Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 05 Jan 2018 05:01:59 +0000
From:      bugzilla-noreply@freebsd.org
To:        freebsd-bugs@FreeBSD.org
Subject:   [Bug 224922] ip_reass should reset M_PKTHDR bit of fragmented packet for NIC  which can produce !WRITEABLE mbuf
Message-ID:  <bug-224922-8@https.bugs.freebsd.org/bugzilla/>

next in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D224922

            Bug ID: 224922
           Summary: ip_reass should reset M_PKTHDR bit of fragmented
                    packet for NIC  which can produce !WRITEABLE mbuf
           Product: Base System
           Version: CURRENT
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: kern
          Assignee: freebsd-bugs@FreeBSD.org
          Reporter: harsh@chelsio.com

m_unshare() panic in IPSec transport mode when try to ping with size 6000.

panic: m_unshare: m0 0xfffff80020f82600, m 0xfffff8005d054100 has M_PKTHDR
cpuid =3D 15
time =3D 1495578455
KDB: stack backtrace:
db_trace_self_wrapper() at db_trace_self_wrapper+0x2c/frame 0xfffffe044e9bb=
890
kdb_backtrace() at kdb_backtrace+0x53/frame 0xfffffe044e9bb960
vpanic() at vpanic+0x269/frame 0xfffffe044e9bba30
kassert_panic() at kassert_panic+0xc7/frame 0xfffffe044e9bbac0
m_unshare() at m_unshare+0x578/frame 0xfffffe044e9bbbc0
esp_output() at esp_output+0x44c/frame 0xfffffe044e9bbe40
ipsec4_perform_request() at ipsec4_perform_request+0x5df/frame
0xfffffe044e9bbff0


Refer below mail Chain for more details and possible solution

https://lists.freebsd.org/pipermail/freebsd-net/2017-December/049490.html

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-224922-8>