From toread@discordia.pl  Wed Nov 24 14:46:19 2004
Return-Path: <toread@discordia.pl>
Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125])
	by hub.freebsd.org (Postfix) with ESMTP id 37C1F16A4CE
	for <FreeBSD-gnats-submit@freebsd.org>; Wed, 24 Nov 2004 14:46:19 +0000 (GMT)
Received: from discordia.pl (discordia.pl [212.160.154.199])
	by mx1.FreeBSD.org (Postfix) with ESMTP id 3855B43D1D
	for <FreeBSD-gnats-submit@freebsd.org>; Wed, 24 Nov 2004 14:46:18 +0000 (GMT)
	(envelope-from toread@discordia.pl)
Received: from localhost (localhost.discordia.pl [127.0.0.1])
	by discordia.pl (Postfix) with ESMTP id 56CA920B40D
	for <FreeBSD-gnats-submit@freebsd.org>; Wed, 24 Nov 2004 15:46:15 +0100 (CET)
Received: from discordia.pl ([127.0.0.1])
 by localhost (discordia.pl [127.0.0.1]) (amavisd-new, port 10024) with LMTP
 id 01410-03 for <FreeBSD-gnats-submit@freebsd.org>;
 Wed, 24 Nov 2004 15:45:55 +0100 (CET)
Received: by discordia.pl (Postfix, from userid 1001)
	id 5AD2120B409; Wed, 24 Nov 2004 15:45:55 +0100 (CET)
Message-Id: <20041124144555.5AD2120B409@discordia.pl>
Date: Wed, 24 Nov 2004 15:45:55 +0100 (CET)
From: Piotr Gnyp <toread@discordia.pl>
Reply-To: Piotr Gnyp <toread@discordia.pl>
To: FreeBSD-gnats-submit@freebsd.org
Cc:
Subject: system reboots after few hours
X-Send-Pr-Version: 3.113
X-GNATS-Notify:

>Number:         74319
>Category:       kern
>Synopsis:       [smp] system reboots after few hours (5.3)
>Confidential:   no
>Severity:       serious
>Priority:       high
>Responsible:    freebsd-bugs
>State:          closed
>Quarter:        
>Keywords:       
>Date-Required:  
>Class:          sw-bug
>Submitter-Id:   current-users
>Arrival-Date:   Wed Nov 24 14:50:32 GMT 2004
>Closed-Date:    Sun Mar 02 01:08:52 UTC 2008
>Last-Modified:  Sun Mar 02 01:08:52 UTC 2008
>Originator:     Piotr Gnyp
>Release:        FreeBSD 5.3-RELEASE-p1 i386
>Organization:
>Environment:
System: FreeBSD discordia.pl 5.3-RELEASE-p1 FreeBSD 5.3-RELEASE-p1 #6: Tue Nov 23 17:27:29 CET 2004 toread@discordia.pl:/usr/obj/usr/src/sys/OBLIVION i386


dmesg:
Copyright (c) 1992-2004 The FreeBSD Project.
Copyright (c) 1979, 1980, 1983, 1986, 1988, 1989, 1991, 1992, 1993, 1994
        The Regents of the University of California. All rights reserved.
FreeBSD 5.3-RELEASE-p1 #6: Tue Nov 23 17:27:29 CET 2004
    toread@discordia.pl:/usr/obj/usr/src/sys/OBLIVION
Timecounter "i8254" frequency 1193182 Hz quality 0
CPU: Intel Pentium III (999.53-MHz 686-class CPU)
  Origin = "GenuineIntel"  Id = 0x68a  Stepping = 10
  Features=0x387fbff<FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,PN,MMX,FXSR,SSE>
real memory  = 939438080 (895 MB)
avail memory = 912846848 (870 MB)
MPTable: <IBM ENSW xSeries 220 >
FreeBSD/SMP: Multiprocessor System Detected: 2 CPUs
 cpu0 (BSP): APIC ID:  3
 cpu1 (AP): APIC ID:  0
ioapic0: Assuming intbase of 0
ioapic1: Assuming intbase of 16
ioapic1 <Version 1.1> irqs 16-31 on motherboard
ioapic0 <Version 1.1> irqs 0-15 on motherboard
npx0: [FAST]
npx0: <math processor> on motherboard
npx0: INT 16 interface
pcib0: <MPTable Host-PCI bridge> pcibus 0 on motherboard
pci0: <PCI bus> on pcib0
pci0: <display, VGA> at device 1.0 (no driver attached)
fxp0: <Intel 82559 Pro/100 Ethernet> port 0x2200-0x223f mem 0xfea00000-0xfeafffff,0xfeb7f000-0xfeb7ffff irq 27 at device 2.0 on pci0
miibus0: <MII bus> on fxp0
inphy0: <i82555 10/100 media interface> on miibus0
inphy0:  10baseT, 10baseT-FDX, 100baseTX, 100baseTX-FDX, auto
fxp0: Ethernet address: 00:02:55:6d:12:1a
xl0: <3Com 3c905C-TX Fast Etherlink XL> port 0x2280-0x22ff mem 0xfeb7ec00-0xfeb7ec7f irq 18 at device 10.0 on pci0
miibus1: <MII bus> on xl0
xlphy0: <3c905C 10/100 internal PHY> on miibus1
xlphy0:  10baseT, 10baseT-FDX, 100baseTX, 100baseTX-FDX, auto
xl0: Ethernet address: 00:04:76:91:78:3f
isab0: <PCI-ISA bridge> port 0x440-0x44f at device 15.0 on pci0
isa0: <ISA bus> on isab0
atapci0: <ServerWorks ROSB4 UDMA33 controller> port 0x700-0x70f,0x376,0x170-0x177,0x3f6,0x1f0-0x1f7 at device 15.1 on pci0
ata0: channel #0 on atapci0
ata1: channel #1 on atapci0
ohci0: <OHCI (generic) USB controller> mem 0xfeb7d000-0xfeb7dfff irq 10 at device 15.2 on pci0
ohci0: [GIANT-LOCKED]
usb0: OHCI version 1.0, legacy support
usb0: <OHCI (generic) USB controller> on ohci0
usb0: USB revision 1.0
uhub0: (0x1166) OHCI root hub, class 9/0, rev 1.00/1.00, addr 1
uhub0: 4 ports with 4 removable, self powered
pcib1: <MPTable Host-PCI bridge> pcibus 1 on motherboard
pci1: <PCI bus> on pcib1
ahc0: <Adaptec aic7892 Ultra160 SCSI adapter> port 0x2300-0x23ff mem 0xeffff000-0xefffffff irq 28 at device 3.0 on pci1
ahc0: [GIANT-LOCKED]
aic7892: Ultra160 Wide Channel A, SCSI Id=7, 32/253 SCBs
cpu0 on motherboard
cpu1 on motherboard
pmtimer0 on isa0
orm0: <ISA Option ROMs> at iomem 0xca800-0xcefff,0xca000-0xca7ff,0xc0000-0xc9fff on isa0
atkbdc0: <Keyboard controller (i8042)> at port 0x64,0x60 on isa0
atkbd0: <AT Keyboard> irq 1 on atkbdc0
kbd0 at atkbd0
atkbd0: [GIANT-LOCKED]
psm0: <PS/2 Mouse> irq 12 on atkbdc0
psm0: [GIANT-LOCKED]
psm0: model Generic PS/2 mouse, device ID 0
fdc0: <Enhanced floppy controller> at port 0x3f0-0x3f5 irq 6 drq 2 on isa0
fdc0: [FAST]
sc0: <System console> at flags 0x100 on isa0
sc0: VGA <16 virtual consoles, flags=0x300>
sio0 at port 0x3f8-0x3ff irq 4 flags 0x10 on isa0
sio0: type 16550A
sio1 at port 0x2f8-0x2ff irq 3 on isa0
sio1: type 16550A
vga0: <Generic ISA VGA> at port 0x3c0-0x3df iomem 0xa0000-0xbffff on isa0
unknown: <PNP0501> can't assign resources (port)
unknown: <PNP0501> can't assign resources (port)
unknown: <PNP0700> can't assign resources (port)
unknown: <PNP0f13> can't assign resources (irq)
unknown: <PNP0303> can't assign resources (port)
Timecounters tick every 10.000 msec
IP Filter: v3.4.35 initialized.  Default = pass all, Logging = enabled
Waiting 5 seconds for SCSI devices to settle
da0 at ahc0 bus 0 target 0 lun 0
da0: <IBM-ESXS ST336607LW    FN B258> Fixed Direct Access SCSI-3 device
da0: 40.000MB/s transfers (20.000MHz, offset 63, 16bit), Tagged Queueing Enabled
da0: 34715MB (71096640 512 byte sectors: 255H 63S/T 4425C)
SMP: AP CPU #1 Launched!
da1 at ahc0 bus 0 target 8 lun 0
da1: <HP 9.10GB A 68-SA40 SA40> Fixed Direct Access SCSI-2 device
da1: 40.000MB/s transfers (20.000MHz, offset 31, 16bit), Tagged Queueing Enabled
da1: 8678MB (17773524 512 byte sectors: 255H 63S/T 1106C)
Mounting root from ufs:/dev/da0s1a
Accounting enabled
xl0: promiscuous mode enabled

MPTable:
===============================================================================

MPTable, version 2.0.15

-------------------------------------------------------------------------------

MP Floating Pointer Structure:

  location:                     EBDA
  physical address:             0x0009ddd0
  signature:                    '_MP_'
  length:                       16 bytes
  version:                      1.4
  checksum:                     0xda
  mode:                         Virtual Wire

-------------------------------------------------------------------------------

MP Config Table Header:

  physical address:             0x0009dde0
  signature:                    'PCMP'
  base table length:            260
  version:                      1.4
  checksum:                     0x4c
  OEM ID:                       'IBM ENSW'
  Product ID:                   'xSeries 220 '
  OEM table pointer:            0x00000000
  OEM table size:               0
  entry count:                  24
  local APIC address:           0xfee00000
  extended table length:        168
  extended table checksum:      177

-------------------------------------------------------------------------------

MP Config Base Table Entries:

--
Processors:     APIC ID Version State           Family  Model   Step    Flags
                 3       0x11    BSP, usable     6       8       10      0x0301
                 0       0x11    AP, usable      6       8       10      0x0301
--
Bus:            Bus ID  Type
                 0       PCI
                 1       PCI
                 2       ISA
--
I/O APICs:      APIC ID Version State           Address
                14       0x11    usable          0xfec00000
                13       0x11    usable          0xfec01000
--
I/O Ints:       Type    Polarity    Trigger     Bus ID   IRQ    APIC ID PIN#
                INT      conforms    conforms        2     1         14    1
                INT      conforms    conforms        2     0         14    2
                INT      conforms    conforms        2     3         14    3
                INT      conforms    conforms        2     4         14    4
                INT      conforms    conforms        2     6         14    6
                INT      conforms    conforms        2     7         14    7
                INT      conforms    conforms        2     8         14    8
                INT      conforms    conforms        2    12         14   12
                INT      conforms    conforms        2    13         14   13
                INT      conforms    conforms        2    14         14   14
                INT      conforms    conforms        2    15         14   15
                INT      conforms    conforms        0   2:A         13   11
                INT      conforms    conforms        0  10:A         13    2
                INT      conforms    conforms        0  15:A         14   10
                INT      conforms    conforms        1   3:A         13   12
--
Local Ints:     Type    Polarity    Trigger     Bus ID   IRQ    APIC ID PIN#
                NMI      conforms    conforms        2     0        255    1
                ExtINT   conforms    conforms        2     0        255    0

-------------------------------------------------------------------------------
-------------------------------------------------------------------------------

MP Config Extended Table Entries:

--
System Address Space
 bus ID: 0 address type: memory address
 address base: 0xa0000
 address range: 0x20000
--
System Address Space
 bus ID: 0 address type: memory address
 address base: 0xd0000
 address range: 0x10000
--
System Address Space
 bus ID: 0 address type: memory address
 address base: 0xfd000000
 address range: 0x3000000
--
System Address Space
 bus ID: 0 address type: prefetch address
 address base: 0xf0000000
 address range: 0xd000000
--
System Address Space
 bus ID: 1 address type: memory address
 address base: 0xee000000
 address range: 0x2000000
--
System Address Space
 bus ID: 1 address type: prefetch address
 address base: 0x38000000
 address range: 0xb6000000
--
System Address Space
 bus ID: 0 address type: I/O address
 address base: 0x0
 address range: 0x2300
--
System Address Space
 bus ID: 1 address type: I/O address
 address base: 0x2300
 address range: 0xdd00
--
Bus Heirarchy
 bus ID: 2 bus info: 0x01 parent bus ID: 0

===============================================================================

>Description:
After a few hours system reboots, sometimes with kernel panic - example:
discordia# less /var/crash/info.0
Good dump found on device /dev/da1s1b
  Architecture: i386
  Architecture version: 1
  Dump length: 939438080B (895 MB)
  Blocksize: 512
  Dumptime: Wed Nov 24 11:15:12 2004
  Hostname: discordia.pl
  Versionstring: FreeBSD 5.3-RELEASE-p1 #6: Tue Nov 23 17:27:29 CET 2004
    toread@discordia.pl:/usr/obj/usr/src/sys/OBLIVION
  Panicstring: page fault
  Bounds: 0

discordia# kgdb /boot/kernel/kernel /var/crash/vmcore.0
[GDB will not be able to debug user-mode threads: /usr/lib/libthread_db.so: Undefined symbol "ps_pglobal_lookup"]
GNU gdb 6.1.1 [FreeBSD]
Copyright 2004 Free Software Foundation, Inc.
GDB is free software, covered by the GNU General Public License, and you are
welcome to change it and/or distribute copies of it under certain conditions.
Type "show copying" to see the conditions.
There is absolutely no warranty for GDB.  Type "show warranty" for details.
This GDB was configured as "i386-marcel-freebsd".
(no debugging symbols found)...0xc04e8cc6 in doadump ()
(kgdb)
(kgdb) where
#0  0xc04e8cc6 in doadump ()
#1  0xc04e92bf in boot ()
#2  0xc04e95e5 in panic ()
#3  0xc05f29a0 in trap_fatal ()
#4  0xc05f26e3 in trap_pfault ()
#5  0xc05f233d in trap ()
#6  0xc05e0f4a in calltrap ()
#7  0xc04d0018 in do_execve ()
#8  0xc0517b85 in ttwakeup ()
#9  0xc05167e8 in ttymodem ()
#10 0xc051a4d3 in ptcopen ()
#11 0xc04b16de in spec_open ()
#12 0xc04b1423 in spec_vnoperate ()
#13 0xc0547511 in vn_open_cred ()
#14 0xc05470f6 in vn_open ()
#15 0xc054120f in kern_open ()
#16 0xc0541128 in open ()
#17 0xc05f2cab in syscall ()
#18 0xc05e0f9f in Xint0x80_syscall ()
#19 0x0000002f in ?? ()
#20 0x0000002f in ?? ()
#21 0x0000002f in ?? ()
#22 0xffffffff in ?? ()
#23 0x281ddc2d in ?? ()
#24 0xbfbfe4c8 in ?? ()
#25 0xea4e2d74 in ?? ()
#26 0x281df860 in ?? ()
#27 0x281ddc4b in ?? ()
#28 0x283415ec in ?? ()
#29 0x00000005 in ?? ()
#30 0x0000000c in ?? ()
#31 0x00000002 in ?? ()
#32 0x282ca517 in ?? ()
#33 0x0000001f in ?? ()
#34 0x00000292 in ?? ()
#35 0xbfbfe46c in ?? ()
#36 0x0000002f in ?? ()
#37 0x2072746f in ?? ()
#38 0x70796e47 in ?? ()
#39 0x6f682f00 in ?? ()
#40 0x742f656d in ?? ()
#41 0x2fb6d000 in ?? ()
#42 0xc2a70000 in ?? ()
#43 0xc2a054b0 in ?? ()
#44 0xea4e2aac in ?? ()
#45 0xea4e2a94 in ?? ()
#46 0xc1c404b0 in ?? ()
#47 0xc04f98c7 in sched_switch ()
Previous frame inner to this frame (corrupt stack?)
(kgdb)

System has been tested with memtest and burnP6/burnMMX/burnBX, no errors where discovered


>How-To-Repeat:
>Fix:
>Release-Note:
>Audit-Trail:

From: Piotr Gnyp <toread@discordia.pl>
To: freebsd-gnats-submit@FreeBSD.org
Cc:  
Subject: Re: kern/74319: system reboots after few hours
Date: Fri, 26 Nov 2004 22:30:57 +0100

 --7AUc2qLy4jB3hD7Z
 Content-Type: text/plain; charset=iso-8859-2
 Content-Disposition: inline
 
 some more core dumps:
 #0  0xc04e8c66 in doadump ()
 #1  0xc04e925f in boot ()
 #2  0xc04e9585 in panic ()
 #3  0xc05f2998 in trap_fatal ()
 #4  0xc05f26db in trap_pfault ()
 #5  0xc05f2335 in trap ()
 #6  0xc05e0f1a in calltrap ()
 #7  0xea4e0018 in ?? ()
 #8  0xc04d0010 in do_execve ()
 #9  0xc050ae8e in selwakeuppri ()
 #10 0xc0517ae9 in ttwakeup ()
 #11 0xc0516790 in ttymodem ()
 #12 0xc051a47b in ptcopen ()
 #13 0xc04b16ae in spec_open ()
 #14 0xc04b13f3 in spec_vnoperate ()
 #15 0xc05474b1 in vn_open_cred ()
 #16 0xc0547096 in vn_open ()
 #17 0xc05411af in kern_open ()
 #18 0xc05410c8 in open ()
 #19 0xc05f2ca3 in syscall ()
 #20 0xc05e0f6f in Xint0x80_syscall ()
 #21 0xbfbf002f in ?? ()
 #22 0x0000002f in ?? ()
 #23 0xbfbf002f in ?? ()
 #24 0xffffffff in ?? ()
 #25 0x281ddc2d in ?? ()
 #26 0xbfbfe418 in ?? ()
 #27 0xea4e3d74 in ?? ()
 #28 0x281df860 in ?? ()
 #29 0x281ddc47 in ?? ()
 #30 0x283415ec in ?? ()
 #31 0x00000005 in ?? ()
 #32 0x0000000c in ?? ()
 #33 0x00000002 in ?? ()
 #34 0x282ca517 in ?? ()
 #35 0x0000001f in ?? ()
 #36 0x00000296 in ?? ()
 #37 0xbfbfe3bc in ?? ()
 #38 0x0000002f in ?? ()
 #39 0x00000000 in ?? ()
 #40 0x00000000 in ?? ()
 #41 0x00000000 in ?? ()
 #42 0x00000000 in ?? ()
 #43 0x1c808000 in ?? ()
 #44 0xc2941e20 in ?? ()
 #45 0xc2942190 in ?? ()
 #46 0xea4e3aac in ?? ()
 #47 0xea4e3a94 in ?? ()
 #48 0xc1c40af0 in ?? ()
 #49 0xc04f986f in sched_switch ()
 
 
 discordia# less /var/crash/info.1
 Good dump found on device /dev/da1s1b
   Architecture: i386
   Architecture version: 1
   Dump length: 939438080B (895 MB)
   Blocksize: 512
   Dumptime: Wed Nov 24 22:38:24 2004
   Hostname: discordia.pl
   Versionstring: FreeBSD 5.3-RELEASE-p1 #1: Wed Nov 24 16:12:46 CET 2004
     toread@discordia.pl:/usr/src/sys/i386/compile/OBLIVION
   Panicstring: page fault
   Bounds: 1
 
 and another:
 
 #0  0xc04e8c66 in doadump ()
 #1  0xc04e925f in boot ()
 #2  0xc04e9585 in panic ()
 #3  0xc05f2998 in trap_fatal ()
 #4  0xc05f26db in trap_pfault ()
 #5  0xc05f2335 in trap ()
 #6  0xc05e0f1a in calltrap ()
 #7  0xea3b0018 in ?? ()
 #8  0xc04d0010 in do_execve ()
 #9  0xc050ae8e in selwakeuppri ()
 #10 0xc0517ae9 in ttwakeup ()
 #11 0xc0516790 in ttymodem ()
 #12 0xc051a47b in ptcopen ()
 #13 0xc04b16ae in spec_open ()
 #14 0xc04b13f3 in spec_vnoperate ()
 #15 0xc05474b1 in vn_open_cred ()
 #16 0xc0547096 in vn_open ()
 #17 0xc05411af in kern_open ()
 #18 0xc05410c8 in open ()
 #19 0xc05f2ca3 in syscall ()
 #20 0xc05e0f6f in Xint0x80_syscall ()
 #21 0x0000002f in ?? ()
 #22 0x0000002f in ?? ()
 #23 0xbfbf002f in ?? ()
 #24 0xffffffff in ?? ()
 #25 0x09206c2d in ?? ()
 #26 0xbfbfa1c8 in ?? ()
 #27 0xea3bbd74 in ?? ()
 #28 0x09208860 in ?? ()
 #29 0x09206c4a in ?? ()
 #30 0x092e55ec in ?? ()
 #31 0x00000005 in ?? ()
 #32 0x0000000c in ?? ()
 #33 0x00000002 in ?? ()
 #34 0x0926e517 in ?? ()
 #35 0x0000001f in ?? ()
 #36 0x00000292 in ?? ()
 #37 0xbfbfa16c in ?? ()
 #38 0x0000002f in ?? ()
 #39 0x280e6f50 in ?? ()
 #40 0x280e5880 in ?? ()
 #41 0x280e5b40 in ?? ()
 #42 0x280dfcf0 in ?? ()
 #43 0x2e5e7000 in ?? ()
 #44 0xc267ea98 in ?? ()
 #45 0xc267c320 in ?? ()
 #46 0xea3bbaac in ?? ()
 #47 0xea3bba94 in ?? ()
 #48 0xc1c404b0 in ?? ()
 #49 0xc04f986f in sched_switch ()
 Previous frame inner to this frame (corrupt stack?)
 
 discordia# less /var/crash/info.2
 Good dump found on device /dev/da1s1b
   Architecture: i386
   Architecture version: 1
   Dump length: 939438080B (895 MB)
   Blocksize: 512
   Dumptime: Fri Nov 26 20:20:26 2004
   Hostname: discordia.pl
   Versionstring: FreeBSD 5.3-RELEASE-p1 #1: Wed Nov 24 16:12:46 CET 2004
     toread@discordia.pl:/usr/src/sys/i386/compile/OBLIVION
   Panicstring: page fault
   Bounds: 2
 
 --7AUc2qLy4jB3hD7Z
 Content-Type: application/pgp-signature
 Content-Disposition: inline
 
 -----BEGIN PGP SIGNATURE-----
 Version: GnuPG v1.2.6 (FreeBSD)
 
 iD8DBQFBp6CRyMm9D77JpEQRAiofAKCkVcYbBHYAyaOGoPakL+4AWJtpxgCg28Qy
 01tK9Az1RojogWUA5rOgVAY=
 =kehD
 -----END PGP SIGNATURE-----
 
 --7AUc2qLy4jB3hD7Z--

From: Piotr Gnyp <toread@discordia.pl>
To: freebsd-gnats-submit@FreeBSD.org
Cc:  
Subject: Re: kern/74319: system reboots after few hours [5.3] [smp]
Date: Mon, 6 Dec 2004 13:52:09 +0100

 --qMm9M+Fa2AknHoGS
 Content-Type: text/plain; charset=iso-8859-2
 Content-Disposition: inline
 
 Another reboot, after 3d22h
 
 instruction pointer: 0x8: 0xco4ce857
 
 discordia# nm -n /usr/src/sys/i386/compile/OBLIVION/kernel.debug | grep c04ce8
 c04ce830 T knote
 
 discordia# kgdb /usr/src/sys/i386/compile/OBLIVION/kernel.debug
 /var/crash/vmcore.4
 [GDB will not be able to debug user-mode threads: /usr/lib/libthread_db.so:
 Undefined symbol "ps_pglobal_lookup"]
 GNU gdb 6.1.1 [FreeBSD]
 Copyright 2004 Free Software Foundation, Inc.
 GDB is free software, covered by the GNU General Public License, and you are
 welcome to change it and/or distribute copies of it under certain
 conditions.
 Type "show copying" to see the conditions.
 There is absolutely no warranty for GDB.  Type "show warranty" for details.
 This GDB was configured as "i386-marcel-freebsd".
 0xc04e8c72 in doadump ()
 (kgdb) where
 #0  0xc04e8c72 in doadump ()
 #1  0xc04e926b in boot ()
 #2  0xc04e9591 in panic ()
 #3  0xc05f1788 in trap_fatal ()
 #4  0xc05f14cb in trap_pfault ()
 #5  0xc05f1125 in trap ()
 #6  0xc05dfd0a in calltrap ()
 #7  0xc04d0018 in do_execve ()
 #8  0xc0517b39 in ttwakeup ()
 #9  0xc051679c in ttymodem ()
 #10 0xc051a487 in ptcopen ()
 #11 0xc04b16ba in spec_open ()
 #12 0xc04b13ff in spec_vnoperate ()
 #13 0xc05474bd in vn_open_cred ()
 #14 0xc05470a2 in vn_open ()
 #15 0xc05411bb in kern_open ()
 #16 0xc05410d4 in open ()
 #17 0xc05f1a93 in syscall ()
 #18 0xc05dfd5f in Xint0x80_syscall ()
 #19 0x0000002f in ?? ()
 #20 0x0000002f in ?? ()
 #21 0x0000002f in ?? ()
 #22 0xffffffff in ?? ()
 #23 0x281d4c2d in ?? ()
 #24 0xbfbfe418 in ?? ()
 #25 0xe5772d74 in ?? ()
 #26 0x281d6860 in ?? ()
 #27 0x281d4c4f in ?? ()
 #28 0x283385ec in ?? ()
 #29 0x00000005 in ?? ()
 #30 0x0000000c in ?? ()
 #31 0x00000002 in ?? ()
 #32 0x282c1517 in ?? ()
 #33 0x0000001f in ?? ()
 #34 0x00000296 in ?? ()
 #35 0xbfbfe3bc in ?? ()
 #36 0x0000002f in ?? ()
 #37 0x00000000 in ?? ()
 #38 0x00000000 in ?? ()
 #39 0x00000000 in ?? ()
 #40 0x00000000 in ?? ()
 #41 0x1b9ef000 in ?? ()
 #42 0xc55888d4 in ?? ()
 #43 0xc558a640 in ?? ()
 #44 0xe5772aac in ?? ()
 #45 0xe5772a94 in ?? ()
 #46 0xc1c3faf0 in ?? ()
 #47 0xc04f987b in sched_switch ()
 Previous frame inner to this frame (corrupt stack?)
 
 --qMm9M+Fa2AknHoGS
 Content-Type: application/pgp-signature
 Content-Disposition: inline
 
 -----BEGIN PGP SIGNATURE-----
 Version: GnuPG v1.2.6 (FreeBSD)
 
 iD8DBQFBtFX5yMm9D77JpEQRAgWpAJ9YOLdFa0+HaJmksCgIFNokrtJE9QCeJlYk
 AZGVFFskhX/BUpgnDfpyVGg=
 =g+DX
 -----END PGP SIGNATURE-----
 
 --qMm9M+Fa2AknHoGS--

From: Hannes Mehnert <hannes@mehnert.org>
To: freebsd-gnats-submit@FreeBSD.org, toread@discordia.pl
Cc:  
Subject: Re: kern/74319: system reboots after few hours [5.3] [smp]
Date: Thu, 9 Dec 2004 16:30:31 +0100

 -----BEGIN PGP SIGNED MESSAGE-----
 Hash: SHA1
 
 Hi,
 
 I encountered the same backtrace (all I get is at
 http://paste.lisp.org/display/4048) on a FreeBSD 5.2-CURRENT from
 Sun Oct  3 04:32:57 CEST 2004 (running on a dual sparc64 machine)
 after running ~30 days rock-solid.
 
 Regards,
 
 Hannes Mehnert
 -----BEGIN PGP SIGNATURE-----
 Version: GnuPG v1.2.6 (FreeBSD)
 
 iD8DBQFBuG+HRcuNlziBjRwRAh8VAKCLVnbZ59XoWG29uxB+o6Z3Gw/vkwCgowBs
 VidFSZUWeL2UGw5uDxGvkP0=
 =VYxV
 -----END PGP SIGNATURE-----

From: Piotr Gnyp <toread@discordia.pl>
To: "mailto:freebsd-gnats-submit"@FreeBSD.org
Cc:  
Subject: Re: kern/74319: system reboots after few hours [5.3] [smp]
Date: Fri, 18 Feb 2005 13:47:09 +0100

 On different machine another kernel panic:
 #0  doadump () at pcpu.h:159
 #1  0xc04d9efb in boot (howto=260) at ../../../kern/kern_shutdown.c:397
 #2  0xc04da221 in panic (fmt=0xc060106c "%s") at
 ../../../kern/kern_shutdown.c:553
 #3  0xc05dd308 in trap_fatal (frame=0xe83ef980, eva=28) at
 ../../../i386/i386/trap.c:809
 #4  0xc05dd04b in trap_pfault (frame=0xe83ef980, usermode=0, eva=28) at
 ../../../i386/i386/trap.c:727
 #5  0xc05dcca5 in trap (frame=
       {tf_fs = -1068761064, tf_es = -398589936, tf_ds = 16777232, tf_edi =
 -993459960, tf_esi = -1037469184, tf_ebp = -398526004, tf_isp = -398526036,
 tf_ebx = -1031939584, tf_edx = 0, tf_ecx = -1037239168, tf_eax = 4,
 tf_trapno = 12, tf_err = 2, tf_eip = -1068763929, tf_cs = 8, tf_eflags =
 66118, tf_esp = -1031939584, tf_ss = -1037469184})
     at ../../../i386/i386/trap.c:417
 #6  0xc05cb7da in calltrap () at ../../../i386/i386/exception.s:140
 #7  0xc04c0018 in kern_execve (td=0xc2297a00, fname=0x0, argv=0x0,
 envv=0xc27dda10, mac_p=0xc27dda00)
     at ../../../kern/kern_exec.c:242
 #8  0xc05087b1 in ttwakeup (tp=0xc2297a00) at ../../../kern/tty.c:2370
 #9  0xc0507414 in ttymodem (tp=0xc27dda00, flag=0) at
 ../../../kern/tty.c:1625
 #10 0xc050b0ff in ptcopen (dev=0xc2297a00, flag=3, devtype=8192, td=0x0) at
 linedisc.h:136
 #11 0xc04a231a in spec_open (ap=0xe83efa84) at
 ../../../fs/specfs/spec_vnops.c:207
 #12 0xc04a205f in spec_vnoperate (ap=0x0) at
 ../../../fs/specfs/spec_vnops.c:118
 #13 0xc053813d in vn_open_cred (ndp=0xe83efbe4, flagp=0xe83efce4, cmode=0,
 cred=0xc3c16980, fdidx=0) at vnode_if.h:228
 #14 0xc0537d22 in vn_open (ndp=0x0, flagp=0xe83efce4, cmode=0, fdidx=6) at
 ../../../kern/vfs_vnops.c:91
 #15 0xc0531e3b in kern_open (td=0xc22cfc80, path=0x0, pathseg=UIO_USERSPACE,
 flags=3, mode=0)
     at ../../../kern/vfs_syscalls.c:957
 #16 0xc0531d54 in open (td=0xc22cfc80, uap=0x0) at
 ../../../kern/vfs_syscalls.c:926
 #17 0xc05dd613 in syscall (frame=
       {tf_fs = 47, tf_es = 47, tf_ds = 47, tf_edi = -1077943301, tf_esi =
 673008685, tf_ebp = -1077943272, tf_isp = -398525068, tf_ebx = 673015904,
 tf_edx = 673008700, tf_ecx = 674465260, tf_eax = 5, tf_trapno = 12, tf_err =
 2, tf_eip = 673977623, tf_cs = 31, tf_eflags = 662, tf_esp = -1077943364,
 tf_ss = 47}) at ../../../i386/i386/trap.c:1001
 #18 0xc05cb82f in Xint0x80_syscall () at ../../../i386/i386/exception.s:201
 #19 0x0000002f in ?? ()
 #20 0x0000002f in ?? ()
 #21 0x0000002f in ?? ()
 #22 0xbfbfe3fb in ?? ()
 #23 0x281d4c2d in ?? ()
 #24 0xbfbfe418 in ?? ()
 #25 0xe83efd74 in ?? ()
 #26 0x281d6860 in ?? ()
 #27 0x281d4c3c in ?? ()
 #28 0x283385ec in ?? ()
 #29 0x00000005 in ?? ()
 #30 0x0000000c in ?? ()
 #31 0x00000002 in ?? ()
 #32 0x282c1517 in ?? ()
 #33 0x0000001f in ?? ()
 #34 0x00000296 in ?? ()
 #35 0xbfbfe3bc in ?? ()
 #36 0x0000002f in ?? ()
 #37 0x00000000 in ?? ()
 #38 0x00000000 in ?? ()
 #39 0x00000000 in ?? ()
 #40 0x00000000 in ?? ()
 #41 0x148e3000 in ?? ()
 #42 0xc2831a98 in ?? ()
 #43 0xc22cfc80 in ?? ()
 #44 0xe83efaac in ?? ()
 #45 0xe83efa94 in ?? ()
 #46 0xc1e7d4b0 in ?? ()
 #47 0xc04ea503 in sched_switch (td=0x281d4c2d, newtd=0x281d6860,
 flags=Cannot access memory at address 0xbfbfe428
 ) at ../../../kern/sched_4bsd.c:865
State-Changed-From-To: open->feedback 
State-Changed-By: kmacy 
State-Changed-When: Fri Nov 16 07:19:03 UTC 2007 
State-Changed-Why:  

Is this still an issue in RELENG_6? 

http://www.freebsd.org/cgi/query-pr.cgi?pr=74319 
State-Changed-From-To: feedback->closed 
State-Changed-By: linimon 
State-Changed-When: Sun Mar 2 01:08:38 UTC 2008 
State-Changed-Why:  
Feedback timeout (> 3 months). 

http://www.freebsd.org/cgi/query-pr.cgi?pr=74319 
>Unformatted:
