6.0 Release kernel panic - page fault
Abhi
soman.abhijit at gmail.com
Fri Dec 23 09:36:43 PST 2005
Hello,
Thanks for your reply. Actually i experienced page faults mostly
when browsing web mostly from linux opera. So i installed firefox from
ports. It didnt cause any panic until yeserday, when it caused the
crash. And after that system panic occured while booting. Well i don't
know if a particular application is causing system panic but most
panics occured when i was using net.
Can you tell me if there are any other options for kernel
configuration file which can make the debugging mor verbose? I only
used -g option in my kernel config.
I'm attaching another crash dump which occurred last night when i was
browsing net.
Greetings,
Abhijit
------------
kernel dump
Unread portion of the kernel message buffer:
panic: clist reservation botch
Uptime: 1h4m51s
Dumping 510 MB (2 chunks)
chunk 0: 1MB (159 pages) ... ok
chunk 1: 510MB (130528 pages) 494 478 462 446 430 414 398 382 366 350 334 318
302 286 270 254 238 222 206 190 174 158 142 126 110 94 78 62 46 30 14
#0 doadump () at pcpu.h:165
165 __asm __volatile("movl %%fs:0,%0" : "=r" (td));
(kgdb) where
#0 doadump () at pcpu.h:165
#1 0xc04c524a in boot (howto=260) at /usr/src/sys/kern/kern_shutdown.c:399
#2 0xc04c54e0 in panic (fmt=0xc06266e5 "clist reservation botch")
at /usr/src/sys/kern/kern_shutdown.c:555
#3 0xc04f90be in b_to_q (
src=0xc18318ae "ept: */*\r\nAccept-Language: en-us,en;q=0.5\r\nAccept-Encodi
ng: gzip,deflate\r\nAccept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7\r\nKeep-Alive
: 300\r\nConnection: keep-alive\r\nReferer: http://www.hi5.com/friend/di"..., am
ount=704, clistp=0xc1669838) at /usr/src/sys/kern/tty_subr.c:104
#4 0xc0539e44 in pppasyncstart (sc=0xc1a3c400)
at /usr/src/sys/net/ppp_tty.c:582
#5 0xc053539e in pppoutput (ifp=0xc1636400, m0=0xc171cb00, dst=0xc1b64310,
rtp=0xc17dbb58) at /usr/src/sys/net/if_ppp.c:961
#6 0xc054be9c in ip_output (m=0xc171cb00, opt=0xc1636400, ro=0xd5440bb0,
flags=0, imo=0x0, inp=0xc1814a8c) at /usr/src/sys/netinet/ip_output.c:776
#7 0xc0554bfa in tcp_output (tp=0xc1bddac8)
at /usr/src/sys/netinet/tcp_output.c:1080
#8 0xc055a661 in tcp_timer_rexmt (xtp=0xc1bddac8)
at /usr/src/sys/netinet/tcp_timer.c:579
#9 0xc04d12cf in softclock (dummy=0x0)
at /usr/src/sys/kern/kern_timeout.c:290
#10 0xc04b0e41 in ithread_loop (arg=0xc1581480)
at /usr/src/sys/kern/kern_intr.c:547
#11 0xc04b00c8 in fork_exit (callout=0xc04b0ce8 <ithread_loop>,
at /usr/src/sys/kern/kern_shutdown.c:555
#3 0xc04f90be in b_to_q (
src=0xc18318ae "ept: */*\r\nAccept-Language: en-us,en;q=0.5\r\nAccept-Encodi
ng: gzip,deflate\r\nAccept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7\r\nKeep-Alive
: 300\r\nConnection: keep-alive\r\nReferer: http://www.hi5.com/friend/di"..., am
ount=704, clistp=0xc1669838) at /usr/src/sys/kern/tty_subr.c:104
#4 0xc0539e44 in pppasyncstart (sc=0xc1a3c400)
at /usr/src/sys/net/ppp_tty.c:582
#5 0xc053539e in pppoutput (ifp=0xc1636400, m0=0xc171cb00, dst=0xc1b64310,
rtp=0xc17dbb58) at /usr/src/sys/net/if_ppp.c:961
#6 0xc054be9c in ip_output (m=0xc171cb00, opt=0xc1636400, ro=0xd5440bb0,
flags=0, imo=0x0, inp=0xc1814a8c) at /usr/src/sys/netinet/ip_output.c:776
#7 0xc0554bfa in tcp_output (tp=0xc1bddac8)
at /usr/src/sys/netinet/tcp_output.c:1080
#8 0xc055a661 in tcp_timer_rexmt (xtp=0xc1bddac8)
at /usr/src/sys/netinet/tcp_timer.c:579
#9 0xc04d12cf in softclock (dummy=0x0)
at /usr/src/sys/kern/kern_timeout.c:290
#10 0xc04b0e41 in ithread_loop (arg=0xc1581480)
at /usr/src/sys/kern/kern_intr.c:547
#11 0xc04b00c8 in fork_exit (callout=0xc04b0ce8 <ithread_loop>,
arg=0xc1581480, frame=0xd5440d38) at /usr/src/sys/kern/kern_fork.c:789
#12 0xc05ebe2c in fork_trampoline () at /usr/src/sys/i386/i386/exception.s:208
(kgdb) bt full
#0 doadump () at pcpu.h:165
No locals.
#1 0xc04c524a in boot (howto=260) at /usr/src/sys/kern/kern_shutdown.c:399
first_buf_printf = 1
#2 0xc04c54e0 in panic (fmt=0xc06266e5 "clist reservation botch")
at /usr/src/sys/kern/kern_shutdown.c:555
td = (struct thread *) 0xc15cb480
bootopt = 260
newpanic = 0
ap = 0xc15cb480 "0¨\\Á uXÁ"
buf = "clist reservation botch", '\0' <repeats 232 times>
#3 0xc04f90be in b_to_q (
src=0xc18318ae "ept: */*\r\nAccept-Language: en-us,en;q=0.5\r\nAccept-Encodi
ng: gzip,deflate\r\nAccept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7\r\nKeep-Alive
: 300\r\nConnection: keep-alive\r\nReferer: http://www.hi5.com/friend/di"..., am
ount=704, clistp=0xc1669838) at /usr/src/sys/kern/tty_subr.c:104
prev = (struct cblock *) 0x0
cblockp = (struct cblock *) 0xc1af9380
firstbyte = 0xc0c293c0 " \223ÂÀ`\224ÂÀÄÉdÀÀ)bÀz\acÀ"
lastbyte = 0x3 <Address 0x3 out of bounds>
startmask = 0 '\0'
endmask = 0 '\0'
startbit = 0
endbit = -1067774825
num_between = 0
numc = 108
#4 0xc0539e44 in pppasyncstart (sc=0xc1a3c400)
at /usr/src/sys/net/ppp_tty.c:582
tp = (struct tty *) 0xc1669800
m = (struct mbuf *) 0xc171bd00
len = 878
start = (
u_char *) 0xc1831800 "GET /w/get.media?sid=16683&m=1&tp=5&d=j&t=s HTTP/1.1\r
\nHost: media.fastclick.net\r\nUser-Agent: Mozilla/5.0 (X11; U; FreeBSD i386; en
-US; rv:1.8) Gecko/20051219 Firefox/1.5\r\nAccept: */*\r\nAccept-Language:"...
stop = (u_char *) 0xc1831b6e "\001"
cp = (u_char *) 0x0
n = 878
ndone = 0
done = 1
idle = 0
#5 0xc053539e in pppoutput (ifp=0xc1636400, m0=0xc171cb00, dst=0xc1b64310,
rtp=0xc17dbb58) at /usr/src/sys/net/if_ppp.c:961
sc = (struct ppp_softc *) 0xc1a3c400
protocol = 33
address = 255
control = 3
cp = (u_char *) 0x0
error = -1050450696
ip = (struct ip *) 0x0
ifq = (struct ifqueue *) 0xc16364f8
mode = NPMODE_PASS
len = 922
#6 0xc054be9c in ip_output (m=0xc171cb00, opt=0xc1636400, ro=0xd5440bb0,
flags=0, imo=0x0, inp=0xc1814a8c) at /usr/src/sys/netinet/ip_output.c:776
ip = (struct ip *) 0xc171cb40
ifp = (struct ifnet *) 0xc1636400
m0 = (struct mbuf *) 0xc171cb40
hlen = 20
len = -716960796
error = 0
dst = (struct sockaddr_in *) 0xc1b64310
ia = (struct in_ifaddr *) 0xc1a8fd00
isbroadcast = 0
sw_csum = 1
iproute = {ro_rt = 0xc17dbb58, ro_dst = {sa_len = 16 '\020',
sa_family = 2 '\002',
sa_data = "\000\000Í´V\016\000\000\000\000\000\000\000"}}
odst = {s_addr = 1}
#7 0xc0554bfa in tcp_output (tp=0xc1bddac8)
at /usr/src/sys/netinet/tcp_output.c:1080
so = (struct socket *) 0xc1b5fb20
len = 878
recwin = 65535
sendwin = -1049506988
off = 0
flags = 24
error = 0
m = (struct mbuf *) 0xc171cb00
ip = (struct ip *) 0xc171cb40
th = (struct tcphdr *) 0xc171cb54
opt = "p\fDÕ¾eMÀ\000ófÀT\201µÁ\000\000\000\000\200\fDÕífMÀ\203\000\000\0
00£dMÀ\200´\\Á"
ipoptlen = 0
optlen = 0
hdrlen = 40
idle = 0
sendalot = 0
i = -1068669610
sack_rxmit = 0
sack_bytes_rxmt = 0
p = (struct sackhole *) 0x0
ip6 = (struct ip6_hdr *) 0x0
isipv6 = 0
#8 0xc055a661 in tcp_timer_rexmt (xtp=0xc1bddac8)
so = (struct socket *) 0xc1b5fb20
len = 878
recwin = 65535
sendwin = -1049506988
off = 0
flags = 24
error = 0
m = (struct mbuf *) 0xc171cb00
ip = (struct ip *) 0xc171cb40
th = (struct tcphdr *) 0xc171cb54
opt = "p\fDÕ¾eMÀ\000ófÀT\201µÁ\000\000\000\000\200\fDÕífMÀ\203\000\000\0
00£dMÀ\200´\\Á"
ipoptlen = 0
optlen = 0
hdrlen = 40
idle = 0
sendalot = 0
i = -1068669610
sack_rxmit = 0
sack_bytes_rxmt = 0
p = (struct sackhole *) 0x0
ip6 = (struct ip6_hdr *) 0x0
isipv6 = 0
#8 0xc055a661 in tcp_timer_rexmt (xtp=0xc1bddac8)
at /usr/src/sys/netinet/tcp_timer.c:579
tp = (struct tcpcb *) 0xc1bddac8
rexmt = 0
headlocked = 0
inp = (struct inpcb *) 0xc1814a8c
#9 0xc04d12cf in softclock (dummy=0x0)
at /usr/src/sys/kern/kern_timeout.c:290
c_func = (void (*)(void *)) 0xc055a2f4 <tcp_timer_rexmt>
c_arg = (void *) 0xc1bddac8
c_mtx = (struct mtx *) 0x0
c_flags = 22
c = (struct callout *) 0x0
bucket = (struct callout_tailq *) 0xcbb66670
curticks = 3891132
steps = 0
depth = 1
mpcalls = 1
mtxcalls = 0
gcalls = 0
wakeup_cookie = 0
#10 0xc04b0e41 in ithread_loop (arg=0xc1581480)
at /usr/src/sys/kern/kern_intr.c:547
ithd = (struct ithd *) 0xc1581480
ih = (struct intrhand *) 0xc157b2c0
c = (struct callout *) 0x0
bucket = (struct callout_tailq *) 0xcbb66670
curticks = 3891132
steps = 0
depth = 1
mpcalls = 1
mtxcalls = 0
gcalls = 0
wakeup_cookie = 0
#10 0xc04b0e41 in ithread_loop (arg=0xc1581480)
at /usr/src/sys/kern/kern_intr.c:547
ithd = (struct ithd *) 0xc1581480
ih = (struct intrhand *) 0xc157b2c0
---Type <return> to continue, or q <return> to quit---
td = (struct thread *) 0xc15cb480
p = (struct proc *) 0xc15ca830
count = 0
warned = 0
#11 0xc04b00c8 in fork_exit (callout=0xc04b0ce8 <ithread_loop>,
arg=0xc1581480, frame=0xd5440d38) at /usr/src/sys/kern/kern_fork.c:789
p = (struct proc *) 0xc15ca830
td = (struct thread *) 0x0
#12 0xc05ebe2c in fork_trampoline () at /usr/src/sys/i386/i386/exception.s:208
No locals.
On 23 Dec 2005 09:49:58 -0500, Lowell Gilbert
<freebsd-questions-local at be-well.ilk.org> wrote:
> Abhi <soman.abhijit at gmail.com> writes:
>
> > I'm experiencing kernel panics with 6.0 Release. I did a fresh
> > install of 6.0 Release after playing with some linux distros and
> > Freebsd 5.4 Release. The only problem i had was due to faulty RAM. I
> > replaced the RAM and had no problems. But for somedays my system has
> > started to panic randomly. All the crash dumps i got show something
> > wrong in the file pcpu.h at line 165.
>
> That just means it's dumping core. You need to look a little
> deeper for why it's doing so.
>
> > I'm ttaching my custom kernel configuration file and one crash dump i
> > got with kgdb. I hope someone can tell me why this's happening, and if
> > this's freebsd problem or hardware problem.
>
> In this case, it's smashing its own stack while doing a bcopy()
> (or some related function). If that's not consistent, this
> probably *is* a hardware problem. If it's dependable, then maybe
> not. Try to track down commonalities in what the system is doing
> when it panics. If possible.
>
--
If Karl, instead of writing a lot about Capital, had made a lot of
Capital, it would have been much better.
-- Karl Marx's Mother
More information about the freebsd-questions
mailing list