Date: Wed, 18 Dec 2024 13:17:36 +0000 From: bugzilla-noreply@freebsd.org To: bugs@FreeBSD.org Subject: [Bug 283399] iwlwifi: panic: general protection fault Message-ID: <bug-283399-227@https.bugs.freebsd.org/bugzilla/>
next in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D283399 Bug ID: 283399 Summary: iwlwifi: panic: general protection fault Product: Base System Version: 15.0-CURRENT Hardware: Any OS: Any Status: New Severity: Affects Only Me Priority: --- Component: kern Assignee: bugs@FreeBSD.org Reporter: trasz@FreeBSD.org iwlwifi0: lkpi_iv_newstate: unsupported state transition 5 (RUN) -> 6 (CSA) iwlwifi0: linuxkpi_ieee80211_beacon_loss: vif 0xfffffe00fc126e80 vap 0xfffffe00fc126010 state RUN iwlwifi0: linuxkpi_ieee80211_beacon_loss: vif 0xfffffe00fc126e80 vap 0xfffffe00fc126010 state RUN wlan0: link state changed to DOWN Dec 18 04:34:23 pustak wpa_supplicant[1117]: ioctl[SIOCS80211, op=3D103, va= l=3D0, arg_len=3D128]: Operation now in progress Fatal trap 9: general protection fault while in kernel mode cpuid =3D 2; apic id =3D 02 instruction pointer =3D 0x20:0xffffffff83d47ee6 stack pointer =3D 0x28:0xfffffe00d7892c70 frame pointer =3D 0x28:0xfffffe00d7892cc0 code segment =3D base 0x0, limit 0xfffff, type 0x1b =3D DPL 0, pres 1, long 1, def32 0, gran 1 processor eflags =3D interrupt enabled, resume, IOPL =3D 0 current process =3D 0 (linuxkpi_short_wq_1) rdi: fffffe00fbdc3538 rsi: fffffe00d7892c38 rdx: ffffffff811b5a4a rcx: fffff8001b3dce40 r8: 0000000000000001 r9: ffffffffffffffff rax: deadc0dedeadc0de rbx: fffffe00fc126e80 rbp: fffffe00d7892cc0 r10: ffffffff81c514f0 r11: 0000000000000001 r12: fffffe00fc127618 r13: 0000000000000000 r14: fffffe00d7892d10 r15: fffffe00fbdc3508 trap number =3D 9 panic: general protection fault cpuid =3D 2 time =3D 1734496463 KDB: stack backtrace: db_trace_self_wrapper() at db_trace_self_wrapper+0x2b/frame 0xfffffe00d7892= 9b0 vpanic() at vpanic+0x136/frame 0xfffffe00d7892ae0 panic() at panic+0x43/frame 0xfffffe00d7892b40 trap_fatal() at trap_fatal+0x40b/frame 0xfffffe00d7892ba0 calltrap() at calltrap+0x8/frame 0xfffffe00d7892ba0 --- trap 0x9, rip =3D 0xffffffff83d47ee6, rsp =3D 0xfffffe00d7892c70, rbp = =3D 0xfffffe00d7892cc0 --- iwl_mvm_bt_notif_iterator() at iwl_mvm_bt_notif_iterator+0xe6/frame 0xfffffe00d7892cc0 linuxkpi_ieee80211_iterate_interfaces() at linuxkpi_ieee80211_iterate_interfaces+0x84/frame 0xfffffe00d7892d00 iwl_mvm_bt_coex_notif_handle() at iwl_mvm_bt_coex_notif_handle+0x7c/frame 0xfffffe00d7892d60 iwl_mvm_async_handlers_by_context() at iwl_mvm_async_handlers_by_context+0x130/frame 0xfffffe00d7892db0 lkpi_wiphy_work() at lkpi_wiphy_work+0x108/frame 0xfffffe00d7892df0 linux_work_fn() at linux_work_fn+0xe3/frame 0xfffffe00d7892e40 taskqueue_run_locked() at taskqueue_run_locked+0x1c2/frame 0xfffffe00d7892e= c0 taskqueue_thread_loop() at taskqueue_thread_loop+0xd3/frame 0xfffffe00d7892= ef0 fork_exit() at fork_exit+0x82/frame 0xfffffe00d7892f30 fork_trampoline() at fork_trampoline+0xe/frame 0xfffffe00d7892f30 --- trap 0x85de60ac, rip =3D 0xa6bb4f9ddb5e1766, rsp =3D 0xc1462840bc8370bb= , rbp =3D 0xc9486a1c6a6a8f08 --- Uptime: 11h49m54s Here's the backtrace: #6 <signal handler called> No locals. #7 0xffffffff83d47ee6 in iwl_mvm_bt_notif_per_link (mvm=3D0xfffffe00fbdc35= 08, vif=3D0xfffffe00fc126e80, data=3D0xfffffe00d7892d10, link_id=3D0) at /usr/home/trasz/git/freebsd-src/sys/contrib/dev/iwlwifi/mvm/coex.c:3= 59 mvmvif =3D 0xfffffe00fc1272c0 link_info =3D 0xfffffe00fc127618 smps_mode =3D IEEE80211_SMPS_AUTOMATIC link_conf =3D <optimized out> chanctx_conf =3D 0xfffff8001b3dce40 min_ag_for_static_smps =3D <optimized out> bt_activity_grading =3D <optimized out> ave_rssi =3D <optimized out> __lock =3D <optimized out> __var =3D <optimized out> __var =3D <optimized out> #8 iwl_mvm_bt_notif_iterator (_data=3D_data@entry=3D0xfffffe00d7892d10, mac=3D<optimized out>, vif=3Dvif@entry=3D0xfffffe00fc126e80) at /usr/home/trasz/git/freebsd-src/sys/contrib/dev/iwlwifi/mvm/coex.c:5= 09 mvmvif =3D 0xfffffe00fc1272c0 data =3D 0xfffffe00d7892d10 mvm =3D 0xfffffe00fbdc3508 link_id =3D 0 #9 0xffffffff80de6414 in linuxkpi_ieee80211_iterate_interfaces ( hw=3D<optimized out>, flags=3Dflags@entry=3D(IEEE80211_IFACE_ITER_NORMAL | IEEE80211_IFACE_ITER_ACTIVE | IEEE80211_IFACE_ITER__ATOMIC), iterfunc=3D0xffffffff83d47e00 <iwl_mvm_bt_notif_iterator>, arg=3Darg@entry=3D0xfffffe00d7892d10) at /usr/home/trasz/git/freebsd-src/sys/compat/linuxkpi/common/src/linux_80211.= c:5053 vap =3D 0xfffffe00fc126010 lhw =3D 0xfffffe00fbdc3200 lvif =3D <optimized out> vif =3D 0xffffffff811b5a4a active =3D <optimized out> atomic =3D <optimized out> nin_drv =3D <optimized out> #10 0xffffffff83d476ac in ieee80211_iterate_active_interfaces_atomic ( hw=3D0xfffffe00fbdc3538, flags=3D(IEEE80211_IFACE_ITER_NORMAL | IEEE80211_IFACE_ITER_ACTIVE | IEEE80211_IFACE_ITER__ATOMIC), arg=3D0xfffffe00d7892d10, iterfunc=3D<optimi= zed out>) at /usr/home/trasz/git/freebsd-src/sys/compat/linuxkpi/common/include/net/mac8= 0211.h:1470 No locals. #11 iwl_mvm_bt_coex_notif_handle (mvm=3D0xfffffe00fbdc3508) at /usr/home/trasz/git/freebsd-src/sys/contrib/dev/iwlwifi/mvm/coex.c:5= 26 data =3D {notif =3D 0xfffffe00fbdc5568, mvm =3D 0xfffffe00fbdc3508, primary =3D 0x0, secondary =3D 0x0, primary_ll =3D false, primary_load =3D 0 '\000', secondary_load =3D 0 '\000'} cmd =3D {bt_primary_ci =3D 0, primary_ch_phy_id =3D 0, bt_secondary= _ci =3D 0, secondary_ch_phy_id =3D 0} ci_bw_idx =3D <optimized out> #12 0xffffffff83d61af0 in iwl_mvm_async_handlers_by_context ( mvm=3D0xfffffe00fbdc3508, contexts=3D<optimized out>) at /usr/home/trasz/git/freebsd-src/sys/contrib/dev/iwlwifi/mvm/ops.c:16= 63 local_list =3D {next =3D 0xfffff8030a350b40, prev =3D 0xfffff803152= 8d8c0} entry =3D 0xfffff8030a350b40 tmp =3D <optimized out> #13 0xffffffff80de7738 in lkpi_wiphy_work (work=3D0xfffffe00fbdc3008) at /usr/home/trasz/git/freebsd-src/sys/compat/linuxkpi/common/src/linux_80211.= c:5559 lwiphy =3D <optimized out> wiphy =3D 0xfffffe00fbdc3080 wk =3D 0xfffffe00fbdc35c0 #14 0xffffffff80e058d3 in linux_work_fn (context=3D0xfffffe00fbdc3008, pending=3D<optimized out>) at /usr/home/trasz/git/freebsd-src/sys/compat/linuxkpi/common/src/linux_work.c= :301 states =3D "\000\003\003\000\003" exec =3D {entry =3D {tqe_next =3D 0x0, tqe_prev =3D 0xfffff800014f0= de8}, target =3D 0xfffffe00fbdc3008} task =3D 0xfffff8001b435dc8 work =3D 0xfffffe00fbdc3008 wq =3D 0xfffff800014f0dc0 #15 0xffffffff80bbb152 in taskqueue_run_locked ( queue=3Dqueue@entry=3D0xfffff80001278d00) at /usr/home/trasz/git/freebsd-src/sys/kern/subr_taskqueue.c:517 et =3D {et_link =3D {tqe_next =3D 0x0, tqe_prev =3D 0xfffff800014f0= dc0}, et_td =3D 0x0, et_section =3D {bucket =3D 65052672}, et_old_priority =3D 1 '\001'} tb =3D {tb_running =3D 0xfffffe00fbdc3008, tb_seq =3D 11048276, tb_canceling =3D false, tb_link =3D {le_next =3D 0x0, le_prev =3D 0xfffff80001278d10}} in_net_epoch =3D false pending =3D 1 task =3D <optimized out> #16 0xffffffff80bbc083 in taskqueue_thread_loop ( arg=3Darg@entry=3D0xfffff800014f0dc0) at /usr/home/trasz/git/freebsd-src/sys/kern/subr_taskqueue.c:829 tqp =3D <optimized out> tq =3D 0xfffff80001278d00 --=20 You are receiving this mail because: You are the assignee for the bug.=
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-283399-227>