Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 11 May 1998 11:01:30 -0400 (EDT)
From:      "Marc G. Fournier" <scrappy@hub.org>
To:        FreeBSD-gnats-submit@FreeBSD.ORG
Subject:   kern/6589: page fault while in kernel mode
Message-ID:  <199805111501.LAA19751@hub.org>

next in thread | raw e-mail | index | archive | help

>Number:         6589
>Category:       kern
>Synopsis:       system panick'd with May 4th kernel
>Confidential:   yes
>Severity:       serious
>Priority:       high
>Responsible:    freebsd-bugs
>State:          open
>Quarter:
>Keywords:
>Date-Required:
>Class:          sw-bug
>Submitter-Id:   current-users
>Arrival-Date:   Mon May 11 08:00:00 PDT 1998
>Last-Modified:
>Originator:     Marc G. Fournier
>Organization:
Hub.Org Networking Services
>Release:        FreeBSD 3.0-CURRENT i386
>Environment:

Copyright (c) 1992-1998 FreeBSD Inc.
Copyright (c) 1982, 1986, 1989, 1991, 1993
	The Regents of the University of California. All rights reserved.
FreeBSD 3.0-CURRENT #0: Mon May  4 16:38:18 EDT 1998
    root@athome.hub.org:/usr/src/sys/compile/newhub
Timecounter "i8254"  frequency 1193182 Hz  cost 3031 ns
Timecounter "TSC"  frequency 267274201 Hz  cost 216 ns
CPU: Pentium Pro (267.27-MHz 686-class CPU)
  Origin = "GenuineIntel"  Id = 0x633  Stepping=3
  Features=0x80f9ff<FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,SEP,MTRR,PGE,MCA,CMOV,MMX>
real memory  = 134217728 (131072K bytes)
avail memory = 128249856 (125244K bytes)
Probing for devices on PCI bus 0:
chip0: <Host to PCI bridge (vendor=8086 device=7180)> rev 0x03 on pci0.0.0
chip1: <PCI to PCI bridge (vendor=8086 device=7181)> rev 0x03 on pci0.1.0
chip2: <Intel 82371AB PCI to ISA bridge> rev 0x01 on pci0.7.0
chip3: <Intel 82371AB USB host controller> rev 0x01 int d irq 255 on pci0.7.2
chip4: <Intel 82371AB Power management controller> rev 0x01 on pci0.7.3
de0: <Digital 21140A Fast Ethernet> rev 0x22 int a irq 9 on pci0.10.0
de0: 21140A [10-100Mb/s] pass 2.2
de0: address 00:60:67:30:75:ef
ahc0: <Adaptec 2940 Ultra SCSI host adapter> rev 0x00 int a irq 10 on pci0.11.0
ahc0: aic7880 Wide Channel, SCSI Id=7, 16 SCBs
scbus0 at ahc0 bus 0
sd0 at scbus0 target 0 lun 0
sd0: <QUANTUM VIKING II 4.5WSE 3506> type 0 fixed SCSI 2
sd0: Direct-Access 4350MB (8910423 512 byte sectors)
sd0: with 8338 cyls, 5 heads, and an average 213 sectors/track
ahc1: <Adaptec 2940 Ultra SCSI host adapter> rev 0x01 int a irq 11 on pci0.12.0
ahc1: aic7880 Wide Channel, SCSI Id=7, 16 SCBs
scbus1 at ahc1 bus 0
sd1 at scbus1 target 0 lun 0
sd1: <Quantum XP34300W L912> type 0 fixed SCSI 2
sd1: Direct-Access 4101MB (8399520 512 byte sectors)
sd1: with 3907 cyls, 20 heads, and an average 107 sectors/track
sd2 at scbus1 target 1 lun 0
sd2: <Quantum XP34300W L912> type 0 fixed SCSI 2
sd2: Direct-Access 4101MB (8399520 512 byte sectors)
sd2: with 3907 cyls, 20 heads, and an average 107 sectors/track
Probing for devices on PCI bus 1:
Probing for PnP devices:
Probing for devices on the ISA bus:
sc0 not found at 0x60
lpt0 at 0x378-0x37f irq 7 on isa
lpt0: Interrupt-driven port
lp0: TCP/IP capable interface
sio0 at 0x3f8-0x3ff irq 4 flags 0x10 on isa
sio0: type 16550A, console
fdc0 at 0x3f0-0x3f7 irq 6 drq 2 on isa
fdc0: FIFO enabled, 8 bytes threshold
fd0: 1.44MB 3.5in
npx0 on motherboard
npx0: INT 16 interface
ccd0-3: Concatenated disk drivers
IP packet filtering initialized, divert enabled, default to accept, logging limited to 100 packets/entry
de0: enabling 100baseTX port

>Description:

Script started on Mon May 11 10:57:59 1998
hub# gdb -k kernel /var/crash/vmcore.1
GDB is free software and you are welcome to distribute copies of it
 under certain conditions; type "show copying" to see the conditions.
There is absolutely no warranty for GDB; type "show warranty" for details.
GDB 4.16 (i386-unknown-freebsd), 
Copyright 1996 Free Software Foundation, Inc...
IdlePTD 21d000
initial pcb at 1f15a4
panicstr: page fault
panic messages:
---
Fatal trap 12: page fault while in kernel mode
fault virtual address	= 0xefc40278
fault code		= supervisor read, page not present
instruction pointer	= 0x8:0xf018f23d
stack pointer	        = 0x10:0xf01e3e34
frame pointer	        = 0x10:0xf01e3e68
code segment		= base 0x0, limit 0xfffff, type 0x1b
			= DPL 0, pres 1, def32 1, gran 1
processor eflags	= interrupt enabled, resume, IOPL = 0
current process		= Idle
interrupt mask		= net 
trap number		= 12
panic: page fault

syncing disks... 

Fatal trap 12: page fault while in kernel mode
fault virtual address	= 0xb8
fault code		= supervisor read, page not present
instruction pointer	= 0x8:0xf0113d67
stack pointer	        = 0x10:0xf01e3bc8
frame pointer	        = 0x10:0xf01e3bdc
code segment		= base 0x0, limit 0xfffff, type 0x1b
			= DPL 0, pres 1, def32 1, gran 1
processor eflags	= interrupt enabled, resume, IOPL = 0
current process		= Idle
interrupt mask		= net bio cam 
trap number		= 12
panic: page fault

dumping to dev 401, offset 262144
dump 128 127 126 125 124 123 122 121 120 119 118 117 116 115 114 113 112 111 110 109 108 107 106 105 104 103 102 101 100 99 98 97 96 95 94 93 92 91 90 89 88 87 86 85 84 83 82 81 80 79 78 77 76 75 74 73 72 71 70 69 68 67 66 65 64 63 62 61 60 59 58 57 56 55 54 53 52 51 50 49 48 47 46 45 44 43 42 41 40 39 38 37 36 35 34 33 32 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 
---
#0  boot (howto=260) at ../../kern/kern_shutdown.c:296
296					dumppcb.pcb_cr3 = rcr3();
(kgdb) where
#0  boot (howto=260) at ../../kern/kern_shutdown.c:296
#1  0xf0111f26 in panic (fmt=0xf01c190f "page fault")
    at ../../kern/kern_shutdown.c:436
#2  0xf01c251d in trap_fatal (frame=0xf01e3b8c) at ../../i386/i386/trap.c:879
#3  0xf01c1fb0 in trap_pfault (frame=0xf01e3b8c, usermode=0)
    at ../../i386/i386/trap.c:772
#4  0xf01c1c47 in trap (frame={tf_es = -210042864, tf_ds = -254214128, 
      tf_edi = 0, tf_esi = -209979640, tf_ebp = -266454052, 
      tf_isp = -266454092, tf_ebx = 0, tf_edx = -1073214400, tf_ecx = 991408, 
      tf_eax = -1073348096, tf_trapno = 12, tf_err = 0, tf_eip = -267305625, 
      tf_cs = 8, tf_eflags = 66118, tf_esp = -209979640, tf_ss = -1073348096})
    at ../../i386/i386/trap.c:396
#5  0xf0113d67 in tsleep (ident=0xf37bf708, priority=16, 
    wmesg=0xf012df72 "biord", timo=0) at ../../kern/kern_synch.c:362
#6  0xf012dfb7 in biowait (bp=0xf37bf708) at ../../kern/vfs_bio.c:1859
#7  0xf012bfdf in bread (vp=0xf669f240, blkno=262320, size=8192, cred=0x0, 
    bpp=0xf01e3c58) at ../../kern/vfs_bio.c:299
#8  0xf019d35f in ffs_update (vp=0xf69f0ea0, access=0xf01e3cc0, 
    modify=0xf01e3cc0, waitfor=0) at ../../ufs/ffs/ffs_inode.c:115
#9  0xf01a1dc8 in ffs_fsync (ap=0xf01e3cfc) at ../../ufs/ffs/ffs_vnops.c:257
#10 0xf01a01a7 in ffs_sync (mp=0xf0ddae00, waitfor=2, cred=0xf0d98b80, 
    p=0xf0210460) at vnode_if.h:499
#11 0xf0134fc3 in sync (p=0xf0210460, uap=0x0) at ../../kern/vfs_syscalls.c:509
#12 0xf0111b0b in boot (howto=256) at ../../kern/kern_shutdown.c:218
#13 0xf0111f26 in panic (fmt=0xf01c190f "page fault")
    at ../../kern/kern_shutdown.c:436
#14 0xf01c251d in trap_fatal (frame=0xf01e3df8) at ../../i386/i386/trap.c:879
#15 0xf01c1fb0 in trap_pfault (frame=0xf01e3df8, usermode=0)
    at ../../i386/i386/trap.c:772
#16 0xf01c1c47 in trap (frame={tf_es = -258277360, tf_ds = -267255792, 
      tf_edi = 64, tf_esi = 66288, tf_ebp = -266453400, tf_isp = -266453472, 
      tf_ebx = 269085096, tf_edx = 0, tf_ecx = -254189104, tf_eax = 65694, 
      tf_trapno = 12, tf_err = 0, tf_eip = -266800579, tf_cs = 8, 
      tf_eflags = 66051, tf_esp = -254187520, tf_ss = -260164992})
    at ../../i386/i386/trap.c:396
#17 0xf018f23d in tulip_txput (sc=0xf0d96800, m=0xf09bd180)
    at machine/pmap.h:171
#18 0xf018f845 in tulip_ifstart_one (ifp=0xf0d96818) at ../../pci/if_de.c:4807
#19 0xf0142948 in ether_output (ifp=0xf0d96818, m0=0xf07e3280, dst=0xf1c9a0b0, 
    rt0=0xf1a4e400) at ../../net/if_ethersubr.c:445
#20 0xf0151680 in ip_output (m0=0xf07e3280, opt=0x0, ro=0xf65f180c, flags=0, 
    imo=0x0) at ../../netinet/ip_output.c:406
#21 0xf0155c09 in tcp_output (tp=0xf65f1840) at ../../netinet/tcp_output.c:686
#22 0xf015696f in tcp_timers (tp=0xf65f1840, timer=0)
    at ../../netinet/tcp_timer.c:295
#23 0xf0156784 in tcp_slowtimo () at ../../netinet/tcp_timer.c:151
#24 0xf012503b in pfslowtimo (arg=0x0) at ../../kern/uipc_domain.c:230
#25 0xf0116203 in softclock () at ../../kern/kern_timeout.c:124
(kgdb) up 5
#5  0xf0113d67 in tsleep (ident=0xf37bf708, priority=16, 
    wmesg=0xf012df72 "biord", timo=0) at ../../kern/kern_synch.c:362
362		int s, sig, catch = priority & PCATCH;
(kgdb) list
357		void *ident;
358		int priority, timo;
359		const char *wmesg;
360	{
361		struct proc *p = curproc;
362		int s, sig, catch = priority & PCATCH;
363		struct callout_handle thandle;
364	
365	#ifdef KTRACE
366		if (KTRPOINT(p, KTR_CSW))
(kgdb) quit
hub# exit
exit

Script done on Mon May 11 10:58:54 1998

>How-To-Repeat:

	

>Fix:
	
	

>Audit-Trail:
>Unformatted:

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-bugs" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199805111501.LAA19751>