[Bug 279839] panic: bogus vchan_create

From: <bugzilla-noreply_at_freebsd.org>
Date: Tue, 18 Jun 2024 21:01:56 UTC
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=279839

            Bug ID: 279839
           Summary: panic: bogus vchan_create
           Product: Base System
           Version: CURRENT
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: kern
          Assignee: bugs@FreeBSD.org
          Reporter: dch@freebsd.org
                CC: christos@freebsd.org

__curthread () at /usr/src/sys/amd64/include/pcpu_aux.h:57
57              __asm("movq %%gs:%P1,%0" : "=r" (td) : "n" (offsetof(struct
pcpu,
(kgdb) #0  __curthread () at /usr/src/sys/amd64/include/pcpu_aux.h:57
#1  doadump (textdump=textdump@entry=0)
    at /usr/src/sys/kern/kern_shutdown.c:404
#2  0xffffffff8049d11a in db_dump (dummy=<optimized out>,
    dummy2=<optimized out>, dummy3=<optimized out>, dummy4=<optimized out>)
    at /usr/src/sys/ddb/db_command.c:595
#3  0xffffffff8049cf1d in db_command (last_cmdp=<optimized out>,
    cmd_table=<optimized out>, dopager=false)
    at /usr/src/sys/ddb/db_command.c:508
#4  0xffffffff8049d066 in db_command_script (
    command=command@entry=0xffffffff819c2764 <db_recursion_data+84> "dump")
    at /usr/src/sys/ddb/db_command.c:573
#5  0xffffffff804a2f18 in db_script_exec (
    scriptname=scriptname@entry=0xfffffe02e43ba5d0 "kdb.enter.panic",
    warnifnotfound=warnifnotfound@entry=0) at /usr/src/sys/ddb/db_script.c:301
#6  0xffffffff804a2e12 in db_script_kdbenter (eventname=<optimized out>)
    at /usr/src/sys/ddb/db_script.c:323
#7  0xffffffff804a0691 in db_trap (type=<optimized out>, code=<optimized out>)
    at /usr/src/sys/ddb/db_main.c:266
#8  0xffffffff80b94ebf in kdb_trap (type=type@entry=3, code=code@entry=0,
    tf=tf@entry=0xfffffe02e43ba910) at /usr/src/sys/kern/subr_kdb.c:790
#9  0xffffffff810632c9 in trap (frame=0xfffffe02e43ba910)
    at /usr/src/sys/amd64/amd64/trap.c:606
#10 <signal handler called>
#11 kdb_enter (why=<optimized out>, msg=<optimized out>)
    at /usr/src/sys/kern/subr_kdb.c:556
#12 0xffffffff80b455f0 in vpanic (
    fmt=0xffffffff811ffaa0 "bogus vchan_create() request newcnt=%d vcnt=%d",
    ap=ap@entry=0xfffffe02e43bab40) at /usr/src/sys/kern/kern_shutdown.c:967
#13 0xffffffff80b45473 in panic (
    fmt=0xffffffff81b89480 <cnputs_mtx> "yQ\024\201\377\377\377\377")
    at /usr/src/sys/kern/kern_shutdown.c:892
#14 0xffffffff808dce6f in vchan_setnew (d=<optimized out>, direction=1,
    newcnt=4) at /usr/src/sys/dev/sound/pcm/vchan.c:966
#15 0xffffffff808dd408 in sysctl_dev_pcm_vchans (oidp=0xfffff80105faca00,
    arg1=<optimized out>, arg2=<optimized out>, req=0xfffffe02e43bacc0)
    at /usr/src/sys/dev/sound/pcm/vchan.c:346
#16 0xffffffff80b5776c in sysctl_root_handler_locked (
    oid=oid@entry=0xfffff80105faca00, arg1=arg1@entry=0x9, arg2=arg2@entry=8,
    req=req@entry=0xfffffe02e43bacc0, tracker=tracker@entry=0xfffffe02e43bac40)
    at /usr/src/sys/kern/kern_sysctl.c:199
#17 0xffffffff80b56b0e in sysctl_root (oidp=<optimized out>, arg1=0x9,
    arg1@entry=0xfffffe02e43bad80, arg2=8, arg2@entry=5,
    req=req@entry=0xfffffe02e43bacc0) at /usr/src/sys/kern/kern_sysctl.c:2405
#18 0xffffffff80b571ca in userland_sysctl (td=td@entry=0xfffff802a1fb6000,
    name=name@entry=0xfffffe02e43bad80, namelen=<optimized out>,
    old=<optimized out>, oldlenp=<optimized out>, inkernel=inkernel@entry=0,
    new=0x42a963808008, newlen=4, retval=0xfffffe02e43bade8, flags=0)
    at /usr/src/sys/kern/kern_sysctl.c:2562
#19 0xffffffff80b57010 in sys___sysctl (td=0xfffff802a1fb6000,
    uap=0xfffff802a1fb6400) at /usr/src/sys/kern/kern_sysctl.c:2435
#20 0xffffffff810646d8 in syscallenter (td=0xfffff802a1fb6000)
    at /usr/src/sys/amd64/amd64/../../kern/subr_syscall.c:189
#21 amd64_syscall (td=0xfffff802a1fb6000, traced=0)
    at /usr/src/sys/amd64/amd64/trap.c:1192
#22 <signal handler called>
#23 0x0000295a9ff7809a in ?? ()
Backtrace stopped: Cannot access memory at address 0x295a9e6440c8
(kgdb)
(END)

had to unplug USB audio device to be able to boot, otherwise its repeated crash
on restart

- current built off 914c2b3314e8f6e31833e33cfdcc4843f88fe31b (June 18)
- but seen since d9ab8999313845e87c67532437a0441d9cd57e72 (June 7)

-- 
You are receiving this mail because:
You are the assignee for the bug.