Page MenuHomeFreeBSD

ufshci: abort submission when payload DMA mapping fails
ClosedPublic

Authored by jaeyoon on Aug 5 2026, 7:52 AM.
Tags
None
Referenced Files
F170721683: D58653.diff
Sun, Sep 6, 5:27 AM
F170658358: D58653.id.diff
Sat, Sep 5, 8:48 PM
F170581832: D58653.diff
Sat, Sep 5, 12:28 PM
Unknown Object (File)
Sat, Sep 5, 8:30 AM
Unknown Object (File)
Thu, Sep 3, 7:50 AM
Unknown Object (File)
Thu, Sep 3, 6:49 AM
Unknown Object (File)
Tue, Sep 1, 6:59 PM
Unknown Object (File)
Tue, Sep 1, 2:21 PM
Subscribers
None

Details

Summary

When bus_dmamap_load_mem() failed, ufshci_req_queue_prepare_prdt()
manually completed and released the tracker, but its caller kept going:
it built the UTRD, set the slot back to SCHEDULED, and rang the
doorbell for a tracker whose request had already been freed. Return the
mapping error and stop the submission so the released tracker is not
resurrected.

Sponsored by: Samsung Electronics

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable