception.S:611 #18 0x0000000000000000 in ?? () Current language: auto; currently minimal (kgdb) Unfortunately I do not have a crashdump to investigate further. -- You are receiving this mail because: You are the assignee for the bug.