From owner-freebsd-stable Sat Jun 15 7:18:53 2002 Delivered-To: freebsd-stable@freebsd.org Received: from mail.nove.bg (caesar.nove.bg [212.50.27.99]) by hub.freebsd.org (Postfix) with SMTP id BCC8737B415 for ; Sat, 15 Jun 2002 07:18:38 -0700 (PDT) Received: (qmail 26453 invoked from network); 15 Jun 2002 14:18:36 -0000 Received: from sigbus.nove.bg (HELO nove.bg) (chervarium@212.50.27.102) by caesar.nove.bg with SMTP; 15 Jun 2002 14:18:36 -0000 Message-ID: <3D0B4C67.B64E9DB0@nove.bg> Date: Sat, 15 Jun 2002 17:17:11 +0300 From: Atanas Bachvaroff Organization: NOVE AD X-Mailer: Mozilla 4.79 [en] (X11; U; Linux 2.4.2 i386) X-Accept-Language: bg, en MIME-Version: 1.0 To: freebsd-stable@FreeBSD.ORG Subject: Fatal trap 12 in FreeBSD 4.6-RC/3 Jun 2002 Content-Type: text/plain; charset=koi8-r Content-Transfer-Encoding: 7bit Sender: owner-freebsd-stable@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG Hello. I got FreeBSD 4.6-RC (source from 3rd Jun) panicked yesterday. Here is some call trace information. As I see the problem is somewhere in the ufs/ffs inode hash code (somehow the ufs hash table got corrupted). My filesystems are with softupdates on (and I've heard some rumors from friends about FreeBSD panicking with similar symptoms). I have never debugged/played with the fs kernel subsystem so I ask for help. I can grand shell access on my machine to those who wish to help. Thanks in advance. ------------------------------------------------------------- Script started on Sat Jun 15 16:53:14 2002 sigbus# gdb -k --core=vmcore.0 /usr/src/sys/compile/HOST/kernel.debug GNU gdb 4.18 (FreeBSD) Copyright 1998 Free Software Foundation, Inc. GDB is free software, covered by the GNU General Public License, and you are welcome to change it and/or distribute copies of it under certain conditions. Type "show copying" to see the conditions. There is absolutely no warranty for GDB. Type "show warranty" for details. This GDB was configured as "i386-unknown-freebsd"... IdlePTD at phsyical address 0x0045c000 initial pcb at physical address 0x003a3880 panicstr: page fault panic messages: --- Fatal trap 12: page fault while in kernel mode fault virtual address = 0xffff0039 fault code = supervisor read, page not present instruction pointer = 0x8:0xc0277c94 stack pointer = 0x10:0xd0332ca4 frame pointer = 0x10:0xd0332cb4 code segment = base 0x0, limit 0xfffff, type 0x1b = DPL 0, pres 1, def32 1, gran 1 processor eflags = interrupt enabled, resume, IOPL = 0 current process = 21403 (man) interrupt mask = none trap number = 12 panic: page fault syncing disks... 7 done Uptime: 4d15h39m12s dumping to dev #ad/0x20001, offset 917504 dump ata0: resetting devices .. done 64 63 62 61 60 59 58 57 56 55 54 53 52 51 50 49 48 47 46 45 44 43 42 41 40 39 38 37 36 35 34 33 32 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 --- #0 dumpsys () at ../../kern/kern_shutdown.c:487 487 if (dumping++) { (kgdb) where #0 dumpsys () at ../../kern/kern_shutdown.c:487 #1 0xc0186dbf in boot (howto=256) at ../../kern/kern_shutdown.c:316 #2 0xc01871e4 in poweroff_wait (junk=0xc0342aac, howto=-1070324273) at ../../kern/kern_shutdown.c:595 #3 0xc02f260e in trap_fatal (frame=0xd0332c64, eva=4294901817) at ../../i386/i386/trap.c:966 #4 0xc02f22e1 in trap_pfault (frame=0xd0332c64, usermode=0, eva=4294901817) at ../../i386/i386/trap.c:859 #5 0xc02f1e9f in trap (frame={tf_fs = 16, tf_es = 16, tf_ds = 16, tf_edi = -895094784, tf_esi = 1814483, tf_ebp = -801952588, tf_isp = -801952624, tf_ebx = -860794624, tf_edx = -895328256, tf_ecx = -802887232, tf_eax = -65535, tf_trapno = 12, tf_err = 0, tf_eip = -1071154028, tf_cs = 8, tf_eflags = 66178, tf_esp = -860794624, tf_ss = -892395264}) at ../../i386/i386/trap.c:458 #6 0xc0277c94 in ufs_ihashget (dev=0xcaa5f000, inum=1814483) at ../../ufs/ufs/ufs_ihash.c:108 #7 0xc0275192 in ffs_vget (mp=0xcaa58200, ino=1814483, vpp=0xd0332d4c) at ../../ufs/ffs/ffs_vfsops.c:1077 #8 0xc02789e9 in ufs_lookup (ap=0xd0332dac) at ../../ufs/ufs/ufs_lookup.c:611 #9 0xc027d7c5 in ufs_vnoperate (ap=0xd0332dac) at ../../ufs/ufs/ufs_vnops.c:2422 #10 0xc01af85e in vfs_cache_lookup (ap=0xd0332e04) at vnode_if.h:77 #11 0xc027d7c5 in ufs_vnoperate (ap=0xd0332e04) at ../../ufs/ufs/ufs_vnops.c:2422 ---Type to continue, or q to quit--- #12 0xc01b2731 in lookup (ndp=0xd0332e80) at vnode_if.h:52 #13 0xc01b222c in namei (ndp=0xd0332e80) at ../../kern/vfs_lookup.c:153 #14 0xc01b7df1 in stat (p=0xd024e9c0, uap=0xd0332f80) at ../../kern/vfs_syscalls.c:1787 #15 0xc02f28bd in syscall2 (frame={tf_fs = 47, tf_es = 47, tf_ds = 47, tf_edi = -1077936988, tf_esi = 134532816, tf_ebp = -1077939508, tf_isp = -801951788, tf_ebx = -1077939460, tf_edx = 24, tf_ecx = -1077939612, tf_eax = 188, tf_trapno = 0, tf_err = 2, tf_eip = 671809140, tf_cs = 31, tf_eflags = 647, tf_esp = -1077939632, tf_ss = 47}) at ../../i386/i386/trap.c:1167 #16 0xc02e3625 in Xint0x80_syscall () #17 0x804b06d in ?? () #18 0x804b667 in ?? () #19 0x8049359 in ?? () #20 0x8049151 in ?? () (kgdb) up 6 #6 0xc0277c94 in ufs_ihashget (dev=0xcaa5f000, inum=1814483) at ../../ufs/ufs/ufs_ihash.c:108 108 for (ip = INOHASH(dev, inum)->lh_first; ip; ip = ip->i_hash.le_n ext) { (kgdb) disass ufs_ihashget Dump of assembler code for function ufs_ihashget: 0xc0277c5c : push %ebp 0xc0277c5d : mov %esp,%ebp 0xc0277c5f : sub $0x4,%esp 0xc0277c62 : push %edi 0xc0277c63 : push %esi 0xc0277c64 : push %ebx 0xc0277c65 : mov 0x8(%ebp),%edi 0xc0277c68 : mov 0xc(%ebp),%esi 0xc0277c6b : mov 0xc0399410,%eax 0xc0277c70 : mov %eax,0xfffffffc(%ebp) 0xc0277c73 : push %edi 0xc0277c74 : call 0xc017b210 0xc0277c79 : add %esi,%eax 0xc0277c7b : and 0xc03ab6b4,%eax 0xc0277c81 : mov 0xc03ab6b0,%edx 0xc0277c87 : mov (%edx,%eax,4),%eax 0xc0277c8a : add $0x4,%esp 0xc0277c8d : test %eax,%eax 0xc0277c8f : je 0xc0277cc3 0xc0277c91 : lea 0x0(%esi),%esi 0xc0277c94 : cmp 0x38(%eax),%esi 0xc0277c97 : jne 0xc0277cbc 0xc0277c99 : cmp 0x34(%eax),%edi ---Type to continue, or q to quit--- 0xc0277c9c : jne 0xc0277cbc 0xc0277c9e : mov 0x28(%eax),%ebx 0xc0277ca1 : mov 0xfffffffc(%ebp),%eax 0xc0277ca4 : push %eax 0xc0277ca5 : push $0x10002 0xc0277caa : push %ebx 0xc0277cab : call 0xc01b449c 0xc0277cb0 : add $0xc,%esp 0xc0277cb3 : test %eax,%eax 0xc0277cb5 : jne 0xc0277c73 0xc0277cb7 : mov %ebx,%eax 0xc0277cb9 : jmp 0xc0277cc5 0xc0277cbb : nop 0xc0277cbc : mov 0x20(%eax),%eax 0xc0277cbf : test %eax,%eax 0xc0277cc1 : jne 0xc0277c94 0xc0277cc3 : xor %eax,%eax 0xc0277cc5 : lea 0xfffffff0(%ebp),%esp 0xc0277cc8 : pop %ebx 0xc0277cc9 : pop %esi 0xc0277cca : pop %edi 0xc0277ccb : leave 0xc0277ccc : ret End of assembler dump. (kgdb) sigbus# exit Script done on Sat Jun 15 16:54:14 2002 To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-stable" in the body of the message