From owner-freebsd-bugs Thu Nov 27 16:35:49 1997 Return-Path: Received: (from root@localhost) by hub.freebsd.org (8.8.7/8.8.7) id QAA04157 for bugs-outgoing; Thu, 27 Nov 1997 16:35:49 -0800 (PST) (envelope-from owner-freebsd-bugs) Received: from sax.sax.de (sax.sax.de [193.175.26.33]) by hub.freebsd.org (8.8.7/8.8.7) with ESMTP id QAA04142 for ; Thu, 27 Nov 1997 16:35:44 -0800 (PST) (envelope-from j@uriah.heep.sax.de) Received: (from uucp@localhost) by sax.sax.de (8.8.8/8.8.8) with UUCP id BAA20610 for freebsd-bugs@FreeBSD.org; Fri, 28 Nov 1997 01:35:42 +0100 (CET) (envelope-from j@uriah.heep.sax.de) Received: (from j@localhost) by uriah.heep.sax.de (8.8.8/8.8.5) id BAA03005; Fri, 28 Nov 1997 01:31:21 +0100 (MET) Message-ID: <19971128013121.15890@uriah.heep.sax.de> Date: Fri, 28 Nov 1997 01:31:21 +0100 From: J Wunsch To: FreeBSD bugs list Subject: ed(4) buglet Reply-To: Joerg Wunsch Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii X-Mailer: Mutt 0.88 X-Phone: +49-351-2012 669 X-PGP-Fingerprint: DC 47 E6 E4 FF A6 E9 8F 93 21 E0 7D F9 12 D6 4E Sender: owner-freebsd-bugs@FreeBSD.org X-Loop: FreeBSD.org Precedence: bulk ed(4) panics in kvtop() when running on a 3C503 card with no `iomem' range specified. Probably, accessing a NULL pointer in the context of /* * Set upper address bits and 8/16 bit access to shared memory */ if (isa16bit) { if (sc->is790) { sc->wd_laar_proto = inb(sc->asic_addr + ED_WD_LAAR); outb(sc->asic_addr + ED_WD_LAAR, ED_WD_LAAR_M16EN); } else { outb(sc->asic_addr + ED_WD_LAAR, (sc->wd_laar_proto = ED_WD_LAAR_L16EN | ED_WD_LAAR_M16EN | ((kvtop(sc->mem_start) >> 19) & ED_WD_LAAR_ADDRHI))) ^^^^^^^^^^^^^^^^^^^^^ ; } ...is fatal. -- cheers, J"org joerg_wunsch@uriah.heep.sax.de -- http://www.sax.de/~joerg/ -- NIC: JW11-RIPE Never trust an operating system you don't have sources for. ;-)