[Bug 262671] Kernel panics after a invalid SNDCTL_MIXERINFO ioctl

From: <bugzilla-noreply_at_freebsd.org>
Date: Sat, 19 Mar 2022 21:52:45 UTC
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=262671

--- Comment #3 from Aleksander Slomka <alex@alexslomka.xyz> ---
#0  __curthread () at /usr/src/sys/amd64/include/pcpu_aux.h:55
#1  doadump (textdump=textdump@entry=1) at
/usr/src/sys/kern/kern_shutdown.c:406
#2  0xffffffff80c17dbc in kern_reboot (howto=260) at
/usr/src/sys/kern/kern_shutdown.c:527
#3  0xffffffff80c182ce in vpanic (fmt=0xffffffff81215450 "%s", ap=<optimized
out>) at /usr/src/sys/kern/kern_shutdown.c:965
#4  0xffffffff80c18023 in panic (fmt=<unavailable>) at
/usr/src/sys/kern/kern_shutdown.c:889
#5  0xffffffff810fee55 in trap_fatal (frame=0xfffffe00ce68b9c0, eva=68) at
/usr/src/sys/amd64/amd64/trap.c:946
#6  0xffffffff810fef0b in trap_pfault (frame=0xfffffe00ce68b9c0,
usermode=false, signo=<optimized out>, ucode=<optimized out>) at /usr
#7  <signal handler called>
#8  mixer_oss_mixerinfo (i_dev=0xfffff80004865c00, mi=0xfffff80010e01800,
mi@entry=0x0) at /usr/src/sys/dev/sound/pcm/mixer.c:1465
#9  0xffffffff809a3941 in mixer_ioctl_cmd (i_dev=0xfffff80001a33f00,
i_dev@entry=0xfffff80004865c00, cmd=<optimized out>, cmd@entry=32
    from@entry=1) at /usr/src/sys/dev/sound/pcm/mixer.c:1301
#10 0xffffffff809a48db in mixer_ioctl (i_dev=0xfffff80004865c00, cmd=<optimized
out>, arg=0xffffffff8126e1cb "/usr/src/sys/dev/sound/p
#11 0xffffffff80aa631c in devfs_ioctl (ap=0xfffffe00ce68bba8) at
/usr/src/sys/fs/devfs/devfs_vnops.c:935
#12 0xffffffff80d1f871 in vn_ioctl (fp=0xfffff801600ec9b0, com=<optimized out>,
data=0xfffff80010e01800, active_cred=0xfffff801e1934a0
#13 0xffffffff80aa69ce in devfs_ioctl_f (fp=0xfffff80001a33f00, com=4,
data=0xffffffff8126e1cb, cred=0x4, td=0xfffffe00d0f14e40) at /u
#14 0xffffffff80c8f842 in fo_ioctl (fp=<optimized out>, com=3295696906,
data=0x10000, active_cred=0x4, td=0xfffffe00d0f14e40) at /usr/
#15 kern_ioctl (td=<optimized out>, td@entry=0xfffffe00d0f14e40, fd=<optimized
out>, com=com@entry=3295696906, data=0x10000 <error: Ca
#16 0xffffffff80c8f596 in sys_ioctl (td=0xfffffe00d0f14e40,
uap=0xfffffe00d0f15230) at /usr/src/sys/kern/sys_generic.c:711
#17 0xffffffff810ff80e in syscallenter (td=<optimized out>) at
/usr/src/sys/amd64/amd64/../../kern/subr_syscall.c:189
#18 amd64_syscall (td=0xfffffe00d0f14e40, traced=0) at
/usr/src/sys/amd64/amd64/trap.c:1191
#19 <signal handler called>
#20 0x00000008215c4baa in ?? ()
Backtrace stopped: Cannot access memory at address 0x8208dd548

-- 
You are receiving this mail because:
You are the assignee for the bug.