[Bug 258152] Memory modified after free

From: <bugzilla-noreply_at_freebsd.org>
Date: Sun, 29 Aug 2021 20:50:31 UTC

            Bug ID: 258152
           Summary: Memory modified after free
           Product: Base System
           Version: CURRENT
          Hardware: amd64
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: kern
          Assignee: bugs@FreeBSD.org
          Reporter: tschweikle@gmail.com

panic: Memory modified after free 0xfffff801e293000(4096) val=dcadc0de @
cpuid = 0
time = 1630263690
KDB: stack backtrace:
db_trace_self_wrapper() at db_trace_self_wrapper+0x2b/frame 0xfffffe0075f3c9c0
vpanic() at vpanic+0x187/frame 0xfffffe0075f3ca80
trash_fini() at trash_fini+047/frame 0xfffffe0075f3ca90
keg_free_slab() at keg_free_slab+0x74/frame 0xfffffe0075f3cad0
keg_drain_domain() at keg_drain_domain+0x200/frame 0xfffffe0075f3cb10
zone_reclaim() at zone_reclaim+0x19a/frame 0xfffffe0075f3cb50
arc_reap_cb() at arc_reap_cb+0x9/frame 0xfffffe0075f3cb60
zthr_procedure() at zthr_procedure+0x9f/frame 0xfffffe0075f3cbb0
fork_exit() at fork_exit+0x80/frame 0xfffffe0075f3cbf0
fork_trampoline() at fork_trampoline+0xe/frame 0xfffffe0075f3cbf0
--- trap 0, rip = 0, rsp = 0, rbp = 0 ---
KDB: enter: panic
[ thread pid 6 tid 100070 ]
Stopped at kdb_enter+0x37: movq $0,0x127bcf3(%rip)
db > cont
Dumping 1700 out of 6122MB ...

At this time uptime was 6h+

# uname -a:
FreeBSD fbsd14.bfs.de 14.0-CURRENT FreeBSD 14.0-CURRENT #0
main-n248543-04389c855e56: Mon Aug  9 07:35:33 CEST 2021    
root@fbsd14.bfs.de:/usr/obj/usr/src/amd64.amd64/sys/FBSD14  amd64

# freebsd-version -rku

# clang --version
FreeBSD clang version 12.0.1 (git@github.com:llvm/llvm-project.git
Target: x86_64-unknown-freebsd14.0
Thread model: posix
InstalledDir: /usr/bin

# update us
Sun Aug 29 22:43:58 CEST 2021 -- "Updating source tree for fbsd14"
>>> git reset --hard origin/main
Reset to HEAD ...
HEAD is now at d98954e22981 routing: Bring back the ability to specify transmit
interface via its name.
>>> git clean -ff -d -x -e /distfiles -e /packages
Cleanup ...
>>> git pull --quiet --progress
Pull ...
>>> git branch
* main

You are receiving this mail because:
You are the assignee for the bug.