Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 18 Dec 2024 13:17:36 +0000
From:      bugzilla-noreply@freebsd.org
To:        bugs@FreeBSD.org
Subject:   [Bug 283399] iwlwifi: panic: general protection fault
Message-ID:  <bug-283399-227@https.bugs.freebsd.org/bugzilla/>

next in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D283399

            Bug ID: 283399
           Summary: iwlwifi: panic: general protection fault
           Product: Base System
           Version: 15.0-CURRENT
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: kern
          Assignee: bugs@FreeBSD.org
          Reporter: trasz@FreeBSD.org

iwlwifi0: lkpi_iv_newstate: unsupported state transition 5 (RUN) -> 6 (CSA)
iwlwifi0: linuxkpi_ieee80211_beacon_loss: vif 0xfffffe00fc126e80 vap
0xfffffe00fc126010 state RUN
iwlwifi0: linuxkpi_ieee80211_beacon_loss: vif 0xfffffe00fc126e80 vap
0xfffffe00fc126010 state RUN
wlan0: link state changed to DOWN
Dec 18 04:34:23 pustak wpa_supplicant[1117]: ioctl[SIOCS80211, op=3D103, va=
l=3D0,
arg_len=3D128]: Operation now in progress


Fatal trap 9: general protection fault while in kernel mode
cpuid =3D 2; apic id =3D 02
instruction pointer     =3D 0x20:0xffffffff83d47ee6
stack pointer           =3D 0x28:0xfffffe00d7892c70
frame pointer           =3D 0x28:0xfffffe00d7892cc0
code segment            =3D base 0x0, limit 0xfffff, type 0x1b
                        =3D DPL 0, pres 1, long 1, def32 0, gran 1
processor eflags        =3D interrupt enabled, resume, IOPL =3D 0
current process         =3D 0 (linuxkpi_short_wq_1)
rdi: fffffe00fbdc3538 rsi: fffffe00d7892c38 rdx: ffffffff811b5a4a
rcx: fffff8001b3dce40  r8: 0000000000000001  r9: ffffffffffffffff
rax: deadc0dedeadc0de rbx: fffffe00fc126e80 rbp: fffffe00d7892cc0
r10: ffffffff81c514f0 r11: 0000000000000001 r12: fffffe00fc127618
r13: 0000000000000000 r14: fffffe00d7892d10 r15: fffffe00fbdc3508
trap number             =3D 9
panic: general protection fault
cpuid =3D 2
time =3D 1734496463
KDB: stack backtrace:
db_trace_self_wrapper() at db_trace_self_wrapper+0x2b/frame 0xfffffe00d7892=
9b0
vpanic() at vpanic+0x136/frame 0xfffffe00d7892ae0
panic() at panic+0x43/frame 0xfffffe00d7892b40
trap_fatal() at trap_fatal+0x40b/frame 0xfffffe00d7892ba0
calltrap() at calltrap+0x8/frame 0xfffffe00d7892ba0
--- trap 0x9, rip =3D 0xffffffff83d47ee6, rsp =3D 0xfffffe00d7892c70, rbp =
=3D
0xfffffe00d7892cc0 ---
iwl_mvm_bt_notif_iterator() at iwl_mvm_bt_notif_iterator+0xe6/frame
0xfffffe00d7892cc0
linuxkpi_ieee80211_iterate_interfaces() at
linuxkpi_ieee80211_iterate_interfaces+0x84/frame 0xfffffe00d7892d00
iwl_mvm_bt_coex_notif_handle() at iwl_mvm_bt_coex_notif_handle+0x7c/frame
0xfffffe00d7892d60
iwl_mvm_async_handlers_by_context() at
iwl_mvm_async_handlers_by_context+0x130/frame 0xfffffe00d7892db0
lkpi_wiphy_work() at lkpi_wiphy_work+0x108/frame 0xfffffe00d7892df0
linux_work_fn() at linux_work_fn+0xe3/frame 0xfffffe00d7892e40
taskqueue_run_locked() at taskqueue_run_locked+0x1c2/frame 0xfffffe00d7892e=
c0
taskqueue_thread_loop() at taskqueue_thread_loop+0xd3/frame 0xfffffe00d7892=
ef0
fork_exit() at fork_exit+0x82/frame 0xfffffe00d7892f30
fork_trampoline() at fork_trampoline+0xe/frame 0xfffffe00d7892f30
--- trap 0x85de60ac, rip =3D 0xa6bb4f9ddb5e1766, rsp =3D 0xc1462840bc8370bb=
, rbp =3D
0xc9486a1c6a6a8f08 ---
Uptime: 11h49m54s


Here's the backtrace:

#6  <signal handler called>
No locals.
#7  0xffffffff83d47ee6 in iwl_mvm_bt_notif_per_link (mvm=3D0xfffffe00fbdc35=
08,
    vif=3D0xfffffe00fc126e80, data=3D0xfffffe00d7892d10, link_id=3D0)
    at /usr/home/trasz/git/freebsd-src/sys/contrib/dev/iwlwifi/mvm/coex.c:3=
59
        mvmvif =3D 0xfffffe00fc1272c0
        link_info =3D 0xfffffe00fc127618
        smps_mode =3D IEEE80211_SMPS_AUTOMATIC
        link_conf =3D <optimized out>
        chanctx_conf =3D 0xfffff8001b3dce40
        min_ag_for_static_smps =3D <optimized out>
        bt_activity_grading =3D <optimized out>
        ave_rssi =3D <optimized out>
        __lock =3D <optimized out>
        __var =3D <optimized out>
        __var =3D <optimized out>
#8  iwl_mvm_bt_notif_iterator (_data=3D_data@entry=3D0xfffffe00d7892d10,
    mac=3D<optimized out>, vif=3Dvif@entry=3D0xfffffe00fc126e80)
    at /usr/home/trasz/git/freebsd-src/sys/contrib/dev/iwlwifi/mvm/coex.c:5=
09
        mvmvif =3D 0xfffffe00fc1272c0
        data =3D 0xfffffe00d7892d10
        mvm =3D 0xfffffe00fbdc3508
        link_id =3D 0
#9  0xffffffff80de6414 in linuxkpi_ieee80211_iterate_interfaces (
    hw=3D<optimized out>,
    flags=3Dflags@entry=3D(IEEE80211_IFACE_ITER_NORMAL |
IEEE80211_IFACE_ITER_ACTIVE | IEEE80211_IFACE_ITER__ATOMIC),
    iterfunc=3D0xffffffff83d47e00 <iwl_mvm_bt_notif_iterator>,
    arg=3Darg@entry=3D0xfffffe00d7892d10)
    at
/usr/home/trasz/git/freebsd-src/sys/compat/linuxkpi/common/src/linux_80211.=
c:5053
        vap =3D 0xfffffe00fc126010
        lhw =3D 0xfffffe00fbdc3200
        lvif =3D <optimized out>
        vif =3D 0xffffffff811b5a4a
        active =3D <optimized out>
        atomic =3D <optimized out>
        nin_drv =3D <optimized out>
#10 0xffffffff83d476ac in ieee80211_iterate_active_interfaces_atomic (
    hw=3D0xfffffe00fbdc3538,
    flags=3D(IEEE80211_IFACE_ITER_NORMAL | IEEE80211_IFACE_ITER_ACTIVE |
IEEE80211_IFACE_ITER__ATOMIC), arg=3D0xfffffe00d7892d10, iterfunc=3D<optimi=
zed
out>)
    at
/usr/home/trasz/git/freebsd-src/sys/compat/linuxkpi/common/include/net/mac8=
0211.h:1470
No locals.
#11 iwl_mvm_bt_coex_notif_handle (mvm=3D0xfffffe00fbdc3508)
    at /usr/home/trasz/git/freebsd-src/sys/contrib/dev/iwlwifi/mvm/coex.c:5=
26
        data =3D {notif =3D 0xfffffe00fbdc5568, mvm =3D 0xfffffe00fbdc3508,
          primary =3D 0x0, secondary =3D 0x0, primary_ll =3D false,
          primary_load =3D 0 '\000', secondary_load =3D 0 '\000'}
        cmd =3D {bt_primary_ci =3D 0, primary_ch_phy_id =3D 0, bt_secondary=
_ci =3D 0,
          secondary_ch_phy_id =3D 0}
        ci_bw_idx =3D <optimized out>
#12 0xffffffff83d61af0 in iwl_mvm_async_handlers_by_context (
    mvm=3D0xfffffe00fbdc3508, contexts=3D<optimized out>)
    at /usr/home/trasz/git/freebsd-src/sys/contrib/dev/iwlwifi/mvm/ops.c:16=
63
        local_list =3D {next =3D 0xfffff8030a350b40, prev =3D 0xfffff803152=
8d8c0}
        entry =3D 0xfffff8030a350b40
        tmp =3D <optimized out>
#13 0xffffffff80de7738 in lkpi_wiphy_work (work=3D0xfffffe00fbdc3008)
    at
/usr/home/trasz/git/freebsd-src/sys/compat/linuxkpi/common/src/linux_80211.=
c:5559
        lwiphy =3D <optimized out>
        wiphy =3D 0xfffffe00fbdc3080
        wk =3D 0xfffffe00fbdc35c0
#14 0xffffffff80e058d3 in linux_work_fn (context=3D0xfffffe00fbdc3008,
    pending=3D<optimized out>)
    at
/usr/home/trasz/git/freebsd-src/sys/compat/linuxkpi/common/src/linux_work.c=
:301
        states =3D "\000\003\003\000\003"
        exec =3D {entry =3D {tqe_next =3D 0x0, tqe_prev =3D 0xfffff800014f0=
de8},
          target =3D 0xfffffe00fbdc3008}
        task =3D 0xfffff8001b435dc8
        work =3D 0xfffffe00fbdc3008
        wq =3D 0xfffff800014f0dc0
#15 0xffffffff80bbb152 in taskqueue_run_locked (
    queue=3Dqueue@entry=3D0xfffff80001278d00)
    at /usr/home/trasz/git/freebsd-src/sys/kern/subr_taskqueue.c:517
        et =3D {et_link =3D {tqe_next =3D 0x0, tqe_prev =3D 0xfffff800014f0=
dc0},
          et_td =3D 0x0, et_section =3D {bucket =3D 65052672},
          et_old_priority =3D 1 '\001'}
        tb =3D {tb_running =3D 0xfffffe00fbdc3008, tb_seq =3D 11048276,
          tb_canceling =3D false, tb_link =3D {le_next =3D 0x0,
            le_prev =3D 0xfffff80001278d10}}
        in_net_epoch =3D false
        pending =3D 1
        task =3D <optimized out>
#16 0xffffffff80bbc083 in taskqueue_thread_loop (
    arg=3Darg@entry=3D0xfffff800014f0dc0)
    at /usr/home/trasz/git/freebsd-src/sys/kern/subr_taskqueue.c:829
        tqp =3D <optimized out>
        tq =3D 0xfffff80001278d00

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-283399-227>