Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 03 Feb 2026 18:42:02 +0000
From:      bugzilla-noreply@freebsd.org
To:        bugs@FreeBSD.org
Subject:   [Bug 292884] nfsd causes kernel panic
Message-ID:  <bug-292884-227-qrjjjO1fVE@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-292884-227@https.bugs.freebsd.org/bugzilla/>

index | next in thread | previous in thread | raw e-mail

https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=292884

--- Comment #7 from Arrigo Triulzi <arrigo@alchemistowl.org> ---
Three identical crashes so far, “-t” flag added to nfsd and restarted.

Requested kgdb output below:

(kgdb) frame 10
#10 0xffffffff80e7ec02 in svc_getreq (
    xprt=0xfffff80105227000, rqstp_ret=<optimized out>)
    at /usr/src/sys/rpc/svc.c:935
warning: 935    /usr/src/sys/rpc/svc.c: No such file or directory
(kgdb) p/x *xprt->xp_socket
$1 = {so_lock = {lock_object = {
      lo_name = 0xffffffff811f19c3, 
      lo_flags = 0x1420000, lo_data = 0x0, 
      lo_witness = 0x0}, mtx_lock = 0x4}, 
  so_count = 0x0, so_rdsel = {si_tdlist = {
      tqh_first = 0x0, tqh_last = 0x0}, si_note = {
      kl_list = {slh_first = 0x0}, 
      kl_lock = 0xffffffff80c16ba0, 
      kl_unlock = 0xffffffff80c16c80, 
      kl_assert_lock = 0xffffffff80c16ce0, 
      kl_lockarg = 0xfffff80231b56400, 
      kl_autodestroy = 0x0}, si_mtx = 0x0}, so_wrsel = {
    si_tdlist = {tqh_first = 0x0, tqh_last = 0x0}, 
    si_note = {kl_list = {slh_first = 0x0}, 
      kl_lock = 0xffffffff80c16cf0, 
      kl_unlock = 0xffffffff80c16dd0, 
      kl_assert_lock = 0xffffffff80c16e30, 
      kl_lockarg = 0xfffff80231b56400, 
      kl_autodestroy = 0x0}, si_mtx = 0x0}, 
  so_options = 0x0, so_type = 0x2, so_state = 0x0, 
  so_pcb = 0x0, so_vnet = 0xfffff8010151d040, 
  so_proto = 0xffffffff81905fe8, so_linger = 0x0, 
  so_timeo = 0x0, so_error = 0x0, so_rerror = 0x0, 
  so_sigio = 0x0, so_cred = 0xfffff82081789300, 
  so_label = 0x0, so_gencnt = 0x691c7, 
  so_emuldata = 0x0, so_dtor = 0x0, osd = {
    osd_nslots = 0x0, osd_slots = 0x0, osd_next = {
      le_next = 0x0, le_prev = 0x0}}, so_fibnum = 0x0, 
  so_user_cookie = 0x0, so_ts_clock = 0x0, 
  so_max_pacing_rate = 0x0, so_splice = 0x0, 
--Type <RET> for more, q to quit, c to continue without paging--c
  so_splice_back = 0x0, so_splice_sent = 0x0, 
  so_snd_sx = {lock_object = {
      lo_name = 0xffffffff811c250a, 
      lo_flags = 0x2320000, lo_data = 0x0, 
      lo_witness = 0x0}, sx_lock = 0x6}, so_snd_mtx = {
    lock_object = {lo_name = 0xffffffff8122d246, 
      lo_flags = 0x1020000, lo_data = 0x0, 
      lo_witness = 0x0}, mtx_lock = 0x4}, so_rcv_sx = {
    lock_object = {lo_name = 0xffffffff81237f82, 
      lo_flags = 0x2320000, lo_data = 0x0, 
      lo_witness = 0x0}, sx_lock = 0x6}, so_rcv_mtx = {
    lock_object = {lo_name = 0xffffffff81262902, 
      lo_flags = 0x1020000, lo_data = 0x0, 
      lo_witness = 0x0}, mtx_lock = 0x4}, {{so_rcv = {
        sb_sel = 0xfffff80231b56428, sb_state = 0x0, 
        sb_flags = 0x20, sb_acc = 0x0, sb_ccc = 0x0, 
        sb_mbcnt = 0x0, sb_ctl = 0x0, sb_hiwat = 0x0, 
        sb_lowat = 0x1, sb_mbmax = 0x0, sb_timeo = 0x0, 
        sb_upcall = 0xffffffff80e802d0, 
        sb_upcallarg = 0xfffff80105227000, 
        sb_aiojobq = {tqh_first = 0x0, 
          tqh_last = 0xfffff80231b56640}, sb_aiotask = {
          ta_link = {stqe_next = 0x0}, 
          ta_pending = 0x0, ta_priority = 0x0, 
          ta_flags = 0x0, ta_func = 0xffffffff80bec060, 
          ta_context = 0xfffff80231b56400}, {{
            sb_mtx = 0xfffff80231b565e0, sb_mb = 0x0, 
            sb_mbtail = 0x0, sb_lastrecord = 0x0, 
            sb_sndptr = 0x0, sb_fnrdy = 0x0, 
            sb_sndptroff = 0x0, sb_tlscc = 0x0, 
            sb_tlsdcc = 0x0, sb_mtls = 0x0, 
            sb_mtlstail = 0x0, sb_tls_seqno = 0x0, 
            sb_tls_info = 0x0}, {uxst_mbq = {
              stqh_first = 0xfffff80231b565e0, 
              stqh_last = 0x0}, uxst_fnrdy = 0x0, 
            uxst_peer = 0x0, uxst_flags = 0x0}, {
            uxdg_mb = {stqh_first = 0xfffff80231b565e0, 
              stqh_last = 0x0}, uxdg_peeked = 0x0, {
              uxdg_conns = {tqh_first = 0x0, 
                tqh_last = 0x0}, uxdg_clist = {
                tqe_next = 0x0, tqe_prev = 0x0}}, 
            uxdg_cc = 0x0, uxdg_ctl = 0x0, 
            uxdg_mbcnt = 0x0}, {nl_queue = {
              tqh_first = 0xfffff80231b565e0, 
              tqh_last = 0x0}}}}, so_snd = {
        sb_sel = 0xfffff80231b56470, sb_state = 0x0, 
        sb_flags = 0x0, sb_acc = 0x0, sb_ccc = 0x0, 
        sb_mbcnt = 0x0, sb_ctl = 0x0, sb_hiwat = 0x0, 
        sb_lowat = 0x800, sb_mbmax = 0x0, 
        sb_timeo = 0x0, sb_upcall = 0x0, 
        sb_upcallarg = 0x0, sb_aiojobq = {
          tqh_first = 0x0, 
          tqh_last = 0xfffff80231b56710}, sb_aiotask = {
          ta_link = {stqe_next = 0x0}, 
          ta_pending = 0x0, ta_priority = 0x0, 
          ta_flags = 0x0, ta_func = 0xffffffff80bec740, 
          ta_context = 0xfffff80231b56400}, {{
            sb_mtx = 0xfffff80231b565a0, sb_mb = 0x0, 
            sb_mbtail = 0x0, sb_lastrecord = 0x0, 
            sb_sndptr = 0x0, sb_fnrdy = 0x0, 
            sb_sndptroff = 0x0, sb_tlscc = 0x0, 
            sb_tlsdcc = 0x0, sb_mtls = 0x0, 
            sb_mtlstail = 0x0, sb_tls_seqno = 0x0, 
            sb_tls_info = 0x0}, {uxst_mbq = {
              stqh_first = 0xfffff80231b565a0, 
              stqh_last = 0x0}, uxst_fnrdy = 0x0, 
            uxst_peer = 0x0, uxst_flags = 0x0}, {
            uxdg_mb = {stqh_first = 0xfffff80231b565a0, 
              stqh_last = 0x0}, uxdg_peeked = 0x0, {
              uxdg_conns = {tqh_first = 0x0, 
                tqh_last = 0x0}, uxdg_clist = {
                tqe_next = 0x0, tqe_prev = 0x0}}, 
            uxdg_cc = 0x0, uxdg_ctl = 0x0, 
            uxdg_mbcnt = 0x0}, {nl_queue = {
              tqh_first = 0xfffff80231b565a0, 
              tqh_last = 0x0}}}}, so_list = {
        tqe_next = 0x0, tqe_prev = 0x0}, 
      so_listen = 0x0, so_qstate = 0x0, 
      so_peerlabel = 0x0, so_oobmark = 0x0, 
      so_ktls_rx_list = {stqe_next = 0x0}}, {
      sol_incomp = {tqh_first = 0xfffff80231b56428, 
        tqh_last = 0x200000}, sol_comp = {
        tqh_first = 0x0, tqh_last = 0x0}, 
      sol_qlen = 0x1, sol_incqlen = 0x0, 
      sol_qlimit = 0x0, 
      sol_accept_filter = 0xffffffff80e802d0, 
      sol_accept_filter_arg = 0xfffff80105227000, 
      sol_accept_filter_str = 0x0, 
      sol_upcall = 0xfffff80231b56640, 
      sol_upcallarg = 0x0, sol_sbrcv_lowat = 0x0, 
      sol_sbsnd_lowat = 0x0, 
      sol_sbrcv_hiwat = 0x80bec060, 
      sol_sbsnd_hiwat = 0xffffffff, 
      sol_sbrcv_flags = 0x6400, 
      sol_sbsnd_flags = 0x31b5, 
      sol_sbrcv_timeo = 0xfffff80231b565e0, 
      sol_sbsnd_timeo = 0x0, sol_lastover = {
        tv_sec = 0x0, tv_usec = 0x0}, 
      sol_overcount = 0x0}}}
(kgdb)

-- 
You are receiving this mail because:
You are the assignee for the bug.

home | help

Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-292884-227-qrjjjO1fVE>