Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 6 Jul 2005 18:10:20 +0200 (CEST)
From:      Blaz Zupan <blaz@si.FreeBSD.org>
To:        Kris Kennaway <kris@obsecurity.org>
Cc:        freebsd-stable@freebsd.org
Subject:   Re: FreeBSD -STABLE servers repeatedly crashing.
Message-ID:  <20050706180434.A9770@titanic.medinet.si>
In-Reply-To: <20050706153024.GA80897@xor.obsecurity.org>
References:  <42BF8815.6090909@atopia.net> <20050627081933.GA97832@cell.sick.ru> <42C16394.4040904@atopia.net> <1119971279.36316.45.camel@buffy.york.ac.uk> <42C16C0E.9090002@atopia.net> <20050629100535.GC27557@xor.obsecurity.org> <20050701184352.GA177@xor.obsecurity.org> <20050706093012.M3376@titanic.medinet.si> <20050706153024.GA80897@xor.obsecurity.org>

next in thread | previous in thread | raw e-mail | index | archive | help
  This message is in MIME format.  The first part should be readable text,
  while the remaining parts are likely unreadable without MIME-aware tools.

--0-413037934-1120666220=:9770
Content-Type: TEXT/PLAIN; charset=iso-8859-2; format=flowed
Content-Transfer-Encoding: QUOTED-PRINTABLE

On Wed, 6 Jul 2005, Kris Kennaway wrote:
> Please obtain the backtrace with kgdb.

Here you go:

[GDB will not be able to debug user-mode threads: /usr/lib/libthread_db.so:=
 Undefined symbol "ps_pglobal_lookup"]
GNU gdb 6.1.1 [FreeBSD]
Copyright 2004 Free Software Foundation, Inc.
GDB is free software, covered by the GNU General Public License, and you ar=
e
welcome to change it and/or distribute copies of it under certain condition=
s.
Type "show copying" to see the conditions.
There is absolutely no warranty for GDB.  Type "show warranty" for details.
This GDB was configured as "i386-marcel-freebsd".
#0  doadump () at pcpu.h:159
159=09pcpu.h: No such file or directory.
 =09in pcpu.h
(kgdb) bt
#0  doadump () at pcpu.h:159
#1  0xc044b006 in db_fncall (dummy1=3D0, dummy2=3D0, dummy3=3D-1067606609, =
dummy4=3D0xe4b6c9d0 "=FC=C9=B6=E4(\205]=C0=E8=C9=B6=E4=EC=C9=B6=E4\222\a")
     at /usr/src5/sys/ddb/db_command.c:531
#2  0xc044ae14 in db_command (last_cmdp=3D0xc0674644, cmd_table=3D0x0, aux_=
cmd_tablep=3D0xc064226c, aux_cmd_tablep_end=3D0xc0642270)
     at /usr/src5/sys/ddb/db_command.c:349
#3  0xc044aedc in db_command_loop () at /usr/src5/sys/ddb/db_command.c:455
#4  0xc044ca75 in db_trap (type=3D12, code=3D0) at /usr/src5/sys/ddb/db_mai=
n.c:221
#5  0xc04e6599 in kdb_trap (type=3D12, code=3D0, tf=3D0xe4b6cb3c) at /usr/s=
rc5/sys/kern/subr_kdb.c:468
#6  0xc05f4c79 in trap_fatal (frame=3D0xe4b6cb3c, eva=3D36) at /usr/src5/sy=
s/i386/i386/trap.c:812
#7  0xc05f43e9 in trap (frame=3D
       {tf_fs =3D -1040580584, tf_es =3D -1029439472, tf_ds =3D 16, tf_edi =
=3D -1038000128, tf_esi =3D -1066898900, tf_ebp =3D -457782384, tf_isp =3D =
-457782424, tf_ebx =3D -1040530304, tf_edx =3D -1040524364, tf_ecx =3D -104=
0524544, tf_eax =3D 0, tf_trapno =3D 12, tf_err =3D 0, tf_eip =3D -10685741=
01, tf_cs =3D 8, tf_eflags =3D 65683, tf_esp =3D 180, tf_ss =3D 0}) at /usr=
/src5/sys/i386/i386/trap.c:255
#8  0xc05e283a in calltrap () at /usr/src5/sys/i386/i386/exception.s:140
#9  0xc1fa0018 in ?? ()
#10 0xc2a40010 in ?? ()
#11 0x00000010 in ?? ()
#12 0xc2216000 in ?? ()
#13 0xc0686a2c in tcbinfo ()
#14 0xe4b6cb90 in ?? ()
#15 0xe4b6cb68 in ?? ()
#16 0xc1fac480 in ?? ()
#17 0xc1fadbb4 in ?? ()
#18 0xc1fadb00 in ?? ()
#19 0x00000000 in ?? ()
#20 0x0000000c in ?? ()
#21 0x00000000 in ?? ()
#22 0xc04eda6b in propagate_priority (td=3D0xc2216000) at /usr/src5/sys/ker=
n/subr_turnstile.c:243
#23 0xc04ee225 in turnstile_wait (ts=3D0xc1fadb00, lock=3D0xc0686a2c, owner=
=3D0xc2216000)
     at /usr/src5/sys/kern/subr_turnstile.c:556
#24 0xc04c5ced in _mtx_lock_sleep (m=3D0xc0686a2c, td=3D0xc1fac480, opts=3D=
0, file=3D0x0, line=3D0)
     at /usr/src5/sys/kern/kern_mutex.c:552
#25 0xc0559ad8 in tcp_usr_rcvd (so=3D0x0, flags=3D0) at /usr/src5/sys/netin=
et/tcp_usrreq.c:602
#26 0xc0506103 in soreceive (so=3D0xc27bf798, psa=3D0x0, uio=3D0xe4b6cc88, =
mp0=3D0x0, controlp=3D0x0, flagsp=3D0x0)
     at /usr/src5/sys/kern/uipc_socket.c:1395
#27 0xc04f4bd9 in soo_read (fp=3D0x0, uio=3D0xe4b6cc88, active_cred=3D0xc28=
84a80, flags=3D0, td=3D0xc1fac480)
     at /usr/src5/sys/kern/sys_socket.c:91
#28 0xc04ee865 in dofileread (td=3D0xc1fac480, fp=3D0xc2e17bb0, fd=3D10, bu=
f=3D0x0, nbyte=3D4096, offset=3DUnhandled dwarf expression opcode 0x93
) at file.h:233
#29 0xc04ee72f in read (td=3D0xc1fac480, uap=3D0xe4b6cd14) at /usr/src5/sys=
/kern/sys_generic.c:107
#30 0xc05f4fe7 in syscall (frame=3D
       {tf_fs =3D 47, tf_es =3D 47, tf_ds =3D -1078001617, tf_edi =3D 10, t=
f_esi =3D 300, tf_ebp =3D -1077942168, tf_isp =3D -457781900, tf_ebx =3D 13=
4822152, tf_edx =3D 0, tf_ecx =3D 10, tf_eax =3D 3, tf_trapno =3D 0, tf_err=
 =3D 2, tf_eip =3D 672556795, tf_cs =3D 31, tf_eflags =3D 658, tf_esp =3D -=
1077942212, tf_ss =3D 47}) at /usr/src5/sys/i386/i386/trap.c:1009
#31 0xc05e288f in Xint0x80_syscall () at /usr/src5/sys/i386/i386/exception.=
s:201
#32 0x0000002f in ?? ()
#33 0x0000002f in ?? ()
#34 0xbfbf002f in ?? ()
#35 0x0000000a in ?? ()
#36 0x0000012c in ?? ()
#37 0xbfbfe868 in ?? ()
#38 0xe4b6cd74 in ?? ()
#39 0x08093908 in ?? ()
#40 0x00000000 in ?? ()
#41 0x0000000a in ?? ()
#42 0x00000003 in ?? ()
#43 0x00000000 in ?? ()
#44 0x00000002 in ?? ()
#45 0x281666fb in ?? ()
#46 0x0000001f in ?? ()
#47 0x00000292 in ?? ()
#48 0xbfbfe83c in ?? ()
#49 0x0000002f in ?? ()
#50 0x00000000 in ?? ()
#51 0x00000000 in ?? ()
#52 0x00000000 in ?? ()
#53 0x00000000 in ?? ()
#54 0x2c75b000 in ?? ()
#55 0xc22de000 in ?? ()
#56 0xc1fac480 in ?? ()
#57 0xe4b6ccac in ?? ()
#58 0xe4b6cc94 in ?? ()
#59 0xc1f26000 in ?? ()
#60 0xc04ded13 in sched_switch (td=3D0x12c, newtd=3D0x8093908, flags=3DCann=
ot access memory at address 0xbfbfe878
) at /usr/src5/sys/kern/sched_4bsd.c:881
Previous frame inner to this frame (corrupt stack?)
(kgdb) quit
--0-413037934-1120666220=:9770--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20050706180434.A9770>