From nobody Mon Dec 20 07:11:41 2021 X-Original-To: net@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 3F62E18F0B1A for ; Mon, 20 Dec 2021 07:11:42 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4JHW3f0bw8z3H9d for ; Mon, 20 Dec 2021 07:11:42 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2610:1c1:1:606c::50:1d]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id E9C0F12304 for ; Mon, 20 Dec 2021 07:11:41 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org ([127.0.1.5]) by kenobi.freebsd.org (8.15.2/8.15.2) with ESMTP id 1BK7BfTH095995 for ; Mon, 20 Dec 2021 07:11:41 GMT (envelope-from bugzilla-noreply@freebsd.org) Received: (from www@localhost) by kenobi.freebsd.org (8.15.2/8.15.2/Submit) id 1BK7BftT095994 for net@FreeBSD.org; Mon, 20 Dec 2021 07:11:41 GMT (envelope-from bugzilla-noreply@freebsd.org) X-Authentication-Warning: kenobi.freebsd.org: www set sender to bugzilla-noreply@freebsd.org using -f From: bugzilla-noreply@freebsd.org To: net@FreeBSD.org Subject: [Bug 260393] Page Fault tcp_output/tcp_input Date: Mon, 20 Dec 2021 07:11:41 +0000 X-Bugzilla-Reason: AssignedTo X-Bugzilla-Type: changed X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Base System X-Bugzilla-Component: kern X-Bugzilla-Version: 13.0-STABLE X-Bugzilla-Keywords: X-Bugzilla-Severity: Affects Only Me X-Bugzilla-Who: ddobrev85@gmail.com X-Bugzilla-Status: New X-Bugzilla-Resolution: X-Bugzilla-Priority: --- X-Bugzilla-Assigned-To: net@FreeBSD.org X-Bugzilla-Flags: X-Bugzilla-Changed-Fields: Message-ID: In-Reply-To: References: Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated List-Id: Networking and TCP/IP with FreeBSD List-Archive: https://lists.freebsd.org/archives/freebsd-net List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-net@freebsd.org MIME-Version: 1.0 ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1639984302; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=dW8rd9SAXeoJyn3EB2U33YfxT+xaCHj6HpG01V1G0ls=; b=TSer0sR6loLTvE/z6+ETjj6X7+bLxu1cersxeoyFG4M3Q329CLz/WW8JHm0KrWdZwRB9sP 31rRDDzEHoFj0As6g82+wOHs3SoJoV+gwbJ3XcYvx8ygD2DqYEyA3D//5vTfPXiShLPl+k u33fTLUnNv1hw3Uxy4eH6Y+gZgp6z/F+2qGseI1N0nVZ4/iZFv7fsI4kSkEQtw8TGgvGCd HfJWoxnETZkNJpCy/QmJjiC/AzIAd0r7LXixKR6rInwKtiXPWrNFw+Km21s7f/9AlpYFnk M0ow5vhNyne+ka8ePd7edVruDDlHQNR5ygXQlEnhEjikKY3nhV2RcmnPCZfX+w== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1639984302; a=rsa-sha256; cv=none; b=NvPYRhKG6okPpxtstnSjWXZs89R7rH4mxPm9nnwydASJR0SdEwQJPB/TCWJ/UjVDGltuOF 94AmAEzYlrfr6sZPYHocsGzvwfDyljOD+2aeiLvQB4q6NIlVOSAXUQxDOExdVy/iAKmlAW aPaUqjHhYcBAnxgHaSYcOg51TqUTx0nTu01BuUOIJfOZ1cURgcRdDJg4XhU/qAtwUhoQOI RDcLQAjaSZkAeE7BhAGmwPCX5glOfqR+OVAasoBUzs0ZdgpL5oWSVDBMoQViZpQbzAN3C6 4WfpQrg2FMfEZLS4HtJnkaF6S9A6d1UogfXWwGd2z+03gxGZN0d67P2acXdhnw== ARC-Authentication-Results: i=1; mx1.freebsd.org; none X-ThisMailContainsUnwantedMimeParts: N https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D260393 --- Comment #8 from Dobri Dobrev --- (In reply to Michael Tuexen from comment #7) For help, type "help". Type "apropos word" to search for commands related to "word"... Reading symbols from /boot/kernel/kernel... Reading symbols from /usr/lib/debug//boot/kernel/kernel.debug... Unread portion of the kernel message buffer: [314230] processor eflags =3D interrupt enabled, resume, IOPL =3D 0 [314230] current process =3D 0 (if_io_tqg_1) [314230] trap number =3D 12 [314230] panic: page fault [314230] cpuid =3D 1 [314230] time =3D 1639952536 [314230] KDB: stack backtrace: [314230] #0 0xffffffff80c60dd5 at kdb_backtrace+0x65 [314230] #1 0xffffffff80c1336f at vpanic+0x17f [314230] #2 0xffffffff80c131e3 at panic+0x43 [314230] #3 0xffffffff810991b5 at trap_fatal+0x385 [314230] #4 0xffffffff8109920f at trap_pfault+0x4f [314230] #5 0xffffffff810705e8 at calltrap+0x8 [314230] #6 0xffffffff80dd5fa9 at tcp_output+0x1339 [314230] #7 0xffffffff80dcd382 at tcp_do_segment+0x2902 [314230] #8 0xffffffff80dc9d41 at tcp_input_with_port+0xb61 [314230] #9 0xffffffff80dca9eb at tcp_input+0xb [314230] #10 0xffffffff80dbc1bf at ip_input+0x11f [314230] #11 0xffffffff80d491a9 at netisr_dispatch_src+0xb9 [314230] #12 0xffffffff80d2d128 at ether_demux+0x138 [314230] #13 0xffffffff80d2e4b5 at ether_nh_input+0x355 [314230] #14 0xffffffff80d491a9 at netisr_dispatch_src+0xb9 [314230] #15 0xffffffff80d2d559 at ether_input+0x69 [314230] #16 0xffffffff80d45617 at iflib_rxeof+0xc27 [314230] #17 0xffffffff80d3fc62 at _task_fn_rx+0x72 [314230] Uptime: 3d15h17m10s [314230] Dumping 5461 out of 130927 MB:..1%..11%..21%..31%..41%..51%..61%..71%..81%..91% __curthread () at /usr/src/sys/amd64/include/pcpu_aux.h:55 55 __asm("movq %%gs:%P1,%0" : "=3Dr" (td) : "n" (offsetof(stru= ct pcpu, (kgdb) where #0 __curthread () at /usr/src/sys/amd64/include/pcpu_aux.h:55 #1 doadump (textdump=3D) at /usr/src/sys/kern/kern_shutdown= .c:399 #2 0xffffffff80c12f6c in kern_reboot (howto=3D260) at /usr/src/sys/kern/kern_shutdown.c:487 #3 0xffffffff80c133de in vpanic (fmt=3D0xffffffff81191bdd "%s", ap=3D) at /usr/src/sys/kern/kern_shutdown.c:920 #4 0xffffffff80c131e3 in panic (fmt=3D) at /usr/src/sys/kern/kern_shutdown.c:844 #5 0xffffffff810991b5 in trap_fatal (frame=3D0xfffffe00d3bfd5b0, eva=3D24)= at /usr/src/sys/amd64/amd64/trap.c:944 #6 0xffffffff8109920f in trap_pfault (frame=3D0xfffffe00d3bfd5b0, usermode=3Dfalse, signo=3D, ucode=3D) at /usr/src/sys/amd64/amd64/trap.c:763 #7 #8 m_copydata (m=3D0x0, m@entry=3D0xfffff8010ee80d00, off=3D0, len=3D1, cp= =3D) at /usr/src/sys/kern/uipc_mbuf.c:657 #9 0xffffffff80dd5fa9 in tcp_output (tp=3D) at /usr/src/sys/netinet/tcp_output.c:1081 #10 0xffffffff80dcd382 in tcp_do_segment (m=3D, th=3D, so=3D, tp=3D0xfffffe0251638870, drop_hdrlen=3D40, tlen=3D, iptos=3D0 '\000') at /usr/src/sys/netinet/tcp_input.c:2822 #11 0xffffffff80dc9d41 in tcp_input_with_port (mp=3D, offp=3D, proto=3D, port=3Dport@entry=3D0) at /usr/src/sys/netinet/tcp_input.c:1400 #12 0xffffffff80dca9eb in tcp_input (mp=3D0xfffff8010ee80d00, offp=3D0x0, p= roto=3D1) at /usr/src/sys/netinet/tcp_input.c:1496 #13 0xffffffff80dbc1bf in ip_input (m=3D0x0) at /usr/src/sys/netinet/ip_input.c:834 #14 0xffffffff80d491a9 in netisr_dispatch_src (proto=3D1, source=3Dsource@e= ntry=3D0, m=3D0xfffff8015b58d700) at /usr/src/sys/net/netisr.c:1143 #15 0xffffffff80d4957f in netisr_dispatch (proto=3D250088704, m=3D0x1) at /usr/src/sys/net/netisr.c:1234 #16 0xffffffff80d2d128 in ether_demux (ifp=3Difp@entry=3D0xfffff80105343000= , m=3D0x0) at /usr/src/sys/net/if_ethersubr.c:921 #17 0xffffffff80d2e4b5 in ether_input_internal (ifp=3D0xfffff80105343000, m= =3D0x0) at /usr/src/sys/net/if_ethersubr.c:707 #18 ether_nh_input (m=3D) at /usr/src/sys/net/if_ethersubr.c= :737 #19 0xffffffff80d491a9 in netisr_dispatch_src (proto=3Dproto@entry=3D5, source=3Dsource@entry=3D0, m=3Dm@entry=3D0xfffff8015b58d700) at /usr/src/sys/net/netisr.c:1143 #20 0xffffffff80d4957f in netisr_dispatch (proto=3D250088704, proto@entry= =3D5, m=3D0x1, m@entry=3D0xfffff8015b58d700) at /usr/src/sys/net/netisr.c:1234 #21 0xffffffff80d2d559 in ether_input (ifp=3D, m=3D0xfffff8015b58d700) at /usr/src/sys/net/if_ethersubr.c:828 #22 0xffffffff80d45617 in iflib_rxeof (rxq=3D, rxq@entry=3D0xfffffe00d68b6340, budget=3D) at /usr/src/sys/net/iflib.c:3046 #23 0xffffffff80d3fc62 in _task_fn_rx (context=3D0xfffffe00d68b6340) at /usr/src/sys/net/iflib.c:3989 #24 0xffffffff80c5f80d in gtaskqueue_run_locked (queue=3Dqueue@entry=3D0xfffff80103920b00) at /usr/src/sys/kern/subr_gtaskqueue.c:371 #25 0xffffffff80c5f482 in gtaskqueue_thread_loop (arg=3D, arg@entry=3D0xfffffe00d6bd1020) at /usr/src/sys/kern/subr_gtaskqueue.c:547 #26 0xffffffff80bd053e in fork_exit (callout=3D0xffffffff80c5f3c0 , arg=3D0xfffffe00d6bd1020, frame=3D0xfffffe00d3bfd= f40) at /usr/src/sys/kern/kern_fork.c:1092 #27 #28 mi_startup () at /usr/src/sys/kern/init_main.c:322 Backtrace stopped: Cannot access memory at address 0xb (kgdb) print *tcp_output $1 =3D {int (struct tcpcb *)} 0xffffffff80dd4c70 (kgdb) print *m_copydata $2 =3D {void (const struct mbuf *, int, int, caddr_t)} 0xffffffff80ca5bd0 (kgdb) print *tcp_do_segment $3 =3D {void (struct mbuf *, struct tcphdr *, struct socket *, struct tcpcb= *, int, int, uint8_t)} 0xffffffff80dcaa80 (kgdb) --=20 You are receiving this mail because: You are the assignee for the bug.=