From owner-freebsd-bugs Mon Apr 15 20:54:16 1996 Return-Path: owner-bugs Received: (from root@localhost) by freefall.freebsd.org (8.7.3/8.7.3) id UAA04961 for bugs-outgoing; Mon, 15 Apr 1996 20:54:16 -0700 (PDT) Received: (from davidg@localhost) by freefall.freebsd.org (8.7.3/8.7.3) id UAA04942 Mon, 15 Apr 1996 20:54:14 -0700 (PDT) Date: Mon, 15 Apr 1996 20:54:14 -0700 (PDT) From: David Greenman Message-Id: <199604160354.UAA04942@freefall.freebsd.org> To: hsu@clinet.fi, davidg, freebsd-bugs Subject: Re: kern/1146 Sender: owner-bugs@FreeBSD.ORG X-Loop: FreeBSD.org Precedence: bulk Synopsis: panic in soclose (?) State-Changed-From-To: open-closed State-Changed-By: davidg State-Changed-When: Mon Apr 15 20:50:15 PDT 1996 State-Changed-Why: This bug was caused by the struct containing the "next" pointer being freed combined with having the DIAGNOSTIC option enabled in the kernel (which overwrites freed memory with a special pattern). Fixed in rev 1.17 of uipc_socket.c.