From nobody Mon Oct 28 01:34:43 2024 X-Original-To: bugs@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4XcGCT00gWz5bgPn for ; Mon, 28 Oct 2024 01:34:44 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R10" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4XcGCR6k2tz4D6t for ; Mon, 28 Oct 2024 01:34:43 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1730079283; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=7PAMyJr8+Z9ZPkpcsvAi9EjaSrCCC3/VOKM9pC+KX+Q=; b=wU6fNDwbgoLlNqt69ypNUEGpR4Wt3Ww/nRIfYgeZV6MMWLN/8EhbMHJ9XpjIQlf6VuC8OB cvdwDKls2H/jwN0RmAXHFeg0GLJsTxkIWXZMIeC1olq93pE+Um86YHrHADAcJ+ogDvtLRQ A/+V3ocangiTAtGDKB1b/h8HiLyE/Zq/OAhvXFKThdmwTNq4mRDi43lOEBK3/NYvQk2J7f i0JOzf1nnlfeuU+TkUffLcexdIfuk2lLNrBlhuD+bej1Y1KQ7hMtzI8i+LnKBb6jJmy2Ns PdfuPHpyvAtxIw23pNh2PA4cQbPNVeu410Z1raHB8sasDwixiSyNyALP3bAPbw== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1730079283; a=rsa-sha256; cv=none; b=i+IzdCJwkcLKF8yDjauGuXYgXx/tMEaFmeVUauen5dg1YWD05vqfx57rq/D2TOXC28x7Sg uC+YI+Y71VaVpzQERAsdyvB1a3m7pvIZqxKdGtmCV3bWOO0Zf+H4m7E9QVSjQ4maxculf0 PIDuR3HWtM9CQjBlB0ubW/bG5QiK0BJhZZO5SNEfwBS7m0On8DjTuuT9v5mKBDR1b2Rzfu EksyFYUlKJK9lSbpmm6mlFQfg6rTUFVlCJ4NG5gtFwONkkOz53eM9GHodAF0idJIvJCiDI wyhzehj96n+5dV7YslLHNYEOHPkOox8i9YhaPZgp+vReBi29mdbCnF6H2KR2UA== Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2610:1c1:1:606c::50:1d]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4XcGCR5YYRzJVd for ; Mon, 28 Oct 2024 01:34:43 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org ([127.0.1.5]) by kenobi.freebsd.org (8.15.2/8.15.2) with ESMTP id 49S1Yhoc095082 for ; Mon, 28 Oct 2024 01:34:43 GMT (envelope-from bugzilla-noreply@freebsd.org) Received: (from www@localhost) by kenobi.freebsd.org (8.15.2/8.15.2/Submit) id 49S1YhZB095081 for bugs@FreeBSD.org; Mon, 28 Oct 2024 01:34:43 GMT (envelope-from bugzilla-noreply@freebsd.org) X-Authentication-Warning: kenobi.freebsd.org: www set sender to bugzilla-noreply@freebsd.org using -f From: bugzilla-noreply@freebsd.org To: bugs@FreeBSD.org Subject: [Bug 282374] kernel panic on boot with Chelsio T320 installed Date: Mon, 28 Oct 2024 01:34:43 +0000 X-Bugzilla-Reason: AssignedTo X-Bugzilla-Type: changed X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Base System X-Bugzilla-Component: kern X-Bugzilla-Version: 14.1-RELEASE X-Bugzilla-Keywords: X-Bugzilla-Severity: Affects Some People X-Bugzilla-Who: biscuits.carry.0j@icloud.com X-Bugzilla-Status: New X-Bugzilla-Resolution: X-Bugzilla-Priority: --- X-Bugzilla-Assigned-To: bugs@FreeBSD.org X-Bugzilla-Flags: X-Bugzilla-Changed-Fields: Message-ID: In-Reply-To: References: Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated List-Id: Bug reports List-Archive: https://lists.freebsd.org/archives/freebsd-bugs List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-bugs@FreeBSD.org MIME-Version: 1.0 https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D282374 --- Comment #1 from ScottD --- Here's the last few lines of the message buffer before the panic: Starting device manager... acpi_wmi0: on acpi0 acpi_wmi0: Embedded MOF found ACPI: \_SB.WMIB.WQZZ: 1 arguments were passed to a non-method ACPI object (Buffer) (20221020/nsarguments-361) acpi_wmi1: on acpi0 acpi_wmi1: Embedded MOF found ACPI: \_SB.WMIV.WQZZ: 1 arguments were passed to a non-method ACPI object (Buffer) (20221020/nsarguments-361) acpi_wmi2: on acpi0 acpi_wmi2: Embedded MOF found cxgbc0: mem 0xd1000000-0xd1000fff,0xd1001000-0xd100= 1fff irq 16 at device 0.0 on pci1 cxgbc0: using MSI-X interrupts (9 vectors) cxgb0: on cxgbc0 Fatal trap 12: page fault while in kernel mode I am not able to reproduce the panic when booting from a FreeBSD 14.1 or FreeBSD 14.2-PRERELEASE memstick, although I have not tried an install. Here's the backtrace from the latest 14.2 PRERELEASE kernel: Fatal trap 12: page fault while in kernel mode cpuid =3D 2; apic id =3D 04 fault virtual address =3D 0x0 fault code =3D supervisor read instruction, page not present instruction pointer =3D 0x20:0x0 stack pointer =3D 0x28:0xfffffe00aab0b6f8 frame pointer =3D 0x28:0xfffffe00aab0b720 code segment =3D base 0x0, limit 0xfffff, type 0x1b =3D DPL 0, pres 1, long 1, def32 0, gran 1 processor eflags =3D interrupt enabled, resume, IOPL =3D 0 current process =3D 367 (devctl) rdi: fffff80024451000 rsi: fffffe00aab0b770 rdx: fffffe00acbb9ed8 rcx: 00000000c0306938 r8: 0000000000000000 r9: 0000000000000000 rax: 0000000000000000 rbx: fffffe00aab0b770 rbp: fffffe00aab0b720 r10: fffff8003bb06800 r11: 0000000000000800 r12: 0000000000008802 r13: fffff8003bb06810 r14: fffffe00acbb9ed8 r15: 0000000000000000 trap number =3D 12 panic: page fault cpuid =3D 2 time =3D 1730034648 KDB: stack backtrace: #0 0xffffffff80b8b9bd at kdb_backtrace+0x5d #1 0xffffffff80b3e101 at vpanic+0x131 #2 0xffffffff80b3dfc3 at panic+0x43 #3 0xffffffff81024a0b at trap_fatal+0x40b #4 0xffffffff81024a56 at trap_pfault+0x46 #5 0xffffffff80ffb538 at calltrap+0x8 #6 0xffffffff80d897e5 at dump_iface+0x145 #7 0xffffffff80d891a9 at rtnl_handle_ifevent+0xa9 #8 0xffffffff80c5c75f at if_attach_internal+0x3df #9 0xffffffff80c6784c at ether_ifattach+0x2c #10 0xffffffff83327b53 at cxgb_port_attach+0x1d3 #11 0xffffffff80b7abac at device_attach+0x3ac #12 0xffffffff80b7be7b at bus_generic_attach+0x4b #13 0xffffffff83326ab6 at cxgb_controller_attach+0x926 #14 0xffffffff80b7abac at device_attach+0x3ac #15 0xffffffff80b7a7e1 at device_probe_and_attach+0x41 #16 0xffffffff80818382 at pci_driver_added+0xf2 #17 0xffffffff80b78269 at devclass_driver_added+0x29 I can provide vmcore files from 14.1-RELEASE or 14.2-PRERELEASE, and am hap= py to test with other kernels if necessary. The information below is from a vmcore on "FreeBSD 14.2-PRERELEASE stable/14-n269296-5ae76ff5138e GENERIC amd64" In kgdb, the backtrace is slightly different, with the page fault in ifmedia_ioctl due to a null pointer in ifm->ifm_status - the ifm_status callback pointer is null. #9 0xffffffff80c6c329 in ifmedia_ioctl (ifp=3D0xfffff80024451000, ifr=3D0xfffffe00aab0b770, ifm=3D0xfffffe00acbb9ed8, cmd=3D) at /usr/src/sys/net/if_media.c:293 warning: Source file is more recent than executable. 293 (*ifm->ifm_status)(ifp, ifmr); (kgdb) p ifm $1 =3D (struct ifmedia *) 0xfffffe00acbb9ed8 (kgdb) p ifm->ifm_status $2 =3D (ifm_stat_cb_t) 0x0 And here's the more complete backtrace as shown in kgdb: #0 __curthread () at /usr/src/sys/amd64/include/pcpu_aux.h:57 #1 doadump (textdump=3D) at /usr/src/sys/kern/kern_shutdown= .c:405 #2 0xffffffff80b3dc97 in kern_reboot (howto=3D260) at /usr/src/sys/kern/kern_shutdown.c:523 #3 0xffffffff80b3e16e in vpanic (fmt=3D0xffffffff81174043 "%s", ap=3Dap@entry=3D0xfffffe00aab0b550) at /usr/src/sys/kern/kern_shutdown.c:967 #4 0xffffffff80b3dfc3 in panic (fmt=3D) at /usr/src/sys/kern/kern_shutdown.c:891 #5 0xffffffff81024a0b in trap_fatal (frame=3D0xfffffe00aab0b630, eva=3D0) = at /usr/src/sys/amd64/amd64/trap.c:952 #6 0xffffffff81024a56 in trap_pfault (frame=3D, usermode=3Dfa= lse, signo=3D, ucode=3D) at /usr/src/sys/amd64/amd64/trap.c:760 #7 #8 0x0000000000000000 in ?? () #9 0xffffffff80c6c329 in ifmedia_ioctl (ifp=3D0xfffff80024451000, ifr=3D0xfffffe00aab0b770, ifm=3D0xfffffe00acbb9ed8, cmd=3D) at /usr/src/sys/net/if_media.c:293 #10 0xffffffff80d897e5 in get_operstate_ether (ifp=3D0xfffff80024451000, pstate=3D) at /usr/src/sys/netlink/route/iface.c:124 #11 get_operstate (ifp=3D0xfffff80024451000, pstate=3D) at /usr/src/sys/netlink/route/iface.c:181 #12 dump_iface (nw=3Dnw@entry=3D0xfffffe00aab0b7e8, ifp=3Difp@entry=3D0xfffff80024451000, hdr=3Dhdr@entry=3D0xfffffe00aab0b828, if_flags_mask=3Dif_flags_mask@ent= ry=3D0) at /usr/src/sys/netlink/route/iface.c:310 #13 0xffffffff80d891a9 in rtnl_handle_ifevent (ifp=3D0xfffff80024451000, nlmsg_type=3D, if_flags_mask=3D0) at /usr/src/sys/netlink/route/iface.c:1411 #14 0xffffffff80c5c75f in if_attach_internal (ifp=3Difp@entry=3D0xfffff8002= 4451000, vmove=3D) at /usr/src/sys/net/if.c:957 #15 0xffffffff80c5c379 in if_attach (ifp=3Difp@entry=3D0xfffff80024451000) = at /usr/src/sys/net/if.c:772 #16 0xffffffff80c6784c in ether_ifattach (ifp=3Difp@entry=3D0xfffff80024451= 000, lla=3D0xfffffe00aab0b770 "", lla@entry=3D0xfffffe00acbb9f38 "") at /usr/src/sys/net/if_ethersubr.c:1= 001 #17 0xffffffff83327b53 in cxgb_port_attach (dev=3D0xfffff80006f09100) at /usr/src/sys/dev/cxgb/cxgb_main.c:1044 #18 0xffffffff80b7abac in DEVICE_ATTACH (dev=3D0xfffff80006f09100) at ./device_if.h:195 #19 device_attach (dev=3Ddev@entry=3D0xfffff80006f09100) at /usr/src/sys/kern/subr_bus.c:2548 #20 0xffffffff80b7be7b in device_probe_and_attach (dev=3D0xfffff80006f09100= ) at /usr/src/sys/kern/subr_bus.c:2505 #21 bus_generic_attach (dev=3Ddev@entry=3D0xfffff80001b11000) at /usr/src/sys/kern/subr_bus.c:3381 #22 0xffffffff83326ab6 in cxgb_controller_attach (dev=3D0xfffff80001b11000)= at /usr/src/sys/dev/cxgb/cxgb_main.c:644 #23 0xffffffff80b7abac in DEVICE_ATTACH (dev=3D0xfffff80001b11000) at ./device_if.h:195 #24 device_attach (dev=3Ddev@entry=3D0xfffff80001b11000) at /usr/src/sys/kern/subr_bus.c:2548 #25 0xffffffff80b7a7e1 in device_probe_and_attach (dev=3Ddev@entry=3D0xfffff80001b11000) at /usr/src/sys/kern/subr_bus.c:2505 #26 0xffffffff80818382 in pci_driver_added (dev=3D0xfffff80001b11100, driver=3D) at /usr/src/sys/dev/pci/pci.c:4733 #27 0xffffffff80b78269 in BUS_DRIVER_ADDED (_dev=3D0xfffff80001b11100, _driver=3D0xffffffff8333b420 ) at ./bus_if.h:210 #28 devclass_driver_added (dc=3Ddc@entry=3D0xfffff80001717300, driver=3D0xffffffff8333b420 ) at /usr/src/sys/kern/subr_bus.c:603 #29 0xffffffff80b8065b in device_do_deferred_actions () at /usr/src/sys/kern/subr_bus.c:5543 #30 0xffffffff80b7ff5f in devctl2_ioctl (cdev=3D, cmd=3D2157= 462540, data=3D0xfffff80024647a00 "", fflag=3D, td=3D) at /usr/src/sys/kern/subr_bus.c:5826 #31 0xffffffff809cc79b in devfs_ioctl (ap=3D0xfffffe00aab0bc58) at /usr/src/sys/fs/devfs/devfs_vnops.c:952 #32 0xffffffff80c3a91e in VOP_IOCTL (vp=3D, command=3D, data=3D, --Type for more, q to quit, c to continue without paging--c fflag=3D, cred=3D, td=3D) = at ./vnode_if.h:633 #33 0xffffffff80c3a91e in vn_ioctl (fp=3D, com=3D18446741877550004080, data=3D0xfffffe00acbb9ed8, active_cred=3D0xc0306938, td=3D0x0) #34 0xffffffff809ccdfe in devfs_ioctl_f (fp=3D0xfffff80024451000, com=3D18446741877550004080, data=3D0xfffffe00acbb9ed8, cred=3D0xc0306938, td=3D0x0) at /usr/src/sys/fs/devfs/devfs_vnops.c:883 #35 0xffffffff80bacad5 in fo_ioctl (fp=3D0xfffff80006f63d20, com=3D21574625= 40, data=3D0xfffffe00acbb9ed8, active_cred=3D0xc0306938, td=3D0xfffff80006eca740) at /usr/src/sys/sys/file.h:370 #36 kern_ioctl (td=3Dtd@entry=3D0xfffff80006eca740, fd=3D, com=3Dcom@entry=3D2157462540, data=3D0xfffffe00acbb9ed8 "", data@entry=3D0xfffff80024647a00 "") at /usr/src/sys/kern/sys_generic.c:807 #37 0xffffffff80bac81f in sys_ioctl (td=3D, uap=3D0xfffff80006ecab40) at /usr/src/sys/kern/sys_generic.c:715 #38 0xffffffff810252c5 in syscallenter (td=3D0xfffff80006eca740) at /usr/src/sys/amd64/amd64/../../kern/subr_syscall.c:191 #39 amd64_syscall (td=3D0xfffff80006eca740, traced=3D0) at /usr/src/sys/amd64/amd64/trap.c:1194 #40 #41 0x00003925bf8095fa in ?? () Backtrace stopped: Cannot access memory at address 0x3925bccb1db8 What can I do to gather more information or further investigate? --=20 You are receiving this mail because: You are the assignee for the bug.=