Date: Wed, 6 Jul 2005 18:10:20 +0200 (CEST) From: Blaz Zupan <blaz@si.FreeBSD.org> To: Kris Kennaway <kris@obsecurity.org> Cc: freebsd-stable@freebsd.org Subject: Re: FreeBSD -STABLE servers repeatedly crashing. Message-ID: <20050706180434.A9770@titanic.medinet.si> In-Reply-To: <20050706153024.GA80897@xor.obsecurity.org> References: <42BF8815.6090909@atopia.net> <20050627081933.GA97832@cell.sick.ru> <42C16394.4040904@atopia.net> <1119971279.36316.45.camel@buffy.york.ac.uk> <42C16C0E.9090002@atopia.net> <20050629100535.GC27557@xor.obsecurity.org> <20050701184352.GA177@xor.obsecurity.org> <20050706093012.M3376@titanic.medinet.si> <20050706153024.GA80897@xor.obsecurity.org>
next in thread | previous in thread | raw e-mail | index | archive | help
This message is in MIME format. The first part should be readable text, while the remaining parts are likely unreadable without MIME-aware tools. --0-413037934-1120666220=:9770 Content-Type: TEXT/PLAIN; charset=iso-8859-2; format=flowed Content-Transfer-Encoding: QUOTED-PRINTABLE On Wed, 6 Jul 2005, Kris Kennaway wrote: > Please obtain the backtrace with kgdb. Here you go: [GDB will not be able to debug user-mode threads: /usr/lib/libthread_db.so:= Undefined symbol "ps_pglobal_lookup"] GNU gdb 6.1.1 [FreeBSD] Copyright 2004 Free Software Foundation, Inc. GDB is free software, covered by the GNU General Public License, and you ar= e welcome to change it and/or distribute copies of it under certain condition= s. Type "show copying" to see the conditions. There is absolutely no warranty for GDB. Type "show warranty" for details. This GDB was configured as "i386-marcel-freebsd". #0 doadump () at pcpu.h:159 159=09pcpu.h: No such file or directory. =09in pcpu.h (kgdb) bt #0 doadump () at pcpu.h:159 #1 0xc044b006 in db_fncall (dummy1=3D0, dummy2=3D0, dummy3=3D-1067606609, = dummy4=3D0xe4b6c9d0 "=FC=C9=B6=E4(\205]=C0=E8=C9=B6=E4=EC=C9=B6=E4\222\a") at /usr/src5/sys/ddb/db_command.c:531 #2 0xc044ae14 in db_command (last_cmdp=3D0xc0674644, cmd_table=3D0x0, aux_= cmd_tablep=3D0xc064226c, aux_cmd_tablep_end=3D0xc0642270) at /usr/src5/sys/ddb/db_command.c:349 #3 0xc044aedc in db_command_loop () at /usr/src5/sys/ddb/db_command.c:455 #4 0xc044ca75 in db_trap (type=3D12, code=3D0) at /usr/src5/sys/ddb/db_mai= n.c:221 #5 0xc04e6599 in kdb_trap (type=3D12, code=3D0, tf=3D0xe4b6cb3c) at /usr/s= rc5/sys/kern/subr_kdb.c:468 #6 0xc05f4c79 in trap_fatal (frame=3D0xe4b6cb3c, eva=3D36) at /usr/src5/sy= s/i386/i386/trap.c:812 #7 0xc05f43e9 in trap (frame=3D {tf_fs =3D -1040580584, tf_es =3D -1029439472, tf_ds =3D 16, tf_edi = =3D -1038000128, tf_esi =3D -1066898900, tf_ebp =3D -457782384, tf_isp =3D = -457782424, tf_ebx =3D -1040530304, tf_edx =3D -1040524364, tf_ecx =3D -104= 0524544, tf_eax =3D 0, tf_trapno =3D 12, tf_err =3D 0, tf_eip =3D -10685741= 01, tf_cs =3D 8, tf_eflags =3D 65683, tf_esp =3D 180, tf_ss =3D 0}) at /usr= /src5/sys/i386/i386/trap.c:255 #8 0xc05e283a in calltrap () at /usr/src5/sys/i386/i386/exception.s:140 #9 0xc1fa0018 in ?? () #10 0xc2a40010 in ?? () #11 0x00000010 in ?? () #12 0xc2216000 in ?? () #13 0xc0686a2c in tcbinfo () #14 0xe4b6cb90 in ?? () #15 0xe4b6cb68 in ?? () #16 0xc1fac480 in ?? () #17 0xc1fadbb4 in ?? () #18 0xc1fadb00 in ?? () #19 0x00000000 in ?? () #20 0x0000000c in ?? () #21 0x00000000 in ?? () #22 0xc04eda6b in propagate_priority (td=3D0xc2216000) at /usr/src5/sys/ker= n/subr_turnstile.c:243 #23 0xc04ee225 in turnstile_wait (ts=3D0xc1fadb00, lock=3D0xc0686a2c, owner= =3D0xc2216000) at /usr/src5/sys/kern/subr_turnstile.c:556 #24 0xc04c5ced in _mtx_lock_sleep (m=3D0xc0686a2c, td=3D0xc1fac480, opts=3D= 0, file=3D0x0, line=3D0) at /usr/src5/sys/kern/kern_mutex.c:552 #25 0xc0559ad8 in tcp_usr_rcvd (so=3D0x0, flags=3D0) at /usr/src5/sys/netin= et/tcp_usrreq.c:602 #26 0xc0506103 in soreceive (so=3D0xc27bf798, psa=3D0x0, uio=3D0xe4b6cc88, = mp0=3D0x0, controlp=3D0x0, flagsp=3D0x0) at /usr/src5/sys/kern/uipc_socket.c:1395 #27 0xc04f4bd9 in soo_read (fp=3D0x0, uio=3D0xe4b6cc88, active_cred=3D0xc28= 84a80, flags=3D0, td=3D0xc1fac480) at /usr/src5/sys/kern/sys_socket.c:91 #28 0xc04ee865 in dofileread (td=3D0xc1fac480, fp=3D0xc2e17bb0, fd=3D10, bu= f=3D0x0, nbyte=3D4096, offset=3DUnhandled dwarf expression opcode 0x93 ) at file.h:233 #29 0xc04ee72f in read (td=3D0xc1fac480, uap=3D0xe4b6cd14) at /usr/src5/sys= /kern/sys_generic.c:107 #30 0xc05f4fe7 in syscall (frame=3D {tf_fs =3D 47, tf_es =3D 47, tf_ds =3D -1078001617, tf_edi =3D 10, t= f_esi =3D 300, tf_ebp =3D -1077942168, tf_isp =3D -457781900, tf_ebx =3D 13= 4822152, tf_edx =3D 0, tf_ecx =3D 10, tf_eax =3D 3, tf_trapno =3D 0, tf_err= =3D 2, tf_eip =3D 672556795, tf_cs =3D 31, tf_eflags =3D 658, tf_esp =3D -= 1077942212, tf_ss =3D 47}) at /usr/src5/sys/i386/i386/trap.c:1009 #31 0xc05e288f in Xint0x80_syscall () at /usr/src5/sys/i386/i386/exception.= s:201 #32 0x0000002f in ?? () #33 0x0000002f in ?? () #34 0xbfbf002f in ?? () #35 0x0000000a in ?? () #36 0x0000012c in ?? () #37 0xbfbfe868 in ?? () #38 0xe4b6cd74 in ?? () #39 0x08093908 in ?? () #40 0x00000000 in ?? () #41 0x0000000a in ?? () #42 0x00000003 in ?? () #43 0x00000000 in ?? () #44 0x00000002 in ?? () #45 0x281666fb in ?? () #46 0x0000001f in ?? () #47 0x00000292 in ?? () #48 0xbfbfe83c in ?? () #49 0x0000002f in ?? () #50 0x00000000 in ?? () #51 0x00000000 in ?? () #52 0x00000000 in ?? () #53 0x00000000 in ?? () #54 0x2c75b000 in ?? () #55 0xc22de000 in ?? () #56 0xc1fac480 in ?? () #57 0xe4b6ccac in ?? () #58 0xe4b6cc94 in ?? () #59 0xc1f26000 in ?? () #60 0xc04ded13 in sched_switch (td=3D0x12c, newtd=3D0x8093908, flags=3DCann= ot access memory at address 0xbfbfe878 ) at /usr/src5/sys/kern/sched_4bsd.c:881 Previous frame inner to this frame (corrupt stack?) (kgdb) quit --0-413037934-1120666220=:9770--
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20050706180434.A9770>