From nobody Wed Nov 22 06:41:19 2023 X-Original-To: wireless@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SZs8b2gQ8z51y0J for ; Wed, 22 Nov 2023 06:41:19 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SZs8Z6mtyz4Sp8 for ; Wed, 22 Nov 2023 06:41:18 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1700635278; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=+lIUAfpw0H9606d5B5xuipEc7sVN2tQrgXJ7R6Yil6M=; b=s5II7cGalLvoXDArULqfgiJ9p7FnaOFElYAL/sWASMw/1xdBCXdO34+VfPDQlWGpqqSYdA f3VHdeaatHNTMVWzgsgufTe97jcS2MoPWEMk/UsVBiVl0LqsDUC9LpOwnz6AIRK8sRhBid ccaULPLvWMHxbM9h2JhBQKS1lZOyjgxwwbdHxGDhB/RC/mNZwsIBGxsK3QPDaJS/Otwfdg 8dEo4nhqCTyFkE0/p1dQQdH28DjSzQkcmQoIZvsybDXVu9MuojfpTYw+riq8bzywU9O5+V fO4HxGkXDCFCr8XGoayx4rkndj+18HUC5PkHAgiiDzuUWBG44KbbUfkQ2P+CrQ== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1700635279; a=rsa-sha256; cv=none; b=pPaz+FJcMmqZnijqSiYcirnhEEEk9a3FTWkzSPm5nyg0xfaEr6QfPe2wZe83CWindVRl0i 1rHEveVpta+oUejYk/yrgVdGmWTBJkNNZUFnO6KgqRpqVutI3wzgSJXTRlNz5TcqsKbGtj +71CGylMJgClkMCAC2eP6aQdtxOq9YRof9Cc4KKgK/RvL4qXEqvGHxE+pzJS6nMXeTWsR1 zyr04Cvh7iG+1xPOhGGefIByHiqD7kGb8Wox2Tr84J876V9W5MyE1wMWCnDF9Idazk1Z8Q KDpAd+V0U2WxLRvERp4qN63Oh+L8MysR+hK157DhbGXLoF8T20PI7szLUmxWCQ== Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2610:1c1:1:606c::50:1d]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4SZs8Z5rtxz17B6 for ; Wed, 22 Nov 2023 06:41:18 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org ([127.0.1.5]) by kenobi.freebsd.org (8.15.2/8.15.2) with ESMTP id 3AM6fIbo030963 for ; Wed, 22 Nov 2023 06:41:18 GMT (envelope-from bugzilla-noreply@freebsd.org) Received: (from www@localhost) by kenobi.freebsd.org (8.15.2/8.15.2/Submit) id 3AM6fITH030962 for wireless@FreeBSD.org; Wed, 22 Nov 2023 06:41:18 GMT (envelope-from bugzilla-noreply@freebsd.org) X-Authentication-Warning: kenobi.freebsd.org: www set sender to bugzilla-noreply@freebsd.org using -f From: bugzilla-noreply@freebsd.org To: wireless@FreeBSD.org Subject: [Bug 275255] iwlwifi: panic after iwlwifi0: lkpi_iv_newstate: error -5 during state transition 5 (RUN) -> 0 (INIT) Date: Wed, 22 Nov 2023 06:41:19 +0000 X-Bugzilla-Reason: AssignedTo X-Bugzilla-Type: new X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Base System X-Bugzilla-Component: wireless X-Bugzilla-Version: CURRENT X-Bugzilla-Keywords: X-Bugzilla-Severity: Affects Some People X-Bugzilla-Who: delphij@FreeBSD.org X-Bugzilla-Status: New X-Bugzilla-Resolution: X-Bugzilla-Priority: --- X-Bugzilla-Assigned-To: wireless@FreeBSD.org X-Bugzilla-Flags: X-Bugzilla-Changed-Fields: bug_id short_desc product version rep_platform op_sys bug_status bug_severity priority component assigned_to reporter Message-ID: Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated List-Id: Discussions List-Archive: https://lists.freebsd.org/archives/freebsd-wireless List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-wireless@freebsd.org X-BeenThere: freebsd-wireless@freebsd.org MIME-Version: 1.0 https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D275255 Bug ID: 275255 Summary: iwlwifi: panic after iwlwifi0: lkpi_iv_newstate: error -5 during state transition 5 (RUN) -> 0 (INIT) Product: Base System Version: CURRENT Hardware: amd64 OS: Any Status: New Severity: Affects Some People Priority: --- Component: wireless Assignee: wireless@FreeBSD.org Reporter: delphij@FreeBSD.org (This is a laptop running with fresh -CURRENT; the device was: iwlwifi0: mem 0xecc00000-0xecc01fff at device 0.0 on pci3 iwlwifi0: Detected crf-id 0xbadcafe, cnv-id 0x10 wfpm id 0x80000000 iwlwifi0: PCI dev 24fd/0010, rev=3D0x230, rfid=3D0xd55555d5 iwlwifi0: successfully loaded firmware image 'iwlwifi-8265-36.ucode' iwlwifi0: loaded firmware version 36.ca7b901d.0 8265-36.ucode op_mode iwlmvm iwlwifi0: Detected Intel(R) Dual Band Wireless AC 8265, REV=3D0x230 The kernel is built with WITNESS / INVARIANT enabled. It seems that the 802.11 stack was trying to transit from RUN to INIT, and = the driver returned -EIO because firmware told it that ADD_STA_MODIFY_NON_EXISTING_STA (=3D0x8) in iwl_mvm_drain_sta(). ) Tue Nov 21 22:33:33 PST 2023 FreeBSD p51.home.us.delphij.net 15.0-CURRENT FreeBSD 15.0-CURRENT #1 main-n266520-f930dac6d584: Mon Nov 20 15:48:41 PST 2023=20=20=20=20 delphij@p51.home.us.delphij.net:/usr/obj/usr/src/amd64.amd64/sys/GENERIC a= md64 panic: INIT state change failed GNU gdb (GDB) 13.2 [GDB v13.2 for FreeBSD] Copyright (C) 2023 Free Software Foundation, Inc. License GPLv3+: GNU GPL version 3 or later This is free software: you are free to change and redistribute it. There is NO WARRANTY, to the extent permitted by law. Type "show copying" and "show warranty" for details. This GDB was configured as "x86_64-portbld-freebsd15.0". Type "show configuration" for configuration details. For bug reporting instructions, please see: . Find the GDB manual and other documentation resources online at: . For help, type "help". Type "apropos word" to search for commands related to "word"... Reading symbols from /boot/kernel/kernel... Reading symbols from /usr/lib/debug//boot/kernel/kernel.debug... Unread portion of the kernel message buffer: iwlwifi0: linuxkpi_ieee80211_connection_loss: vif 0xfffffe01773abc80 vap 0xfffffe01773ab010 state RUN <6>wlan0: link state changed to DOWN <118>Nov 21 22:32:11 p51 wpa_supplicant[423]: ioctl[SIOCS80211, op=3D20, va= l=3D0, arg_len=3D7]: Can't assign requested address iwlwifi0: Couldn't drain frames for staid 0, status 0x8 iwlwifi0: lkpi_sta_run_to_init:1954: mo_sta_state(NOTEXIST) failed: -5 iwlwifi0: lkpi_iv_newstate: error -5 during state transition 5 (RUN) -> 0 (INIT) Dumping 2446 out of 32422 MB: (CTRL-C to abort) (CTRL-C to abort) ..1% (CT= RL-C to abort) (CTRL-C to abort) (CTRL-C to abort) ..11%..21%..31%..41%..51%..61%..71%..81%..91% __curthread () at /usr/src/sys/amd64/include/pcpu_aux.h:57 57 __asm("movq %%gs:%P1,%0" : "=3Dr" (td) : "n" (offsetof(stru= ct pcpu, (kgdb) #0 __curthread () at /usr/src/sys/amd64/include/pcpu_aux.h:57 td =3D #1 doadump (textdump=3D0) at /usr/src/sys/kern/kern_shutdown.c:405 error =3D 0 coredump =3D #2 0xffffffff85dee143 in vt_kms_postswitch () from /boot/modules/drm.ko No symbol table info available. #3 0xffffffff8099ac81 in vt_window_switch (vw=3D0xfffff8000233bd80,=20 vw@entry=3D0xffffffff816a9c98 ) at /usr/src/sys/dev/vt/vt_core.c:612 vd =3D 0xffffffff816a9de8 curvw =3D 0xfffff80006dfcd80 kbd =3D #4 0xffffffff8099bfdf in vtterm_cngrab (tm=3D,=20 tm@entry=3D) at /usr/src/sys/dev/vt/vt_core.c:1863 vw =3D 0xffffffff816a9c98 vd =3D 0xffffffff816a9de8 #5 0xffffffff80aeb106 in cngrab () at /usr/src/sys/kern/kern_cons.c:385 cnd =3D 0xffffffff8196d7e0 cn =3D #6 0xffffffff80b5bd7f in vpanic ( fmt=3D0xffffffff8120c4c9 "INIT state change failed",=20 ap=3Dap@entry=3D0xffffffff82761dd0) at /usr/src/sys/kern/kern_shutdown.= c:942 buf =3D "INIT state change failed", '\000' __pc =3D __pc =3D __pc =3D other_cpus =3D {__bits =3D {127, 0 }} td =3D 0xfffff80001f31000 bootopt =3D 256 newpanic =3D #7 0xffffffff80b5bbf3 in panic (fmt=3D) at /usr/src/sys/kern/kern_shutdown.c:894 ap =3D {{gp_offset =3D 8, fp_offset =3D 48,=20 overflow_arg_area =3D 0xffffffff82761e00,=20 reg_save_area =3D 0xffffffff82761da0}} #8 0xffffffff80d104e1 in ieee80211_newstate_cb (xvap=3D0xfffffe01773ab010,= =20 npending=3D) at /usr/src/sys/net80211/ieee80211_proto.c:= 2552 vap =3D 0xfffffe01773ab010 ic =3D arg =3D 0 ostate =3D IEEE80211_S_RUN rc =3D -5 nstate =3D #9 0xffffffff80bc1f8b in taskqueue_run_locked ( queue=3Dqueue@entry=3D0xfffff800028c6000) at /usr/src/sys/kern/subr_taskqueue.c:512 et =3D {et_link =3D {tqe_next =3D 0x0, tqe_prev =3D 0x8},=20 et_td =3D 0xffffffff811ba967, et_section =3D {bucket =3D 0},=20 et_old_priority =3D 0 '\000'} tb =3D {tb_running =3D 0xfffffe01773ab320, tb_seq =3D 25,=20 tb_canceling =3D false, tb_link =3D {le_next =3D 0x0,=20 le_prev =3D 0xfffff800028c6010}} in_net_epoch =3D false task =3D 0xfffffe01773ab320 pending =3D 1 #10 0xffffffff80bc3043 in taskqueue_thread_loop ( arg=3Darg@entry=3D0xfffffe0176a55110) at /usr/src/sys/kern/subr_taskqueue.c:824 tqp =3D tq =3D 0xfffff800028c6000 #11 0xffffffff80b11372 in fork_exit ( callout=3D0xffffffff80bc2f70 ,=20 arg=3D0xfffffe0176a55110, frame=3D0xffffffff82761f40) at /usr/src/sys/kern/kern_fork.c:1160 __pc =3D __pc =3D td =3D 0xfffff80001f31000 p =3D 0xffffffff8196c4c0 dtd =3D #12 No locals. #13 0x00001dd895cec5ba in ?? () No symbol table info available. Backtrace stopped: Cannot access memory at address 0x1dd89daf8f48 (kgdb) --=20 You are receiving this mail because: You are the assignee for the bug.=