Date: Fri, 17 Apr 2020 14:45:18 +0000 From: bugzilla-noreply@freebsd.org To: bugs@FreeBSD.org Subject: [Bug 245697] Page fault in frag6_slowtimo Message-ID: <bug-245697-227@https.bugs.freebsd.org/bugzilla/>
next in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D245697 Bug ID: 245697 Summary: Page fault in frag6_slowtimo Product: Base System Version: 12.1-STABLE Hardware: amd64 OS: Any Status: New Severity: Affects Only Me Priority: --- Component: kern Assignee: bugs@FreeBSD.org Reporter: etienne+freebsd@artnum.ch Hi, I have experienced a page fault in the unmodified release kernel. I think my problem might be the same as bug #240710. Fatal trap 12: page fault while in kernel mode cpuid =3D 0; apic id =3D 00 fault virtual address =3D 0x40 fault code =3D supervisor read data, page not present instruction pointer =3D 0x20:0xffffffff80e0a277 stack pointer =3D 0x28:0xfffffe00004a78c0 frame pointer =3D 0x28:0xfffffe00004a7910 code segment =3D base 0x0, limit 0xfffff, type 0x1b =3D DPL 0, pres 1, long 1, def32 0, gran 1 processor eflags =3D interrupt enabled, resume, IOPL =3D 0 current process =3D 12 (swi4: clock (0)) trap number =3D 12 panic: page fault cpuid =3D 0 time =3D 1587137909 KDB: stack backtrace: #0 0xffffffff80c1d2f7 at kdb_backtrace+0x67 #1 0xffffffff80bd062d at vpanic+0x19d #2 0xffffffff80bd0483 at panic+0x43 #3 0xffffffff810a7dcc at trap_fatal+0x39c #4 0xffffffff810a7e19 at trap_pfault+0x49 #5 0xffffffff810a740f at trap+0x29f #6 0xffffffff81081bdc at calltrap+0x8 #7 0xffffffff80c5c804 at pfslowtimo+0x54 #8 0xffffffff80bea783 at softclock_call_cc+0x143 #9 0xffffffff80beac49 at softclock+0x79 #10 0xffffffff80b93dd4 at ithread_loop+0x1d4 #11 0xffffffff80b90c43 at fork_exit+0x83 #12 0xffffffff81082c1e at fork_trampoline+0xe Uptime: 10h4m43s Dumping 745 out of 14242 MB:..3%..11%..22%..31%..41%..52%..61%..71%..82%..9= 1% __curthread () at /usr/src/sys/amd64/include/pcpu.h:234 234 __asm("movq %%gs:%P1,%0" : "=3Dr" (td) : "n" (OFFSETOF_CURTHREAD)); (kgdb) list *0xffffffff80e0a277 0xffffffff80e0a277 is in frag6_slowtimo (/usr/src/sys/netinet6/frag6.c:863). 858 continue; 859 } 860 while (q6 !=3D head) { 861 --q6->ip6q_ttl; 862 q6 =3D q6->ip6q_next; 863 if (q6->ip6q_prev->ip6q_ttl =3D=3D = 0) { 864 IP6STAT_INC(ip6s_fragtimeou= t); 865 /* XXX in6_ifstat_inc(ifp, ifs6_reass_fail) */ 866 frag6_freef(q6->ip6q_prev, = i); 867 } (kgdb) bt #0 __curthread () at /usr/src/sys/amd64/include/pcpu.h:234 #1 doadump (textdump=3D<optimized out>) at /usr/src/sys/kern/kern_shutdown= .c:371 #2 0xffffffff80bd0228 in kern_reboot (howto=3D260) at /usr/src/sys/kern/kern_shutdown.c:451 #3 0xffffffff80bd0689 in vpanic (fmt=3D<optimized out>, ap=3D<optimized ou= t>) at /usr/src/sys/kern/kern_shutdown.c:877 #4 0xffffffff80bd0483 in panic (fmt=3D<unavailable>) at /usr/src/sys/kern/kern_shutdown.c:804 #5 0xffffffff810a7dcc in trap_fatal (frame=3D0xfffffe00004a7800, eva=3D64) at /usr/src/sys/amd64/amd64/trap.c:943 #6 0xffffffff810a7e19 in trap_pfault (frame=3D0xfffffe00004a7800, usermode= =3D0) at /usr/src/sys/amd64/amd64/trap.c:767 #7 0xffffffff810a740f in trap (frame=3D0xfffffe00004a7800) at /usr/src/sys/amd64/amd64/trap.c:443 #8 <signal handler called> #9 frag6_slowtimo () at /usr/src/sys/netinet6/frag6.c:863 #10 0xffffffff80c5c804 in pfslowtimo (arg=3D0xffffffff8200d158 <vnet_rwlock= >) at /usr/src/sys/kern/uipc_domain.c:508 #11 0xffffffff80bea783 in softclock_call_cc (c=3D0xffffffff81f94510 <pfslow_callout>,=20 cc=3D0xffffffff81ff7880 <cc_cpu>, direct=3D0) at /usr/src/sys/kern/kern_timeout.c:731 #12 0xffffffff80beac49 in softclock (arg=3D0xffffffff81ff7880 <cc_cpu>) at /usr/src/sys/kern/kern_timeout.c:869 #13 0xffffffff80b93dd4 in intr_event_execute_handlers (p=3D<optimized out>, ie=3D<optimized out>) at /usr/src/sys/kern/kern_intr.c:1129 #14 ithread_execute_handlers (p=3D<optimized out>, ie=3D<optimized out>) at /usr/src/sys/kern/kern_intr.c:1142 #15 ithread_loop (arg=3D<optimized out>) at /usr/src/sys/kern/kern_intr.c:1= 222 #16 0xffffffff80b90c43 in fork_exit (callout=3D0xffffffff80b93c00 <ithread_= loop>, arg=3D0xfffff800036a8060,=20 frame=3D0xfffffe00004a7ac0) at /usr/src/sys/kern/kern_fork.c:1065 #17 <signal handler called> --=20 You are receiving this mail because: You are the assignee for the bug.=
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-245697-227>