1. Attachments are working again! Check out this thread for more details and to report any other bugs.

Unintended Acceleration 'hits' new Hybrid London Buses

Discussion in 'Fred's House of Pancakes' started by GrumpyCabbie, Apr 17, 2015.

  1. GrumpyCabbie

    GrumpyCabbie Senior Member

    Joined:
    Dec 14, 2009
    6,722
    2,121
    45
    Location:
    North Yorkshire, UK
    Vehicle:
    2010 Prius
    Model:
    III
    Starting to sound just like the Toyota u/a news stories 5 years ago; driver pressing brakes but vehicle continues to accelerate.

    Dashcam captures moment 'Boris bus' driver struggled to control runaway vehicle | Daily Mail Online

    Sounds like a job of bad programming? design fault? or bad driver?

    I wonder if they have mats trapped under the accelerator pedal?

    And yes I'm allowed to post this on a Prius forum - a Prius was involved in the crash, and that's as tenuous a link as needed on this forum :sneaky:
     
  2. The Electric Me

    The Electric Me Go Speed Go!

    Joined:
    May 22, 2009
    9,083
    5,796
    0
    Location:
    Undisclosed Location
    Vehicle:
    Other Non-Hybrid
    Model:
    N/A
    I was really trying to read the article but kept getting distracted by the side bar and Penelope Cruz and Selena Gomez.
     
  3. Sergiospl

    Sergiospl Senior Member

    Joined:
    Apr 22, 2011
    3,938
    1,351
    28
    Location:
    Florida
    Vehicle:
    2011 Prius
    Model:
    Two
    Bus equipped with Black Box??

    "noisy neuromuscular processes" The Punching Bag Hits Back: Prius Crash Was Driver Error, Toyota Says
     
  4. Former Member 68813

    Former Member 68813 Senior Member

    Joined:
    Oct 3, 2010
    3,524
    981
    8
    Location:
    US
    Vehicle:
    Other Hybrid
    Model:
    N/A
    i know this is a toyota fanboy site, but toyota's ECU software was proven to be defective, buggy and not written in accordance with industry standards. what's even worse, no traces of problems would remain in the software when the main process ("kitchen sink") halts. so, the Toyota's "black box" is a joke. there is no such a thing.
     
  5. ChapmanF

    ChapmanF Senior Member

    Joined:
    Mar 30, 2008
    23,244
    15,056
    0
    Location:
    Indiana, USA
    Vehicle:
    2010 Prius
    Model:
    IV
    I have to thank you for this post, because I honestly hadn't caught up with that part of that news. I definitely remember seeing the much-more-favorable NHTSA/NASA report that had come out earlier, and that must have seemed enough like closure that I just wasn't paying as much attention to the story after that.

    I had not heard of or seen Michael Barr's findings until you posted this today.

    Very interesting, the contrast between the earlier findings and Barr's, illustrating how difficult it is to check quality of software at all, much less embedded software. I've been a very satisfied customer of my Toyota (which I hope is not quite the same as 'fanboy') but most of what tends to inform my opinion is mechanical design and execution, the stuff you can see, not the invisible stuff in the ECUs.

    I'm in software myself, so I have a very vivid and grim appreciation of how that kind of sausage gets made. (A lab colleague of mine in grad school was doing his research on automated verification of embedded software stack use, one of the exact things Barr finds Toyota to have flubbed.) I will admit that when I read the NHTSA/NASA report I was partly relieved and thinking "wow, that sounds a lot better put together than I would have expected." In Barr's findings it flips to worse than I would have expected ... though I have to say not a whole lot worse. (I say that as a measure of my pessimism, not praise for Toyota.) I have very little optimism about the quality of the embedded software I can't see in most of the stuff around me.

    Seems like Toyota's had a lot of years to develop top-notch mechanical design and engineering capacities, but didn't really appreciate what it would take to get their new ventures into embedded software up to anything like the same level.

    Software development can be mightly deceptive that way, because if you put too much emphasis on how well it seems to be working when nothing is going wrong, you can get to thinking you're much closer to finished than you are....

    -Chap
     
  6. FL_Prius_Driver

    FL_Prius_Driver Senior Member

    Joined:
    Jun 17, 2007
    4,319
    1,527
    0
    Location:
    Tampa Bay
    Vehicle:
    2010 Prius
    Model:
    I
    Stepping on the gas instead of the brake seems to be a real stretch for the long distance this event covered.


    Some of the lowest quality embedded software resides in the skulls of some of the drivers I encounter.
     
  7. Former Member 68813

    Former Member 68813 Senior Member

    Joined:
    Oct 3, 2010
    3,524
    981
    8
    Location:
    US
    Vehicle:
    Other Hybrid
    Model:
    N/A
    fuzzy logic anyone?
     
  8. ChapmanF

    ChapmanF Senior Member

    Joined:
    Mar 30, 2008
    23,244
    15,056
    0
    Location:
    Indiana, USA
    Vehicle:
    2010 Prius
    Model:
    IV
    Sure, if you're buying. What? :)

    -Chap
     
  9. bisco

    bisco cookie crumbler

    Joined:
    May 11, 2005
    107,683
    48,934
    0
    Location:
    boston
    Vehicle:
    2012 Prius Plug-in
    Model:
    Plug-in Base
    i don't understand, if there was a problem with the software, why is there no recall?
     
  10. ChapmanF

    ChapmanF Senior Member

    Joined:
    Mar 30, 2008
    23,244
    15,056
    0
    Location:
    Indiana, USA
    Vehicle:
    2010 Prius
    Model:
    IV
    You've posed the $64 question.

    If you have a code review and find a bug, you can send your customers a recall letter, and when they come in, you flash a new version of the firmware that fixes the bug.

    If you have a code review that needs hundreds of pages to describe all the entire families of bug that your development process hasn't protected against, some of which can't even be protected against without necessary hardware features you left out of the ECUs, and all that stuff took you n years to develop the first (wrong) way ...

    ... what do you do for your customers who come in for that recall, and what year will it be when you can do that?

    It's a miserable situation. The jury heard evidence that Toyota had claimed to be following embedded software safety "industry standards" that the software greatly failed to live up to on closer examination, which will probably provide fodder for competitors also claiming they follow the same standards. In the best of all possible worlds, those competitors are also looking at their own undisclosed, unreviewed, trade-secreted-to-the-nth-degree code and thinking to themselves "holy cr@p, how fast can we rewrite this stuff before there's a reason for ours to get closer examination too?!" That's in the best of all possible worlds, which I'm not convinced we live in.

    -Chap
     
  11. bisco

    bisco cookie crumbler

    Joined:
    May 11, 2005
    107,683
    48,934
    0
    Location:
    boston
    Vehicle:
    2012 Prius Plug-in
    Model:
    Plug-in Base
    thanks, then how come there aren't any more u/a incidence's?
     
  12. ChapmanF

    ChapmanF Senior Member

    Joined:
    Mar 30, 2008
    23,244
    15,056
    0
    Location:
    Indiana, USA
    Vehicle:
    2010 Prius
    Model:
    IV
    Interestingly, for Honda it was unintended braking. :) If it ain't one thing, it's another.

    Nice if unsurprising that Barr covers the Therac-25 accidents early on in his EELive talk. One of the first serious examples of having to track down an embedded-system bug that I was able to obtain the report of and study (and the accidents were happening just as I was finishing college).

    What's so tough to explain to people is how completely that kind of bug can depend on tiny factors of the exact operating context that you would never expect to be important. The thing was installed in a dozen different clinics across North America, treating thousands of patients successfully, with only six things happening, different places over the course of a couple years, that seemed weird enough to wonder if something was wrong (three of them also weird enough to kill the patient). Nobody made any progress on pinning down the problem—or even recognizing there was a problem—until it finally happened that two consecutive incidents happened only a month apart, at the same clinic in Texas, where the same operator had been on duty running the machine, and she remembered, out of all the treatments they'd given that month, that both times she had used the up arrow on the keyboard while editing the dose information.

    How many people would even remember that? How many of those, even if they remembered it, would think it could even have anything possibly to do with the machine's radiation safeguards failing? That turned out to be key to finding one of the bugs.

    That's the thing about software, it can be so convoluted and its behavior so unintuitive that a lot of the natural intuitive questions like "hmm, well, if there was any problem, why didn't X happen?" turn out to be of very little help in reasoning about it ... unless, maybe, they are asked by someone with very intimate knowledge of the code, which we don't get.

    -Chap
     
  13. bisco

    bisco cookie crumbler

    Joined:
    May 11, 2005
    107,683
    48,934
    0
    Location:
    boston
    Vehicle:
    2012 Prius Plug-in
    Model:
    Plug-in Base
    agreed. but that still leaves open the 'foot on the gas instead of the brake' theory.
     
  14. ChapmanF

    ChapmanF Senior Member

    Joined:
    Mar 30, 2008
    23,244
    15,056
    0
    Location:
    Indiana, USA
    Vehicle:
    2010 Prius
    Model:
    IV
    The Whitfield slide on page 24 of Barr's EELive talk addresses that theory in an eye-openingly succinct way....

    -Chap
     
  15. JimN

    JimN Let the games begin!

    Joined:
    Nov 26, 2006
    7,028
    1,116
    0
    Location:
    South Jersey
    Vehicle:
    2010 Prius
    Model:
    V
    No "off" switch?

    Where's Sandra Bullock when you need her?
     
    GrumpyCabbie likes this.
  16. hkmb

    hkmb Senior Member

    Joined:
    Sep 27, 2010
    279
    1,855
    0
    Location:
    Sydney, Australia
    Vehicle:
    Other Non-Hybrid
    Model:
    N/A
    Hmmmm...... Unintended acceleration. I assume that's what happens every time someone runs for a bus and the driver sees them and drives off anyway.
     
    GrumpyCabbie likes this.
  17. bisco

    bisco cookie crumbler

    Joined:
    May 11, 2005
    107,683
    48,934
    0
    Location:
    boston
    Vehicle:
    2012 Prius Plug-in
    Model:
    Plug-in Base
    they do that down under too?:p we call it intended.
     
  18. hkmb

    hkmb Senior Member

    Joined:
    Sep 27, 2010
    279
    1,855
    0
    Location:
    Sydney, Australia
    Vehicle:
    Other Non-Hybrid
    Model:
    N/A
    London bus drivers in particular are notorious for this.
     
  19. bisco

    bisco cookie crumbler

    Joined:
    May 11, 2005
    107,683
    48,934
    0
    Location:
    boston
    Vehicle:
    2012 Prius Plug-in
    Model:
    Plug-in Base
    there was a local story this winter, the snow was so bad that people had to climb over the snowbanks to get from the sidewalk to the bus out in the street. the bus would pull up, and just as everyone was up on the snowbank, the driver would pull away. minister of transport was given her leave.