On Mon, 2009-07-06 at 19:01 +0200, Øyvind Harboe wrote: > I'm guessing that this is an elf file parsing problem. > > Can you provide the elf file?
Here is the same crash with a BIN file flash write file.bin 0x80000 bin Program received signal SIGSEGV, Segmentation fault. target_buffer_get_u32 (target=0x8567a20, buffer=0x858d000 <Address 0x858d000 out of bounds>) at ../../src/helper/types.h:80 80 return (uint32_t)(buf[0] | buf[1] << 8 | buf[2] << 16 | buf[3] << 24); (gdb) (gdb) where #0 target_buffer_get_u32 (target=0x8567a20, buffer=0x858d000 <Address 0x858d000 out of bounds>) at ../../src/helper/types.h:80 #1 0x0806f772 in arm7_9_write_memory (target=0x8567a20, address=65600, size=4, count=1750, buffer=0x858d004 <Address 0x858d004 out of bounds>) at arm7_9_common.c:2450 #2 0x0806ea45 in arm7_9_bulk_write_memory (target=0x8567a20, address=65600, count=1750, buffer=0x858c6c8 "") at arm7_9_common.c:2656 #3 0x08061d3d in target_write_buffer (target=0x8567a20, address=65600, size=7000, buffer=0x858c6c8 "") at target.c:1167 #4 0x080b7651 in aduc702x_write (bank=0x856cd40, buffer=0x858c6c8 "", offset=0, count=7176) at aduc702x.c:284 #5 0x0805e86b in flash_driver_write (bank=0x856cd40, buffer=0x0, offset=0, count=38676) at flash.c:94 #6 0x0805f328 in flash_write (target=0x8567a20, image=0xbfedeeb4, written=0xbfedeee8, erase=0) at flash.c:1144 #7 0x0805ff5d in handle_flash_write_image_command (cmd_ctx=0x85677e8, cmd=0x8579ee8 "write_image", args=0x855b5bc, argc=3) at flash.c:699 #8 0x0809c7bc in run_command (context=0x85677e8, c=0x8579ef8, words=0x855b5b8, num_words=4) at command.c:415 #9 0x0809ca62 in script_command (interp=0x854b020, argc=4, argv=0xbfedefd0) at command.c:142 #10 0x080e7e52 in Jim_EvalObj (interp=0x854b020, scriptObjPtr=0x857ca48) at jim.c:8708 #11 0x080ed9b7 in Jim_EvalCoreCommand (interp=0x854b020, argc=3, argv=0xbfedf090) at jim.c:10846 #12 0x080e7e52 in Jim_EvalObj (interp=0x854b020, scriptObjPtr=0x855b160) at jim.c:8708 #13 0x080ec35f in Jim_CatchCoreCommand (interp=0x854b020, argc=2, argv=0xbfedf150) at jim.c:11413 #14 0x080e7e52 in Jim_EvalObj (interp=0x854b020, scriptObjPtr=0x855b9f8) at jim.c:8708 #15 0x080e9513 in Jim_EvalExpression (interp=0x854b020, exprObjPtr=0x855ba70, exprResultPtrPtr=0xbfedf2ac) at jim.c:6927 #16 0x080ea291 in Jim_GetBoolFromExpr (interp=0x854b020, exprObjPtr=0x855ba70, boolPtr=0xbfedf2e8) at jim.c:7210 #17 0x080ef104 in Jim_IfCoreCommand (interp=0x854b020, argc=5, argv=0xbfedf350) at jim.c:10297 #18 0x080e7e52 in Jim_EvalObj (interp=0x854b020, scriptObjPtr=0x857b630) at jim.c:8708 #19 0x080e851b in JimCallProcedure (interp=0x854b020, cmd=0x857b7e0, argc=3, argv=0xbfedf440) at jim.c:8857 #20 0x080e81f6 in Jim_EvalObj (interp=0x854b020, scriptObjPtr=0x855b990) at jim.c:8714 #21 0x080e7e52 in Jim_EvalObj (interp=0x854b020, scriptObjPtr=0x856b5f8) at jim.c:8708 #22 0x080e7f12 in Jim_EvalObj (interp=0x854b020, scriptObjPtr=0x856aba0) at jim.c:8654 #23 0x080ef20d in Jim_IfCoreCommand (interp=0x854b020, argc=3, argv=0xbfedf630) at jim.c:10319 #24 0x080e7e52 in Jim_EvalObj (interp=0x854b020, scriptObjPtr=0x856a150) at jim.c:8708 #25 0x080ef20d in Jim_IfCoreCommand (interp=0x854b020, argc=3, argv=0xbfedf700) at jim.c:10319 #26 0x080e7e52 in Jim_EvalObj (interp=0x854b020, scriptObjPtr=0x8551bc0) at jim.c:8708 #27 0x080e851b in JimCallProcedure (interp=0x854b020, cmd=0x8557160, argc=5, argv=0xbfedf7ec) at jim.c:8857 #28 0x080e87d0 in Jim_EvalObjVector (interp=0x854b020, objc=6, objv=0xbfedf7ec) at jim.c:8424 #29 0x080e88c8 in JimUnknown (interp=0x854b020, argc=5, argv=0xbfedf870) at jim.c:8383 #30 0x080e8257 in Jim_EvalObj (interp=0x854b020, scriptObjPtr=0x8559cd0) at jim.c:8723 #31 0x080e8ff2 in Jim_Eval_Named (interp=0x854b020, script=0x855b218 "flash write_image file.bin 0x80000 bin", filename=0x8106909 "command.c", lineno=469) at jim.c:8901 #32 0x0809c6d2 in command_run_line (context=0x85677e8, line=0x855b218 "flash write_image file.bin 0x80000 bin") at command.c:469 #33 0x08098a3d in telnet_input (connection=0x8565be8) at telnet_server.c:330 #34 0x08099f90 in server_loop (command_context=0x854b008) at server.c:433 #35 0x0804a5dc in openocd_main (argc=3, argv=0xbfee0024) at openocd.c:283 #36 0x0804a332 in main (argc=Cannot access memory at address 0x858d000 ) at main.c:39 (gdb) _______________________________________________ Openocd-development mailing list Openocd-development@lists.berlios.de https://lists.berlios.de/mailman/listinfo/openocd-development