Today, when i removed some disks from softraid and found this oops. But i did not find how to reproduce. The message is: [ 2796.107120] BUG: unable to handle kernel NULL pointer dereference at 0000000000000837 [ 2796.107123] IP: [<ffffffff813d2839>] scsi_eh_flush_done_q+0x49/0xe0 [ 2796.107129] PGD a5f06067 PUD b6c00067 PMD 0 [ 2796.107133] Oops: 0000 [#1] SMP [ 2796.107136] Modules linked in: nfsd exportfs mvsas libsas scsi_transport_sas raid10 raid456 async_pq async_xor xor async_memcpy async_raid6_recov raid6_pq async_tx [ 2796.107148] CPU 0 [ 2796.107151] Pid: 806, comm: scsi_eh_4 Tainted: G O 3.6.0-rc5+ #78 To Be Filled By O.E.M. To Be Filled By O.E.M./To be filled by O.E.M. [ 2796.107153] RIP: 0010:[<ffffffff813d2839>] [<ffffffff813d2839>] scsi_eh_flush_done_q+0x49/0xe0 [ 2796.107156] RSP: 0018:ffff8800b7ad1d60 EFLAGS: 00010246 [ 2796.107158] RAX: ffffffffffffffff RBX: ffff8800a6836000 RCX: dead000000200200 [ 2796.107160] RDX: ffff8800a6836718 RSI: 0000000000000000 RDI: ffff8800a6836018 [ 2796.107161] RBP: ffff8800b7ad1d80 R08: ffff8800a6836018 R09: 0000000000000000 [ 2796.107163] R10: 0000000000000000 R11: dead000000200200 R12: ffff8800a6836700 [ 2796.107164] R13: ffff8800b79cf3e0 R14: ffff8800a6836018 R15: 0000000000000286 [ 2796.107166] FS: 0000000000000000(0000) GS:ffff8800b9c00000(0000) knlGS:0000000000000000 [ 2796.107168] CS: 0010 DS: 0000 ES: 0000 CR0: 000000008005003b [ 2796.107170] CR2: 0000000000000837 CR3: 00000000a5caa000 CR4: 00000000000407f0 [ 2796.107171] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 [ 2796.107173] DR3: 0000000000000000 DR6: 00000000ffff0ff0 DR7: 0000000000000400 [ 2796.107175] Process scsi_eh_4 (pid: 806, threadinfo ffff8800b7ad0000, task ffff8800b8854bc0) [ 2796.107176] Stack: [ 2796.107177] 0000000000000286 ffff8800b79cc000 0000000000000000 0000000000000000 [ 2796.107181] ffff8800b7ad1dd0 ffffffff813fcd3b ffff8800b91d3090 ffff8800b79cf4c8 [ 2796.107185] ffff8800b7ad1e38 ffff8800b91d3000 ffff8800b7ad1de0 ffff8800b79cc000 [ 2796.107188] Call Trace: [ 2796.107192] [<ffffffff813fcd3b>] ata_scsi_port_error_handler+0x7db/0x8f0 [ 2796.107195] [<ffffffff813fcee9>] ata_scsi_error+0x99/0xd0 [ 2796.107198] [<ffffffff813d2c2c>] scsi_error_handler+0xcc/0x450 [ 2796.107201] [<ffffffff813d2b60>] ? scsi_eh_get_sense+0xd0/0xd0 [ 2796.107204] [<ffffffff8105944d>] kthread+0x9d/0xb0 [ 2796.107208] [<ffffffff8164aff4>] kernel_thread_helper+0x4/0x10 [ 2796.107211] [<ffffffff810593b0>] ? flush_kthread_work+0x1b0/0x1b0 [ 2796.107213] [<ffffffff8164aff0>] ? gs_change+0xb/0xb [ 2796.107214] Code: fe 75 15 e9 95 00 00 00 66 2e 0f 1f 84 00 00 00 00 00 4c 89 e3 49 89 c4 4c 89 f7 e8 f2 8d ed ff 48 8b 03 4c 89 73 18 4c 89 73 20 <8b> 80 38 08 00 00 8d 50 fa 83 fa 01 0f 97 c2 83 f8 04 0f 95 c0 [ 2796.107252] RIP [<ffffffff813d2839>] scsi_eh_flush_done_q+0x49/0xe0 [ 2796.107255] RSP <ffff8800b7ad1d60> [ 2796.107256] CR2: 0000000000000837 [ 2796.107263] ---[ end trace 8fb44f07e6a1ab65 ]---?韬{.n?????%??檩??w?{.n???{炳??Ф?塄}?财??j:+v??????2??璀??摺?囤??z夸z罐?+?????w棹f