Bug 2208202
| Summary: | [abrt] sco_sock_sendmsg: BUG: kernel NULL pointer dereference, address: 0000000000000688 [bluetooth] | ||||||
|---|---|---|---|---|---|---|---|
| Product: | [Fedora] Fedora | Reporter: | Paolo Antinori <pantinor> | ||||
| Component: | kernel | Assignee: | Kernel Maintainer List <kernel-maint> | ||||
| Status: | NEW --- | QA Contact: | Fedora Extras Quality Assurance <extras-qa> | ||||
| Severity: | unspecified | Docs Contact: | |||||
| Priority: | unspecified | ||||||
| Version: | 38 | CC: | acaringi, adscvr, airlied, alciregi, bskeggs, hdegoede, hpa, jarodwilson, josef, kernel-maint, lgoncalv, linville, masami256, mchehab, pantinor, ptalbert, steved | ||||
| Target Milestone: | --- | ||||||
| Target Release: | --- | ||||||
| Hardware: | x86_64 | ||||||
| OS: | Unspecified | ||||||
| URL: | https://retrace.fedoraproject.org/faf/reports/bthash/2526f25d5d203c03338ff9afa012d47fc6eb0a3 | ||||||
| Whiteboard: | abrt_hash:4c90ae6a66cf0219b12f6680dbe9ad388f3aa848;VARIANT_ID=workstation; | ||||||
| Fixed In Version: | Doc Type: | If docs needed, set a value | |||||
| Doc Text: | Story Points: | --- | |||||
| Clone Of: | Environment: | ||||||
| Last Closed: | Type: | --- | |||||
| Regression: | --- | Mount Type: | --- | ||||
| Documentation: | --- | CRM: | |||||
| Verified Versions: | Category: | --- | |||||
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||
| Cloudforms Team: | --- | Target Upstream Version: | |||||
| Embargoed: | |||||||
| Attachments: |
|
||||||
|
Description
Paolo Antinori
2023-05-18 08:54:14 UTC
Created attachment 1965382 [details]
File: dmesg
Hi, Thank you for reporting the issue. This issue was caused by an uncompleted sync command when powering off the device. Some of the sync commands take a long time to finish their tasks. So, those commands should be canceled before powering off the device to prevent the NULL pointer access. I've applied the upstream patch to the F38 kernel and made a scratch build for you to test. Once the build task is done, you could download the rpm package through the following URL: https://koji.fedoraproject.org/koji/taskinfo?taskID=101329198 If it works for you, I'll submit those patches to the Fedora kernel. :) Description of problem: audio stopped working. it's somehow related to bluetooth. and the bluetooth deamon stops and halts the shutdown, having an unbound graceperiod Version-Release number of selected component: kernel-core-6.2.15-300.fc38 Additional info: reporter: libreport-2.17.10 kernel: 6.2.15-300.fc38.x86_64 crash_function: sco_sock_sendmsg reason: BUG: kernel NULL pointer dereference, address: 0000000000000688 [bluetooth] type: Kerneloops cmdline: BOOT_IMAGE=(hd0,gpt2)/vmlinuz-6.2.15-300.fc38.x86_64 root=UUID=e5a64610-0f60-4ed6-95c0-be750705362e ro rootflags=subvol=root rd.luks.uuid=luks-5e01c370-74a9-441e-bb48-8e9690fd830b rhgb quiet package: kernel-core-6.2.15-300.fc38 runlevel: N 5 comment: audio stopped working. it's somehow related to bluetooth. and the bluetooth deamon stops and halts the shutdown, having an unbound graceperiod Truncated backtrace: #1 [TASK] sco_sock_sendmsg in bluetooth #2 [TASK] sock_sendmsg #3 [TASK] __sys_sendto #4 [TASK] __x64_sys_sendto #5 [TASK] do_syscall_64 #6 [TASK] ? __do_softirq #7 [TASK] ? __irq_exit_rcu #8 [TASK] entry_SYSCALL_64_after_hwframe Description of problem: something related to bluetooth daemon that halted Version-Release number of selected component: kernel-core-6.2.15-300.fc38 Additional info: reporter: libreport-2.17.10 kernel: 6.2.15-300.fc38.x86_64 crash_function: sco_sock_sendmsg reason: BUG: kernel NULL pointer dereference, address: 0000000000000688 [bluetooth] type: Kerneloops cmdline: BOOT_IMAGE=(hd0,gpt2)/vmlinuz-6.2.15-300.fc38.x86_64 root=UUID=e5a64610-0f60-4ed6-95c0-be750705362e ro rootflags=subvol=root rd.luks.uuid=luks-5e01c370-74a9-441e-bb48-8e9690fd830b rhgb quiet package: kernel-core-6.2.15-300.fc38 runlevel: N 5 comment: something related to bluetooth daemon that halted Truncated backtrace: #1 [TASK] sco_sock_sendmsg in bluetooth #2 [TASK] sock_sendmsg #3 [TASK] __sys_sendto #4 [TASK] __x64_sys_sendto #5 [TASK] do_syscall_64 #6 [TASK] ? switch_fpu_return #7 [TASK] ? exit_to_user_mode_prepare #8 [TASK] ? syscall_exit_to_user_mode #9 [TASK] ? do_syscall_64 #10 [TASK] ? do_syscall_64 #11 [TASK] ? exc_page_fault #12 [TASK] entry_SYSCALL_64_after_hwframe Description of problem: I *suspect* that this has something to do with bluetooth. The laptop crashed now 2x, each time I was trying to get a bluetooth device connected. So far I have not been able to reproduce reliably. Version-Release number of selected component: kernel-core-6.3.8-200.fc38 Additional info: reporter: libreport-2.17.10 cmdline: BOOT_IMAGE=(hd0,gpt2)/vmlinuz-6.3.8-200.fc38.x86_64 root=/dev/mapper/fedora_localhost--live-root ro resume=/dev/mapper/fedora_localhost--live-swap rd.lvm.lv=fedora_localhost-live/root rd.lvm.lv=fedora_localhost-live/swap rhgb quiet crash_function: __die kernel: 6.3.8-200.fc38.x86_64 package: kernel-core-6.3.8-200.fc38 type: Kerneloops reason: BUG: kernel NULL pointer dereference, address: 00000000000006a8 runlevel: N 5 Truncated backtrace: #1 [TASK] ? __die #2 [TASK] ? page_fault_oops #3 [TASK] ? exc_page_fault #4 [TASK] ? asm_exc_page_fault #5 [TASK] ? hci_send_sco in bluetooth #6 [TASK] sco_sock_sendmsg in bluetooth #7 [TASK] sock_sendmsg #8 [TASK] ? sockfd_lookup_light #9 [TASK] __sys_sendto #10 [TASK] __x64_sys_sendto #11 [TASK] do_syscall_64 #12 [TASK] ? handle_mm_fault #13 [TASK] ? do_user_addr_fault #14 [TASK] ? exc_page_fault #15 [TASK] entry_SYSCALL_64_after_hwframe Description of problem: al reiniciar el equipo luego de una actualizacion se provoco el error Version-Release number of selected component: kernel-core-6.3.12-200.fc38 Additional info: reporter: libreport-2.17.11 runlevel: N 5 kernel: 6.3.12-200.fc38.x86_64 type: Kerneloops package: kernel-core-6.3.12-200.fc38 reason: BUG: kernel NULL pointer dereference, address: 00000000000006a8 cmdline: BOOT_IMAGE=(hd0,gpt5)/boot/vmlinuz-6.3.12-200.fc38.x86_64 root=UUID=07f333bb-2ec6-4bab-8b72-c8722192b1b5 ro resume=UUID=715299b5-c3cc-460f-b16b-d2c24ec53805 rhgb quiet comment: al reiniciar el equipo luego de una actualizacion se provoco el error crash_function: __die Truncated backtrace: #1 [TASK] ? __die #2 [TASK] ? page_fault_oops #3 [TASK] ? exc_page_fault #4 [TASK] ? asm_exc_page_fault #5 [TASK] ? hci_send_sco in bluetooth #6 [TASK] sco_sock_sendmsg in bluetooth #7 [TASK] sock_sendmsg #8 [TASK] ? sockfd_lookup_light #9 [TASK] __sys_sendto #10 [TASK] __x64_sys_sendto #11 [TASK] do_syscall_64 #12 [TASK] ? do_syscall_64 #13 [TASK] ? exc_page_fault #14 [TASK] entry_SYSCALL_64_after_hwframe |