From nobody Wed Jun 14 11:44:34 2023 X-Original-To: bugs@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4Qh3Vp4HgPz4d4kT for ; Wed, 14 Jun 2023 11:44:34 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4Qh3Vp1Gvnz3LNf for ; Wed, 14 Jun 2023 11:44:34 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1686743074; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=LKZymwVoWnj0aSSUAU/DzlgmHDt6uKqToEn9nD3o5wA=; b=OEk0rgEX/vcvt7W1LhtyUvexEeR02/fCDRg7sa6sShEYWujIKEKAwEeAY/1X793WWr3kQs Wf1rs0foap9nNV1hCcap8oTsEUDfjI1FdsETkt3TQN47ctLaOrFiIlzOdhpQDEekO2VAVb 7q22dWrqdUttqKZalRe2sx/14vcyEKh0yPXHCfIO0BZuP+6qeKjme4duG/s9k1auODEzef C7NkocTut8l2KPtNXvCK6I+xKrWptASXwdZw+SMbVrtFpXdsSW1jYhT2N3u9AbFlEe8fjf UQTiUT1EV0kaXbdtNfqdKrgCT6xbASezS3zA4B/7URiK6SEKLm5qprezXlQaQQ== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1686743074; a=rsa-sha256; cv=none; b=IJOa/ShVOzAI3LBgXOFw6SOWO0Vxyp+fkQLIwQIikQAdqPBJ6hKtz1ko0oeyDTDKq7+bwb 4Ulpv5sZf6+C0A1p2Kett9P0aETNP+v4qHcQIonWqHu6eu9wPADxi3kNDXn5N1llaI0YR3 gsTaG5Frj+f+XsdNPd6nI67g+O/itlVUNYTmsdWwVt6ebRe4R/HcmbaTt3QpPINpQxw5yI yor+VlpkPVwMLSkxkcwthiHsMxeIXCD4pe9cVjsJYkmO3UD03Y2WfXMPMvkQaBqnNhNEfI Hc5LpDekN5DAdfmgbftAK4c8XR+XdjLBuf7MxvBI10tABb+5sWVCI3QMMY1Tmg== Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2610:1c1:1:606c::50:1d]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4Qh3Vp08GJz12h5 for ; Wed, 14 Jun 2023 11:44:34 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org ([127.0.1.5]) by kenobi.freebsd.org (8.15.2/8.15.2) with ESMTP id 35EBiXN5082639 for ; Wed, 14 Jun 2023 11:44:33 GMT (envelope-from bugzilla-noreply@freebsd.org) Received: (from www@localhost) by kenobi.freebsd.org (8.15.2/8.15.2/Submit) id 35EBiXFu082638 for bugs@FreeBSD.org; Wed, 14 Jun 2023 11:44:33 GMT (envelope-from bugzilla-noreply@freebsd.org) X-Authentication-Warning: kenobi.freebsd.org: www set sender to bugzilla-noreply@freebsd.org using -f From: bugzilla-noreply@freebsd.org To: bugs@FreeBSD.org Subject: [Bug 271991] Crash on some network packets with fresh stable Date: Wed, 14 Jun 2023 11:44:34 +0000 X-Bugzilla-Reason: AssignedTo X-Bugzilla-Type: new X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Base System X-Bugzilla-Component: kern X-Bugzilla-Version: 13.2-STABLE X-Bugzilla-Keywords: X-Bugzilla-Severity: Affects Some People X-Bugzilla-Who: rozhuk.im@gmail.com X-Bugzilla-Status: New X-Bugzilla-Resolution: X-Bugzilla-Priority: --- X-Bugzilla-Assigned-To: bugs@FreeBSD.org X-Bugzilla-Flags: X-Bugzilla-Changed-Fields: bug_id short_desc product version rep_platform op_sys bug_status bug_severity priority component assigned_to reporter Message-ID: Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated List-Id: Bug reports List-Archive: https://lists.freebsd.org/archives/freebsd-bugs List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-bugs@freebsd.org MIME-Version: 1.0 X-ThisMailContainsUnwantedMimeParts: N https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D271991 Bug ID: 271991 Summary: Crash on some network packets with fresh stable Product: Base System Version: 13.2-STABLE Hardware: Any OS: Any Status: New Severity: Affects Some People Priority: --- Component: kern Assignee: bugs@FreeBSD.org Reporter: rozhuk.im@gmail.com System was run with uptime few month before first crash, then after few cra= shes it was updated to stable/13-n255603-6621273c100 (less than 1 day ago). Now it continue crash time to time. Unread portion of the kernel message buffer: [3032] [3032] [3032] Fatal trap 12: page fault while in kernel mode [3032] cpuid =3D 10; apic id =3D 0a [3032] fault virtual address =3D 0x1b96 [3032] fault code =3D supervisor read data, page not present [3032] instruction pointer =3D 0x20:0xffffffff808f2120 [3032] stack pointer =3D 0x28:0xfffffe0154f37620 [3032] frame pointer =3D 0x28:0xfffffe0154f37620 [3032] code segment =3D base 0x0, limit 0xfffff, type 0x1b [3032] =3D DPL 0, pres 1, long 1, def32 0, gran 1 [3032] processor eflags =3D interrupt enabled, resume, IOPL =3D 0 [3032] current process =3D 11 (swi1: netisr 10) [3032] trap number =3D 12 [3032] panic: page fault [3032] cpuid =3D 10 [3032] time =3D 1686742015 [3032] KDB: stack backtrace: [3032] #0 0xffffffff8062e65b at kdb_backtrace+0x6b [3032] #1 0xffffffff805e5282 at vpanic+0x152 [3032] #2 0xffffffff805e5123 at panic+0x43 [3032] #3 0xffffffff808f68b7 at trap_fatal+0x387 [3032] #4 0xffffffff808f690f at trap_pfault+0x4f [3032] #5 0xffffffff808cdbae at calltrap+0x8 [3032] #6 0xffffffff806682a5 at m_pullup+0x1b5 [3032] #7 0xffffffff817424df at ng_bpf_rcvdata+0x4f [3032] #8 0xffffffff81739777 at ng_apply_item+0x207 [3032] #9 0xffffffff8173925c at ng_snd_item+0x1cc [3032] #10 0xffffffff81733bdd at ng_ether_output+0x5d [3032] #11 0xffffffff807039b7 at ether_output+0x6c7 [3032] #12 0xffffffff80759cc6 at ip_output_send+0xe6 [3032] #13 0xffffffff807599f3 at ip_output+0xff3 [3032] #14 0xffffffff8076e688 at tcp_output+0x1cf8 [3032] #15 0xffffffff80764f08 at tcp_do_segment+0x2258 [3032] #16 0xffffffff807622d4 at tcp_input_with_port+0xa54 [3032] #17 0xffffffff80762c2b at tcp_input+0xb [3032] Uptime: 50m32s [3032] Dumping 2895 out of 65450 MB:..1%..11%..21%..31%..41%..51%..61%..71%..81%..91% __curthread () at /usr/src/sys/amd64/include/pcpu_aux.h:55 55 __asm("movq %%gs:%P1,%0" : "=3Dr" (td) : "n" (offsetof(stru= ct pcpu, (kgdb) #0 __curthread () at /usr/src/sys/amd64/include/pcpu_aux.h:55 #1 doadump (textdump=3D) at ../../../sys/kern/kern_shutdown.c:396 #2 0xffffffff805e4e78 in kern_reboot (howto=3D260) at ../../../sys/kern/kern_shutdown.c:484 #3 0xffffffff805e52ef in vpanic (fmt=3D, ap=3Dap@entry=3D0xfffffe0154f37470) at ../../../sys/kern/kern_shutdown.= c:923 #4 0xffffffff805e5123 in panic (fmt=3D) at ../../../sys/kern/kern_shutdown.c:847 #5 0xffffffff808f68b7 in trap_fatal (frame=3D0xfffffe0154f37560, eva=3D706= 2) at ../../../sys/amd64/amd64/trap.c:942 #6 0xffffffff808f690f in trap_pfault (frame=3D0xfffffe0154f37560, usermode=3Dfalse, signo=3D, ucode=3D) at ../../../sys/amd64/amd64/trap.c:761 #7 #8 memmove_std () at /usr/src/sys/amd64/amd64/support.S:535 #9 0xffffffff806682a5 in m_pullup (n=3D0xfffff80043a37e00, n@entry=3D0xfffff8027c962b00, len=3D101, len@entry=3D167) at ../../../sys/kern/uipc_mbuf.c:926 #10 0xffffffff817424df in ng_bpf_rcvdata (hook=3D, item=3D0xfffff800949d3680) at ../../../../../../../../../../sys/netgraph/ng_bpf.c:457 #11 0xffffffff81739777 in ng_apply_item (node=3Dnode@entry=3D0xfffff800021a= 1600, item=3Ditem@entry=3D0xfffff800949d3680, rw=3D101) at ../../../../../../../../../../sys/netgraph/ng_base.c:2406 #12 0xffffffff8173925c in ng_snd_item (item=3Ditem@entry=3D0xfffff800949d36= 80, flags=3Dflags@entry=3D0) at ../../../../../../../../../../sys/netgraph/ng_base.c:2323 #13 0xffffffff81733bdd in ng_ether_output (ifp=3D, mp=3D0xfffffe0154f377d8) at ../../../../../../../../../../sys/netgraph/ng_ether.c:294 #14 0xffffffff807039b7 in ether_output (ifp=3D, m=3D0xfffff8027c962b00, dst=3D, ro=3D) at ../../../sys/net/if_ethersubr.c:431 #15 0xffffffff80759cc6 in ip_output_send (inp=3Dinp@entry=3D0xfffff80043e9d= ba0, ifp=3D0xfffff8024fc0e89a, m=3D0x1b96, gw=3D0x65, gw@entry=3D0xfffff8002= 3a91d04, ro=3D0xfffff8024fc0cd04, ro@entry=3D0xfffff80043e9dd30, stamp_tag=3D) at ../../../sys/netinet/ip_output.c:277 #16 0xffffffff807599f3 in ip_output (m=3D, m@entry=3D0xfffff8027c962b00, opt=3D, ro=3D, flags=3D0, imo=3Dimo@entry=3D0x0, inp=3D0xfffff80043e9dba0) at ../../../sys/netinet/ip_output.c:799 #17 0xffffffff8076e688 in tcp_output (tp=3D0xfffffe01664e3950) at ../../../sys/netinet/tcp_output.c:1541 #18 0xffffffff80764f08 in tcp_do_segment (m=3D0xfffff80320b4b100, th=3D, so=3D, tp=3D0xfffffe01664e3950, drop_hdrlen=3D52, tlen=3D, iptos=3D32 ' ') at ../../../sys/netinet/tcp_input.c:3339 #19 0xffffffff807622d4 in tcp_input_with_port (mp=3D, offp=3D, proto=3D, port=3Dport@entry=3D0) at ../../../sys/netinet/tcp_input.c:1179 #20 0xffffffff80762c2b in tcp_input (mp=3D0xfffff8024fc0e89a, offp=3D0x1b96, proto=3D101) at ../../../sys/netinet/tcp_input.c:1517 #21 0xffffffff80756325 in ip_input (m=3D0x0) at ../../../sys/netinet/ip_input.c:845 #22 0xffffffff80728948 in netisr_process_workstream_proto ( nwsp=3D0xfffffe006ce416c0, proto=3D1) at ../../../sys/net/netisr.c:919 #23 swi_net (arg=3D0xfffffe006ce416c0) at ../../../sys/net/netisr.c:966 #24 0xffffffff805b1101 in intr_event_execute_handlers (ie=3D0xfffff80001c8d= c00, p=3D) at ../../../sys/kern/kern_intr.c:1169 #25 ithread_execute_handlers (ie=3D0xfffff80001c8dc00, p=3D) at ../../../sys/kern/kern_intr.c:1182 #26 ithread_loop (arg=3D0xfffff80001cee340) at ../../../sys/kern/kern_intr.c:1270 #27 0xffffffff805ade66 in fork_exit ( callout=3D0xffffffff805b0ec0 , arg=3D0xfffff80001cee340, frame=3D0xfffffe0154f37f40) at ../../../sys/kern/kern_fork.c:1094 #28 (kgdb) Netgraph: https://reviews.freebsd.org/D30175 ng_bpf_enable=3D"YES" ng_bpf_profiles=3D"vlan886" ng_bpf_vlan886_in=3D"ip and tcp and ip[6] & 64 =3D 0 and ip[8]>128 and tcp[tcpflags] =3D=3D tcp-rst" --=20 You are receiving this mail because: You are the assignee for the bug.=