GENERIC 7.0-CURRENT from Nov 14 16:00 UTC, vmcore.18
Test with corrupted UFS2 file system (bad super block).
fsck: /dev/md0c: Segmentation fault: 11

KDB: debugger backends: ddb
KDB: current backend: ddb
Copyright (c) 1992-2005 The FreeBSD Project.
Copyright (c) 1979, 1980, 1983, 1986, 1988, 1989, 1991, 1992, 1993, 1994
        The Regents of the University of California. All rights reserved.
FreeBSD 7.0-CURRENT #16: Mon Nov 14 17:19:26 CET 2005
    pho@crashbox.osted.lan:/usr/src/sys/i386/compile/PHO
WARNING: WITNESS option enabled, expect reduced performance.
ACPI APIC Table: <A M I  OEMAPIC >
Timecounter "i8254" frequency 1193182 Hz quality 0
CPU: Intel(R) XEON(TM) CPU 1.80GHz (1799.81-MHz 686-class CPU)
  Origin = "GenuineIntel"  Id = 0xf24  Stepping = 4
  Features=0x3febfbff<FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CLFLUSH,DTS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM>
  Logical CPUs per core: 2
real memory  = 1073676288 (1023 MB)
avail memory = 1041006592 (992 MB)
:
Trying to mount root from ufs:/dev/ad0s1a
WARNING: / was not properly dismounted
WARNING: /home was not properly dismounted
WARNING: /tmp was not properly dismounted
WARNING: /usr was not properly dismounted
WARNING: /var was not properly dismounted
fxp0: link state changed to UP
WARNING: /mnt was not properly dismounted
/mnt: mount pending error: blocks 16 files 0
WARNING: /mnt was not properly dismounted
WARNING: /mnt was not properly dismounted
WARNING: /mnt was not properly dismounted
/mnt: mount pending error: blocks 0 files 268435456
g_vfs_done():md0c[READ(offset=2187264, length=8192)]error = 5
g_vfs_done():md0c[READ(offset=70368744284160, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=70368744284160, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=70368744284160, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=70368744284160, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=70368744284160, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=70368744284160, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=70368744284160, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=70368744284160, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=68719583232, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=68719583232, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=68719583232, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=68719583232, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=68719583232, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=68719583232, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=68719583232, length=1024)]error = 5
g_vfs_done():md0c[READ(offset=68719583232, length=1024)]error = 5
/mnt: mount pending error: blocks 268435456 files 0
panic: vm_fault: fault on nofault entry, addr: dda79000
cpuid = 0
KDB: enter: panic
[thread pid 13688 tid 100198 ]
Stopped at      kdb_enter+0x2b: nop
db> where
Tracing pid 13688 tid 100198 td 0xc571f180
kdb_enter(c0872545) at kdb_enter+0x2b
panic(c088d00c,dda79000,0,e7832710,c064f3e1) at panic+0x14b
vm_fault(c1060000,dda79000,1,0,c571f180) at vm_fault+0x1e0
trap_pfault(e7832830,0,dda79000) at trap_pfault+0x137
trap(c0660008,c0940028,28,c5737000,dda79000) at trap+0x3e1
calltrap() at calltrap+0x5
--- trap 0xc, eip = 0xc08049f6, esp = 0xe7832870, ebp = 0xe78328f0 ---
generic_bcopy(c567a6cc,c4c10000,c571f180,c4e57870,0) at generic_bcopy+0x1a
ffs_mount(c4c10000,c571f180,0,0,c5572c3c) at ffs_mount+0x992
vfs_domount(c571f180,c4e57bb0,c4f01340,0,c4e57be0) at vfs_domount+0x5b1
vfs_donmount(c571f180,0,e7832ba8,c53e9780,e) at vfs_donmount+0x135
kernel_mount(c4e13660,0,804f030,0,fffffffe) at kernel_mount+0x6d
ffs_cmount(c4e13660,bfbfde50,0,c571f180,c0913120) at ffs_cmount+0x5d
mount(c571f180,e7832d04,c,c571f180,e7832d30) at mount+0x156
syscall(3b,3b,3b,804ae3f,bfbfe914) at syscall+0x27e
Xint0x80_syscall() at Xint0x80_syscall+0x1f
--- syscall (21, FreeBSD ELF32, mount), eip = 0x280c140f, esp = 0xbfbfde2c, ebp = 0xbfbfdec8 ---
db> show pcpu
cpuid        = 0
curthread    = 0xc571f180: pid 13688 "mount"
curpcb       = 0xe7832d90
fpcurthread  = none
idlethread   = 0xc4aefa80: pid 13 "idle: cpu0"
APIC ID      = 0
currentldt   = 0x50
spin locks held:
db> call doadump
Dumping 1023 MB (2 chunks)
  chunk 0: 1MB (159 pages) ... ok
  chunk 1: 1023MB (261872 pages) 1007 991 975 959 943 927 911 895 879 863 847 831 815 799 783 767 751 735 719 703 687 671 655 639 623 607 591 575 559 543 527 511 495 479 463 447 431 415 399 383 367 351 335 319 303 287 271 255 239 223 207 191 175 159 143 127 111 95 79 63 47 31 15 ... ok

Dump complete
= 0xf
db> reset

(kgdb) bt
#0  doadump () at pcpu.h:165
#1  0xc046a3a3 in db_fncall (dummy1=0xc09b6e60, dummy2=0x0, dummy3=0x0, dummy4=0xe783249c "È$\203ç| \207~À´$\203ç¸$\203ç\220\a")
    at ../../../ddb/db_command.c:489
#2  0xc046a1a8 in db_command (last_cmdp=0xc0923ce4, cmd_table=0x0, aux_cmd_tablep=0xc089e0a4, aux_cmd_tablep_end=0xc089e0c0)
    at ../../../ddb/db_command.c:404
#3  0xc046a270 in db_command_loop () at ../../../ddb/db_command.c:455
#4  0xc046be89 in db_trap (type=0x3, code=0x0) at ../../../ddb/db_main.c:228
#5  0xc0660924 in kdb_trap (type=0x3, code=0x0, tf=0xe7832634) at ../../../kern/subr_kdb.c:485
#6  0xc0806924 in trap (frame=
      {tf_fs = 0xe7830008, tf_es = 0xc0660028, tf_ds = 0xc0870028, tf_edi = 0xc088d00c, tf_esi = 0x1, tf_ebp = 0xe7832674, tf_isp = 0xe7832660, tf_ebx = 0xe78326a0, tf_edx = 0x0, tf_ecx = 0xc1033000, tf_eax = 0x12, tf_trapno = 0x3, tf_err = 0x0, tf_eip = 0xc066062b, tf_cs = 0x20, tf_eflags = 0x296, tf_esp = 0xe7832694, tf_ss = 0xc064688f}) at ../../../i386/i386/trap.c:612
#7  0xc07f380a in calltrap () at ../../../i386/i386/exception.s:139
#8  0xc066062b in kdb_enter (msg=0x12 <Address 0x12 out of bounds>) at cpufunc.h:60
#9  0xc064688f in panic (fmt=0xc088d00c "vm_fault: fault on nofault entry, addr: %lx") at ../../../kern/kern_shutdown.c:549
#10 0xc079a0d0 in vm_fault (map=0xc1060000, vaddr=0xdda79000, fault_type=0x1, fault_flags=0x0) at ../../../vm/vm_fault.c:277
#11 0xc0806b3f in trap_pfault (frame=0xe7832830, usermode=0x0, eva=0xdda79000) at ../../../i386/i386/trap.c:757
#12 0xc08067ad in trap (frame=
      {tf_fs = 0xc0660008, tf_es = 0xc0940028, tf_ds = 0x28, tf_edi = 0xc5737000, tf_esi = 0xdda79000, tf_ebp = 0xe78328f0, tf_isp = 0xe783285c, tf_ebx = 0x0, tf_edx = 0xc571f180, tf_ecx = 0x3fffa00, tf_eax = 0xe7cbe000, tf_trapno = 0xc, tf_err = 0x0, tf_eip = 0xc08049f6, tf_cs = 0x20, tf_eflags = 0x10206, tf_esp = 0xdda77000, tf_ss = 0xc4f01340}) at ../../../i386/i386/trap.c:453
#13 0xc07f380a in calltrap () at ../../../i386/i386/exception.s:139
#14 0xc08049f6 in generic_bcopy () at ../../../i386/i386/support.s:489
Previous frame inner to this frame (corrupt stack?)