Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 26 Oct 2021 14:48:07 +0000
From:      bugzilla-noreply@freebsd.org
To:        bugs@FreeBSD.org
Subject:   [Bug 259458] iflib_rxeof NULL pointer crash with vmxnet3 driver
Message-ID:  <bug-259458-227-FNSYph2m9s@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-259458-227@https.bugs.freebsd.org/bugzilla/>
References:  <bug-259458-227@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D259458

--- Comment #5 from Andriy Gapon <avg@FreeBSD.org> ---
(kgdb) p $26.iri_frags[0]
$33 =3D {irf_flid =3D 0 '\000', irf_idx =3D 327, irf_len =3D 60}

(kgdb) fr 19
#19 0xffffffff8084d049 in iflib_rxd_pkt_get (rxq=3D0xfffffe00ea9f5000,
ri=3D<optimized out>) at /usr/src/sys/net/iflib.c:2737
2737    in /usr/src/sys/net/iflib.c
(kgdb) i loc
sd =3D {ifsd_cl =3D 0xfffff80002d61a38, ifsd_m =3D 0xfffff80002d62a38, ifsd=
_fl =3D
0xfffff80002d93400}
m =3D 0xfffff80123211c00
(kgdb) p sd.ifsd_cl[0]
$27 =3D (caddr_t) 0x0
(kgdb) p sd.ifsd_cl[1]
$28 =3D (caddr_t) 0xfffff8012322b800 "\377\377\377\377\377\377"
(kgdb) p sd.ifsd_cl[2]
$29 =3D (caddr_t) 0xfffff8012322a000 "\377\377\377\377\377\377"
(kgdb) p sd.ifsd_m[0]
$30 =3D (struct mbuf *) 0x0
(kgdb) p sd.ifsd_m[1]
$31 =3D (struct mbuf *) 0xfffff80123211b00
(kgdb) p sd.ifsd_m[2]
$32 =3D (struct mbuf *) 0xfffff80123211a00

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-259458-227-FNSYph2m9s>