[Bug 213903] Kernel crashes from turnstile_broadcast (/usr/src/sys/kern/subr_turnstile.c:837)

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Mon May 29 13:01:01 UTC 2017


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=213903

--- Comment #31 from Cassiano Peixoto <peixoto.cassiano at gmail.com> ---
Hi Mateusz,

After some time i had a server with FreeBSD 11-p1 crashed with your patch
applied. 

See bellow: 

(kgdb) list *0xffffffff80b317ac
0xffffffff80b317ac is in turnstile_broadcast
(/usr/src/sys/kern/subr_turnstile.c:837).
832     
833             /*
834              * Transfer the blocked list to the pending list.
835              */
836             mtx_lock_spin(&td_contested_lock);
837             TAILQ_CONCAT(&ts->ts_pending, &ts->ts_blocked[queue],
td_lockq);
838             mtx_unlock_spin(&td_contested_lock);
839     
840             /*
841              * Give a turnstile to each thread.  The last thread gets
Current language:  auto; currently minimal
(kgdb) bt
#0  doadump (textdump=<value optimized out>) at pcpu.h:221
#1  0xffffffff80acfd69 in kern_reboot (howto=260) at
/usr/src/sys/kern/kern_shutdown.c:366
#2  0xffffffff80ad031b in vpanic (fmt=<value optimized out>, ap=<value
optimized out>) at /usr/src/sys/kern/kern_shutdown.c:759
#3  0xffffffff80ad0153 in panic (fmt=0x0) at
/usr/src/sys/kern/kern_shutdown.c:690
#4  0xffffffff80ee2d21 in trap_fatal (frame=0xfffffe02378e0850, eva=32) at
/usr/src/sys/amd64/amd64/trap.c:841
#5  0xffffffff80ee2f13 in trap_pfault (frame=0xfffffe02378e0850, usermode=0) at
/usr/src/sys/amd64/amd64/trap.c:691
#6  0xffffffff80ee24bc in trap (frame=0xfffffe02378e0850) at
/usr/src/sys/amd64/amd64/trap.c:442
#7  0xffffffff80ec5951 in calltrap () at
/usr/src/sys/amd64/amd64/exception.S:236
#8  0xffffffff80b317ac in turnstile_broadcast (ts=0x0, queue=0) at
/usr/src/sys/kern/subr_turnstile.c:837
#9  0xffffffff80aabb70 in __mtx_unlock_sleep (c=0xffffffff81cab130, opts=<value
optimized out>, file=0x1 <Address 0x1 out of bounds>, line=1) at
/usr/src/sys/kern/kern_mutex.c:865
#10 0xffffffff80d42dd1 in swap_reserve_by_cred (incr=<value optimized out>,
cred=<value optimized out>) at /usr/src/sys/vm/swap_pager.c:224
#11 0xffffffff80d58f49 in kmap_alloc_wait (map=0xfffff800061d7c30, size=266240)
at /usr/src/sys/vm/vm_kern.c:437
#12 0xffffffff80a7cf5c in exec_copyin_args (args=0xfffffe02378e0a70,
fname=0x801436b58 <Address 0x801436b58 out of bounds>, segflg=UIO_USERSPACE,
argv=0x801436a98, envv=0x801436b20)
    at /usr/src/sys/kern/kern_exec.c:1326
#13 0xffffffff80a7cdb8 in sys_execve (td=0xfffff8013d03ba00,
uap=0xfffffe02378e0b80) at /usr/src/sys/kern/kern_exec.c:215
#14 0xffffffff80ee367e in amd64_syscall (td=<value optimized out>, traced=0) at
subr_syscall.c:135
#15 0xffffffff80ec5c3b in Xfast_syscall () at
/usr/src/sys/amd64/amd64/exception.S:396
#16 0x0000000800b45daa in ?? ()

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-bugs mailing list