From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1762712AbXIKIcV (ORCPT ); Tue, 11 Sep 2007 04:32:21 -0400 Received: (majordomo@vger.kernel.org) by vger.kernel.org id S1761328AbXIKIcI (ORCPT ); Tue, 11 Sep 2007 04:32:08 -0400 Received: from 83-216-141-215.markhi700.adsl.metronet.co.uk ([83.216.141.215]:4856 "EHLO mx.hindley.org.uk" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1754745AbXIKIcF (ORCPT ); Tue, 11 Sep 2007 04:32:05 -0400 Date: Tue, 11 Sep 2007 09:32:00 +0100 From: Mark Hindley To: linux-kernel@vger.kernel.org Cc: netdev@vger.kernel.org, nfs@lists.sourceforge.net, neilb@suse.de Subject: [OOPS] 2.6.23-rc5 in tcp/net/nfsd Message-ID: <20070911083200.GA3409@hindley.org.uk> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.5.16 (2007-06-11) Sender: linux-kernel-owner@vger.kernel.org X-Mailing-List: linux-kernel@vger.kernel.org This oops appeared over night on a box running 2.6.23-rc5 (recent with the tcp_input.c fix). I can't find a similar one reported. Mark BUG: unable to handle kernel NULL pointer dereference at virtual address 0000007e printing eip: c02625bf *pde = 00000000 Oops: 0002 [#1] PREEMPT Modules linked in: softdog nfs cpufreq_userspace nfsd exportfs lockd sunrpc ppdev lp ac battery ipv6 cpufreq_ondemand cpufreq_powersave longhaul af_packet tcp_diag inev CPU: 0 EIP: 0060:[] Not tainted VLI EFLAGS: 00010246 (2.6.23-rc5-2-mcyrixiii #1) EIP is at ip_fragment+0x7f/0x680 eax: c3c09c00 ebx: 00000000 ecx: b524d006 edx: 0000007b esi: c1f77810 edi: c1f77e00 ebp: 00000000 esp: ccb48b3c ds: 007b es: 007b fs: 0000 gs: 0000 ss: 0068 Process nfsd (pid: 2942, ti=ccb48000 task=cf78c530 task.ti=ccb48000) Stack: 00000060 00000060 c0262dd0 c3c09c00 c0382600 00000158 000005c8 00000014 cbbc5424 00000158 00000000 00008b80 00000000 c1134a40 c3c09c00 00000000 cee8b780 c0382600 c0264115 00000282 ceabbe40 00000158 c026306c 00000000 Call Trace: [] ip_finish_output2+0x0/0x1c0 [] ip_output+0xd5/0x290 [] ip_generic_getfrag+0x4c/0xa0 [] __ip_select_ident+0x58/0xc0 [] ip_push_pending_frames+0x2df/0x3a0 [] ip_generic_getfrag+0x0/0xa0 [] udp_push_pending_frames+0x2ab/0x2d0 [] udp_sendmsg+0x469/0x590 [] __ip_route_output_key+0x6f0/0x710 [] ip_append_data+0x4df/0x970 [] irq_exit+0x40/0x70 [] inet_sendmsg+0x3b/0x50 [] sock_sendmsg+0xbb/0xe0 [] autoremove_wake_function+0x0/0x40 [] inet_sendmsg+0x3b/0x50 [] kernel_sendmsg+0x27/0x40 [] sock_no_sendpage+0x5a/0x70 [] udp_sendpage+0xd6/0x130 [] nfsd_acceptable+0x0/0xd0 [nfsd] [] udp_sendpage+0x0/0x130 [] inet_sendpage+0x55/0x90 [] inet_sendpage+0x0/0x90 [] kernel_sendpage+0x3f/0x50 [] svc_sendto+0x1b3/0x280 [sunrpc] [] encode_post_op_attr+0x4a/0x60 [nfsd] [] __slab_free+0x55/0x280 [] svc_udp_sendto+0x11/0x30 [sunrpc] [] svc_send+0xb7/0x100 [sunrpc] [] svcauth_unix_release+0x3b/0x50 [sunrpc] [] nfs3svc_release_fhandle+0x0/0x10 [nfsd] [] svc_process+0x418/0x690 [sunrpc] [] svc_recv+0x35a/0x3d0 [sunrpc] [] nfsd+0x185/0x2a0 [nfsd] [] nfsd+0x0/0x2a0 [nfsd] [] kernel_thread_helper+0x7/0x10 ======================= Code: 01 00 00 03 75 0e 8b 42 18 8b 40 0c 8b 80 c4 00 00 00 eb 0a 8b 4c 24 08 8b 41 18 8b 40 28 0f c8 89 04 24 8b 44 24 08 b9 04 00 00 <00> ba 03 00 00 00 bf a6 ff ff EIP: [] ip_fragment+0x7f/0x680 SS:ESP 0068:ccb48b3c