From owner-freebsd-sparc64@FreeBSD.ORG Tue Sep 28 07:12:13 2004 Return-Path: Delivered-To: freebsd-sparc64@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id E927F16A4CE for ; Tue, 28 Sep 2004 07:12:13 +0000 (GMT) Received: from obsecurity.dyndns.org (CPE0050040655c8-CM00111ae02aac.cpe.net.cable.rogers.com [69.194.102.143]) by mx1.FreeBSD.org (Postfix) with ESMTP id B12F443D1F for ; Tue, 28 Sep 2004 07:12:13 +0000 (GMT) (envelope-from kris@obsecurity.org) Received: by obsecurity.dyndns.org (Postfix, from userid 1000) id AC32351262; Tue, 28 Sep 2004 00:12:41 -0700 (PDT) Date: Tue, 28 Sep 2004 00:12:41 -0700 From: Kris Kennaway To: Kris Kennaway Message-ID: <20040928071241.GA74512@xor.obsecurity.org> References: <20040921064450.GA54998@xor.obsecurity.org> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="ew6BAiZeqk4r7MaW" Content-Disposition: inline In-Reply-To: <20040921064450.GA54998@xor.obsecurity.org> User-Agent: Mutt/1.4.2.1i cc: sparc64@freeBSD.org Subject: Re: Memory modified after free 0xfffff8001b210e00(504) val=deadc0dd @ 0xfffff8001b21 X-BeenThere: freebsd-sparc64@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Porting FreeBSD to the Sparc List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 28 Sep 2004 07:12:14 -0000 --ew6BAiZeqk4r7MaW Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Mon, Sep 20, 2004 at 11:44:50PM -0700, Kris Kennaway wrote: > I just got this panic on an SMP sparc package machine running 6.0: >=20 > Memory modified after free 0xfffff8001b210e00(504) val=3Ddeadc0dd @ 0xfff= ff8001b210f20 > panic: Most recently used by file desc > cpuid =3D 0 > KDB: enter: panic > [thread 100195] > Stopped at kdb_enter+0x38: ta %xcc, 1 > db> trace > panic() at panic+0x19c > mtrash_ctor() at mtrash_ctor+0x7c > uma_zalloc_arg() at uma_zalloc_arg+0x3e8 > malloc() at malloc+0xa8 > fdinit() at fdinit+0x40 > fdcopy() at fdcopy+0x28 > fork1() at fork1+0x770 > fork() at fork+0x10 > syscall() at syscall+0x220 > -- syscall (2, FreeBSD ELF64, fork) %o7=3D0x10fe00 -- > userland() at 0x40643008 > user trace: trap %o7=3D0x10fe00 > pc 0x40643008, sp 0x7fdffffc3d1 > pc 0x106e6c, sp 0x7fdffffc491 > pc 0x1067d0, sp 0x7fdffffc561 > pc 0x107110, sp 0x7fdffffc621 > pc 0x10a3b4, sp 0x7fdffffc711 > pc 0x109c78, sp 0x7fdffffc8a1 > Dumping 512 MB (1 chunks) > chunk at 0: 536870912 bytes panic: trap: fast data access mmu miss > cpuid =3D 0 > KDB: enter: panic > [thread 100195] > Stopped at kdb_enter+0x38: ta %xcc, 1 > db> Happened again.. Kris --ew6BAiZeqk4r7MaW Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.6 (FreeBSD) iD8DBQFBWQ7pWry0BWjoQKURAgkyAKDY7102Gb7Mv4+7RHo+u4/N/7uqjQCgtTpL seL1QMRk/uiV16P8RdqOyJM= =nL6P -----END PGP SIGNATURE----- --ew6BAiZeqk4r7MaW--