#1621: kernel oopses with wlanconfig ath0 destroy, almost always reproducable 
when
wep is used and station is assosiated.
----------------------------------+-----------------------------------------
      Reporter:  anonymous        |       Owner:  mtaylor   
          Type:  defect           |      Status:  assigned  
      Priority:  blocker          |   Milestone:            
     Component:  madwifi: driver  |     Version:  trunk     
    Resolution:                   |    Keywords:  oops crash
Patch_attached:  0                |  
----------------------------------+-----------------------------------------
Old description:

> Unable to handle kernel NULL pointer dereference at 000000000000014b RIP:
>  [<ffffffff881617d8>] :ath_pci:ath_tx_draintxq+0x128/0x270
> PGD 253fd067 PUD 253f3067 PMD 0
> Oops: 0000 [1] SMP
> CPU 1
> Modules linked in: wlan_wep ipt_LOG ipt_REJECT xt_tcpudp
> nf_conntrack_ipv4 xt_state nf_conntrack nfnetlink iptable
> _filter ip_tables x_tables wlan_scan_sta fglrx(P) binfmt_misc fan
> microcode deflate zlib_deflate zlib_inflate twof
> ish twofish_common camellia serpent blowfish des cbc ecb blkcipher aes
> xcbc sha256 sha1 md5 crypto_null hmac crypt
> o_hash cryptomgr crypto_algapi af_key fuse dm_snapshot dm_mirror dm_mod
> cpufreq_ondemand cpufreq_conservative cpuf
> req_powersave acpi_cpufreq freq_table kvm_intel kvm joydev hdaps tp_smapi
> thinkpad_ec loop sg sr_mod ath_rate_samp
> le cdrom irtty_sir tsdev sir_dev snd_hda_intel snd_pcm_oss snd_mixer_oss
> snd_pcm snd_seq_dummy snd_seq_oss pcmcia
> firmware_class snd_seq_midi snd_rawmidi snd_seq_midi_event nsc_ircc
> snd_seq snd_timer irda snd_seq_device snd crc_
> ccitt ath_pci wlan psmouse thermal ath_hal(P) ata_piix ac serio_raw
> yenta_socket soundcore snd_page_alloc i2c_i801
>  video output battery processor rsrc_nonstatic pcmcia_core iTCO_wdt
> iTCO_vendor_support button ehci_hcd evdev thin
> kpad_acpi intel_agp e1000 ata_generic nvram uhci_hcd pcspkr rtc
> Pid: 4441, comm: ifconfig Tainted: P        2.6.23-1 #1
> RIP: 0010:[<ffffffff881617d8>]  [<ffffffff881617d8>]
> :ath_pci:ath_tx_draintxq+0x128/0x270
> RSP: 0018:ffff81002d54fc78  EFLAGS: 00010286
> RAX: 0000000000000000 RBX: 0000000000000002 RCX: ffffffff88161772
> RDX: ffff810000e67fb8 RSI: ffff810000e67f90 RDI: ffffffff80587e58
> RBP: ffff81002c475000 R08: 0000000000000000 R09: ffff81003e7d8000
> R10: 0000000040001071 R11: 00000000ffffffff R12: 0000000000000000
> R13: ffff81003e01beb0 R14: ffff81003eae4700 R15: ffff81003eae6158
> FS:  00002b1b691a76e0(0000) GS:ffff81003fec1100(0000)
> knlGS:0000000000000000
> CS:  0010 DS: 0000 ES: 0000 CR0: 000000008005003b
> CR2: 000000000000014b CR3: 00000000253e8000 CR4: 00000000000026e0
> DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000
> DR3: 0000000000000000 DR6: 00000000ffff0ff0 DR7: 0000000000000400
> Process ifconfig (pid: 4441, threadinfo ffff81002d54e000, task
> ffff810007bc3560)
> Stack:  ffff81003fe06000 000000010000f7f7 0000000000000003
> ffff81003eae60f0
>  ffff81003eae6168 ffff81003eae6178 ffff81003e7d8000 0000000000000002
>  ffff81003eae4700 0000000000000282 ffff81003e7d8000 ffff81003e7d8000
> Call Trace:
>  [<ffffffff8816199e>] :ath_pci:ath_draintxq+0x7e/0x220
>  [<ffffffff88161f73>] :ath_pci:ath_stop_locked+0x63/0x2f0
>  [<ffffffff88162291>] :ath_pci:ath_stop+0x91/0xc0
>  [<ffffffff804016d2>] dev_close+0x62/0x90
>  [<ffffffff8813803b>] :wlan:ieee80211_stop+0xfb/0x120
>  [<ffffffff804016d2>] dev_close+0x62/0x90
>  [<ffffffff804007f2>] dev_change_flags+0x92/0x1c0
>  [<ffffffff8044f960>] devinet_ioctl+0x590/0x740
>  [<ffffffff803f39ff>] sock_ioctl+0xbf/0x240
>  [<ffffffff802a6aaf>] do_ioctl+0x2f/0xa0
>  [<ffffffff802a6d40>] vfs_ioctl+0x220/0x2c0
>  [<ffffffff802a6e75>] sys_ioctl+0x95/0xb0
>  [<ffffffff8020c31e>] system_call+0x7e/0x83
>

> Code: f6 80 4b 01 00 00 01 0f 85 b6 00 00 00 f0 ff 4d 38 0f 94 c0
> RIP  [<ffffffff881617d8>] :ath_pci:ath_tx_draintxq+0x128/0x270
>  RSP <ffff81002d54fc78>
> CR2: 000000000000014b

New description:

 {{{
 Unable to handle kernel NULL pointer dereference at 000000000000014b RIP:
  [<ffffffff881617d8>] :ath_pci:ath_tx_draintxq+0x128/0x270
 PGD 253fd067 PUD 253f3067 PMD 0
 Oops: 0000 [1] SMP
 CPU 1
 Modules linked in: wlan_wep ipt_LOG ipt_REJECT xt_tcpudp nf_conntrack_ipv4
 xt_state nf_conntrack nfnetlink iptable
 _filter ip_tables x_tables wlan_scan_sta fglrx(P) binfmt_misc fan
 microcode deflate zlib_deflate zlib_inflate twof
 ish twofish_common camellia serpent blowfish des cbc ecb blkcipher aes
 xcbc sha256 sha1 md5 crypto_null hmac crypt
 o_hash cryptomgr crypto_algapi af_key fuse dm_snapshot dm_mirror dm_mod
 cpufreq_ondemand cpufreq_conservative cpuf
 req_powersave acpi_cpufreq freq_table kvm_intel kvm joydev hdaps tp_smapi
 thinkpad_ec loop sg sr_mod ath_rate_samp
 le cdrom irtty_sir tsdev sir_dev snd_hda_intel snd_pcm_oss snd_mixer_oss
 snd_pcm snd_seq_dummy snd_seq_oss pcmcia
 firmware_class snd_seq_midi snd_rawmidi snd_seq_midi_event nsc_ircc
 snd_seq snd_timer irda snd_seq_device snd crc_
 ccitt ath_pci wlan psmouse thermal ath_hal(P) ata_piix ac serio_raw
 yenta_socket soundcore snd_page_alloc i2c_i801
  video output battery processor rsrc_nonstatic pcmcia_core iTCO_wdt
 iTCO_vendor_support button ehci_hcd evdev thin
 kpad_acpi intel_agp e1000 ata_generic nvram uhci_hcd pcspkr rtc
 Pid: 4441, comm: ifconfig Tainted: P        2.6.23-1 #1
 RIP: 0010:[<ffffffff881617d8>]  [<ffffffff881617d8>]
 :ath_pci:ath_tx_draintxq+0x128/0x270
 RSP: 0018:ffff81002d54fc78  EFLAGS: 00010286
 RAX: 0000000000000000 RBX: 0000000000000002 RCX: ffffffff88161772
 RDX: ffff810000e67fb8 RSI: ffff810000e67f90 RDI: ffffffff80587e58
 RBP: ffff81002c475000 R08: 0000000000000000 R09: ffff81003e7d8000
 R10: 0000000040001071 R11: 00000000ffffffff R12: 0000000000000000
 R13: ffff81003e01beb0 R14: ffff81003eae4700 R15: ffff81003eae6158
 FS:  00002b1b691a76e0(0000) GS:ffff81003fec1100(0000)
 knlGS:0000000000000000
 CS:  0010 DS: 0000 ES: 0000 CR0: 000000008005003b
 CR2: 000000000000014b CR3: 00000000253e8000 CR4: 00000000000026e0
 DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000
 DR3: 0000000000000000 DR6: 00000000ffff0ff0 DR7: 0000000000000400
 Process ifconfig (pid: 4441, threadinfo ffff81002d54e000, task
 ffff810007bc3560)
 Stack:  ffff81003fe06000 000000010000f7f7 0000000000000003
 ffff81003eae60f0
  ffff81003eae6168 ffff81003eae6178 ffff81003e7d8000 0000000000000002
  ffff81003eae4700 0000000000000282 ffff81003e7d8000 ffff81003e7d8000
 Call Trace:
  [<ffffffff8816199e>] :ath_pci:ath_draintxq+0x7e/0x220
  [<ffffffff88161f73>] :ath_pci:ath_stop_locked+0x63/0x2f0
  [<ffffffff88162291>] :ath_pci:ath_stop+0x91/0xc0
  [<ffffffff804016d2>] dev_close+0x62/0x90
  [<ffffffff8813803b>] :wlan:ieee80211_stop+0xfb/0x120
  [<ffffffff804016d2>] dev_close+0x62/0x90
  [<ffffffff804007f2>] dev_change_flags+0x92/0x1c0
  [<ffffffff8044f960>] devinet_ioctl+0x590/0x740
  [<ffffffff803f39ff>] sock_ioctl+0xbf/0x240
  [<ffffffff802a6aaf>] do_ioctl+0x2f/0xa0
  [<ffffffff802a6d40>] vfs_ioctl+0x220/0x2c0
  [<ffffffff802a6e75>] sys_ioctl+0x95/0xb0
  [<ffffffff8020c31e>] system_call+0x7e/0x83


 Code: f6 80 4b 01 00 00 01 0f 85 b6 00 00 00 f0 ff 4d 38 0f 94 c0
 RIP  [<ffffffff881617d8>] :ath_pci:ath_tx_draintxq+0x128/0x270
  RSP <ffff81002d54fc78>
 CR2: 000000000000014b
 }}}

-- 
Ticket URL: <http://madwifi.org/ticket/1621#comment:7>
madwifi.org <http://madwifi.org/>
Multiband Atheros Driver for Wireless Fidelity
-------------------------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc.
Still grepping through log files to find problems?  Stop.
Now Search log events and configuration files using AJAX and a browser.
Download your FREE copy of Splunk now >> http://get.splunk.com/
_______________________________________________
Madwifi-tickets mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/madwifi-tickets

Reply via email to