From nobody Sun Aug 20 21:32:54 2023 X-Original-To: wireless@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4RTTNk4x58z4qlSF for ; Sun, 20 Aug 2023 21:32:54 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4RTTNk26WXz4MPS for ; Sun, 20 Aug 2023 21:32:54 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1692567174; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=1yeaFPN0EHVR3/G8JQ0T8SzJInVBXj7FBZCFfx6gw5o=; b=sREnzsmuKFTuPRrTFvxYQr2ut+nS2Zls2QXFhQF7Zws7ISMb1fad3BghHWkhmEYUupjsXx AU5bCmPnSPYeRd0d3XleUtaldpigjD9XWKomEWs+1XqXNMIzLlUVWVKCewWsaDDnt71/k6 ojDO6TRXPmrAehGBD9dzlLlvlXZLgeZtoYqxyQZP/IfDvYor00wfJS4yLZdfYdpeGr7r00 Y1UCdcSy07eJcMQkffnPVXodAcxSWTcZDnCkyEq4ThMAW8HUqCUantuXGyx7ZKCPPmCC85 q4FgvI2SA2kESu166cdChgPcmt6WiFmDjJEeiQJ4frTHHY0zSH/1K33ANcUegg== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1692567174; a=rsa-sha256; cv=none; b=f2ebwzdN9Rb90uSqOSPRRNbQ/PVki4P2XjH9vCVK2t846qbD5xcaAqmEniMnWB3Dh+PKTx yOd038MnCHvgK/TFadkHvLA0i7oO982RUSpzTwgXypJl0CfBOcilOH/VAWO6e6NMFWkTyo LpRk7B91Ojc3sXTamjWwmysGzEw/4ob9zC2Y0eW0VyU3Qcg8GX/eWJHN0p0vJtxxnBX9l8 8fWab4PuqDjAEqyBouIk8PlI4GRy9Y3ON8FPAtBlva6f9S7M29nOAkGBWnI273av1+0eVj kHZjoZePItvN1BFTAWaWLGOppsHmqJrb9tzAskleC2s3T9L/ioE1YtUiZ+ltvw== ARC-Authentication-Results: i=1; mx1.freebsd.org; none Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2610:1c1:1:606c::50:1d]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4RTTNk19FVzvTx for ; Sun, 20 Aug 2023 21:32:54 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org ([127.0.1.5]) by kenobi.freebsd.org (8.15.2/8.15.2) with ESMTP id 37KLWsVQ054448 for ; Sun, 20 Aug 2023 21:32:54 GMT (envelope-from bugzilla-noreply@freebsd.org) Received: (from www@localhost) by kenobi.freebsd.org (8.15.2/8.15.2/Submit) id 37KLWsCG054447 for wireless@FreeBSD.org; Sun, 20 Aug 2023 21:32:54 GMT (envelope-from bugzilla-noreply@freebsd.org) X-Authentication-Warning: kenobi.freebsd.org: www set sender to bugzilla-noreply@freebsd.org using -f From: bugzilla-noreply@freebsd.org To: wireless@FreeBSD.org Subject: [Bug 273250] iwm0 panics on FreeBSD 14.0-CURRENT #0 main-n261772-3a3c9242739e Date: Sun, 20 Aug 2023 21:32:54 +0000 X-Bugzilla-Reason: AssignedTo X-Bugzilla-Type: new X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Base System X-Bugzilla-Component: wireless X-Bugzilla-Version: CURRENT X-Bugzilla-Keywords: X-Bugzilla-Severity: Affects Only Me X-Bugzilla-Who: vidwer+fbsdbugs@gmail.com X-Bugzilla-Status: New X-Bugzilla-Resolution: X-Bugzilla-Priority: --- X-Bugzilla-Assigned-To: wireless@FreeBSD.org X-Bugzilla-Flags: X-Bugzilla-Changed-Fields: bug_id short_desc product version rep_platform op_sys bug_status bug_severity priority component assigned_to reporter Message-ID: Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated List-Id: Discussions List-Archive: https://lists.freebsd.org/archives/freebsd-wireless List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-wireless@freebsd.org X-BeenThere: freebsd-wireless@freebsd.org MIME-Version: 1.0 https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D273250 Bug ID: 273250 Summary: iwm0 panics on FreeBSD 14.0-CURRENT #0 main-n261772-3a3c9242739e Product: Base System Version: CURRENT Hardware: Any OS: Any Status: New Severity: Affects Only Me Priority: --- Component: wireless Assignee: wireless@FreeBSD.org Reporter: vidwer+fbsdbugs@gmail.com An excerpt from /var/crash/core.txt.0: iwm0: iwm_bring_down_firmware: Failed to remove station: 35 iwm0: iwm_mac_ctxt_send_cmd: Failed to send MAC context (action:2): 35 iwm0: iwm_bring_down_firmware: Failed to change mac context: 35 iwm0: Failed to remove station. Id=3D0 iwm0: iwm_bring_down_firmware: Failed to remove station id: 35 iwm0: iwm_update_quotas: Failed to send quota: 35 iwm0: iwm_bring_down_firmware: Failed to update PHY quota: 35 Fatal trap 12: page fault while in kernel mode cpuid =3D 3; apic id =3D 13 fault virtual address =3D 0xfffff80280000000 fault code =3D supervisor read data, page not present instruction pointer =3D 0x20:0xffffffff804a669e stack pointer =3D 0x28:0xfffffe008e50e970 frame pointer =3D 0x28:0xfffffe008e50e9c0 code segment =3D base 0x0, limit 0xfffff, type 0x1b =3D DPL 0, pres 1, long 1, def32 0, gran 1 processor eflags =3D interrupt enabled, resume, IOPL =3D 0 current process =3D 12 (irq27: iwm0) rdi: cb19a6d2 rsi: a2 rdx: 18f2e93d rcx: 8dc4fc2c r8: ea r9: fffff80280000004 rax: 14d77bdf rbx: 5c268c7 rbp: fffffe008e50e9c0 r10: 5d r11: a4 r12: 63 r13: 93 r14: 46 r15: a71c trap number =3D 12 panic: page fault cpuid =3D 3 time =3D 1692562496 KDB: stack backtrace: db_trace_self_wrapper() at db_trace_self_wrapper+0x2b/frame 0xfffffe008e50e= 730 vpanic() at vpanic+0x152/frame 0xfffffe008e50e780 panic() at panic+0x43/frame 0xfffffe008e50e7e0 trap_fatal() at trap_fatal+0x409/frame 0xfffffe008e50e840 trap_pfault() at trap_pfault+0xab/frame 0xfffffe008e50e8a0 calltrap() at calltrap+0x8/frame 0xfffffe008e50e8a0 --- trap 0xc, rip =3D 0xffffffff804a669e, rsp =3D 0xfffffe008e50e970, rbp = =3D 0xfffffe008e50e9c0 --- rijndaelEncrypt() at rijndaelEncrypt+0x21e/frame 0xfffffe008e50e9c0 ccmp_decap() at ccmp_decap+0x427/frame 0xfffffe008e50ead0 ieee80211_crypto_decap() at ieee80211_crypto_decap+0x120/frame 0xfffffe008e50eb20 sta_input() at sta_input+0x565/frame 0xfffffe008e50ebd0 ieee80211_input_mimo() at ieee80211_input_mimo+0x203/frame 0xfffffe008e50ec= 80 iwm_rx_mpdu() at iwm_rx_mpdu+0x70b/frame 0xfffffe008e50ed60 iwm_intr() at iwm_intr+0xd52/frame 0xfffffe008e50ee60 ithread_loop() at ithread_loop+0x276/frame 0xfffffe008e50eef0 fork_exit() at fork_exit+0x80/frame 0xfffffe008e50ef30 fork_trampoline() at fork_trampoline+0xe/frame 0xfffffe008e50ef30 --- trap 0, rip =3D 0, rsp =3D 0, rbp =3D 0 --- KDB: enter: panic __curthread () at /usr/src/sys/amd64/include/pcpu_aux.h:59 warning: Source file is more recent than executable. 59 __asm("movq %%gs:%P1,%0" : "=3Dr" (td) : "n" (offsetof(stru= ct pcpu, (kgdb) #0 __curthread () at /usr/src/sys/amd64/include/pcpu_aux.h:59 #1 doadump (textdump=3Dtextdump@entry=3D0) at /usr/src/sys/kern/kern_shutdown.c:407 #2 0xffffffff804b376a in db_dump (dummy=3D,=20 dummy2=3D, dummy3=3D, dummy4=3D) at /usr/src/sys/ddb/db_command.c:593 #3 0xffffffff804b356d in db_command (last_cmdp=3D,=20 cmd_table=3D, dopager=3Dtrue) at /usr/src/sys/ddb/db_command.c:506 #4 0xffffffff804b323d in db_command_loop () at /usr/src/sys/ddb/db_command.c:553 #5 0xffffffff804b68f6 in db_trap (type=3D, code=3D) at /usr/src/sys/ddb/db_main.c:270 #6 0xffffffff80c3ccee in kdb_trap (type=3Dtype@entry=3D3, code=3Dcode@entr= y=3D0,=20 tf=3Dtf@entry=3D0xfffffe008e50e670) at /usr/src/sys/kern/subr_kdb.c:745 #7 0xffffffff810e26a6 in trap (frame=3D0xfffffe008e50e670) at /usr/src/sys/amd64/amd64/trap.c:610 #8 #9 kdb_enter (why=3D, msg=3D) at /usr/src/sys/kern/subr_kdb.c:509 #10 0xffffffff80bee153 in vpanic (fmt=3D,=20 ap=3Dap@entry=3D0xfffffe008e50e7c0) at /usr/src/sys/kern/kern_shutdown.= c:960 #11 0xffffffff80bedf13 in panic ( fmt=3D0xffffffff81e852f0 "q\247\035\201\377\377\377\377") at /usr/src/sys/kern/kern_shutdown.c:896 #12 0xffffffff810e2b39 in trap_fatal (frame=3D0xfffffe008e50e8b0,=20 eva=3D18446735288353947648) at /usr/src/sys/amd64/amd64/trap.c:954 #13 0xffffffff810e2beb in trap_pfault (frame=3D0xfffffe008e50e8b0,=20 usermode=3Dfalse, signo=3D, ucode=3D) at /usr/src/sys/amd64/amd64/trap.c:762 #14 #15 rijndaelEncrypt (rk=3D0xfffff8027ffffff8, Nr=3D,=20 pt=3Dpt@entry=3D0xfffffe008e50ea50 "\024\202\372=C9=80\232s6 >\244]\350\247\317Gb[~nR=C3=B5\234\061U\037\ng\020\327\\\001\003\304\353\07= 1R\240\262",=20 ct=3Dct@entry=3D0xfffffe008e50ea50 "\024\202\372=C9=80\232s6 >\244]\350\247\317Gb[~nR=C3=B5\234\061U\037\ng\020\327\\\001\003\304\353\07= 1R\240\262") at /usr/src/sys/crypto/rijndael/rijndael-alg-fst.c:1000 #16 0xffffffff804a7c77 in rijndael_encrypt (ctx=3Dctx@entry=3D0xfffff8010de= 2e410,=20 src=3D0x18f2e93d ,=20 src@entry=3D0xfffffe008e50ea50 "\024\202\372=C9=80\232s6 >\244]\350\247\317Gb[~nR=C3=B5\234\061U\037\ng\020\327\\\001\003\304\353\07= 1R\240\262",=20 dst=3D0x8dc4fc2c ,=20 dst@entry=3D0xfffffe008e50ea50 "\024\202\372=C9=80\232s6 >\244]\350\247\317Gb[~nR=C3=B5\234\061U\037\ng\020\327\\\001\003\304\353\07= 1R\240\262") at /usr/src/sys/crypto/rijndael/rijndael-api.c:58 #17 0xffffffff80d67257 in ccmp_decrypt (key=3D0xfffffe00c99ad160, pn=3D2686= 165,=20 m=3D0xfffff80014937700, hdrlen=3D) at /usr/src/sys/net80211/ieee80211_crypto_ccmp.c:623 #18 ccmp_decap (k=3D0xfffffe00c99ad160, m=3D0xfffff80014937700,=20 hdrlen=3D) at /usr/src/sys/net80211/ieee80211_crypto_ccmp.c:284 #19 0xffffffff80d661e0 in ieee80211_crypto_decap ( ni=3Dni@entry=3D0xfffffe00c99ad000, m=3Dm@entry=3D0xfffff80014937700, h= drlen=3D26,=20 key=3Dkey@entry=3D0xfffffe008e50eb60) at /usr/src/sys/net80211/ieee80211_crypto.c:684 #20 0xffffffff80da1d15 in sta_input (ni=3D0xfffffe00c99ad000,=20 m=3D0xfffff80014937700, rxs=3D, rssi=3D,= =20 nf=3D) at /usr/src/sys/net80211/ieee80211_sta.c:782 #21 0xffffffff80d7c9e3 in ieee80211_input_mimo ( ni=3Dni@entry=3D0xfffffe00c99ad000, m=3Dm@entry=3D0xfffff80014937700) at /usr/src/sys/net80211/ieee80211_input.c:102 #22 0xffffffff82fa8c1b in iwm_rx_mpdu (sc=3Dsc@entry=3D0xfffffe00c5428000,= =20 m=3D0xfffff80014937700, offset=3Doffset@entry=3D2304, stolen=3D) at /usr/src/sys/dev/iwm/if_iwm.c:3404 #23 0xffffffff82fa73e2 in iwm_handle_rxb (m=3D0xfffff8019aa24d00,=20 sc=3D) at /usr/src/sys/dev/iwm/if_iwm.c:5333 #24 iwm_notif_intr (sc=3D) at /usr/src/sys/dev/iwm/if_iwm.c:= 5612 #25 iwm_intr (arg=3D) at /usr/src/sys/dev/iwm/if_iwm.c:5757 #26 0xffffffff80ba8126 in intr_event_execute_handlers (ie=3D0xfffff80003c23= 200,=20 p=3D) at /usr/src/sys/kern/kern_intr.c:1207 #27 ithread_execute_handlers (ie=3D0xfffff80003c23200, p=3D) at /usr/src/sys/kern/kern_intr.c:1220 #28 ithread_loop (arg=3Darg@entry=3D0xfffff80003981480) at /usr/src/sys/kern/kern_intr.c:1308 #29 0xffffffff80ba45c0 in fork_exit ( callout=3D0xffffffff80ba7eb0 , arg=3D0xfffff80003981480,= =20 frame=3D0xfffffe008e50ef40) at /usr/src/sys/kern/kern_fork.c:1102 #30 (kgdb) --=20 You are receiving this mail because: You are the assignee for the bug.=