Bug 1615479 - nouveau crash on Lenovo P50
Summary: nouveau crash on Lenovo P50
Keywords:
Status: CLOSED EOL
Alias: None
Product: Fedora
Classification: Fedora
Component: xorg-x11-drv-nouveau
Version: 28
Hardware: x86_64
OS: Linux
unspecified
high
Target Milestone: ---
Assignee: Ben Skeggs
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2018-08-13 16:48 UTC by Stefan Assmann
Modified: 2019-05-28 22:07 UTC (History)
4 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed: 2019-05-28 22:07:23 UTC
Type: Bug
Embargoed:


Attachments (Terms of Use)
dmesg.txt (143.55 KB, text/plain)
2018-08-13 16:48 UTC, Stefan Assmann
no flags Details

Description Stefan Assmann 2018-08-13 16:48:01 UTC
Created attachment 1475621 [details]
dmesg.txt

Description of problem:
On Lenovo P50 nouveau crashed the system hard.

Aug 13 18:26:31 p50 kernel: nouveau 0000:01:00.0: Xorg[2522]: failed to idle channel 13 [Xorg[2522]]
Aug 13 18:26:46 p50 kernel: nouveau 0000:01:00.0: Xorg[2522]: failed to idle channel 13 [Xorg[2522]]
Aug 13 18:26:48 p50 kernel: nouveau 0000:01:00.0: timeout
Aug 13 18:26:48 p50 kernel: WARNING: CPU: 2 PID: 3593 at drivers/gpu/drm/nouveau/nvkm/engine/fifo/gpfifogk104.c:50 gk104_fifo_gpfifo_kick+0xe2/0x140 [nouveau]
Aug 13 18:26:48 p50 kernel: Modules linked in: vhost_net vhost tap fuse rfcomm thunderbolt xt_CHECKSUM tun ipt_MASQUERADE nf_nat_masquerade_ipv4 xt_addrtype nf_conntrack_netbios_ns nf_conntrack_broadcast xt_CT ip6t_rpfilter ip6t_REJECT nf_reject_ipv6 xt_conntrack br_netfi>
Aug 13 18:26:48 p50 kernel:  x86_pkg_temp_thermal intel_powerclamp coretemp mac80211 mei_wdt snd_hda_codec_realtek kvm_intel snd_hda_codec_generic iTCO_wdt iTCO_vendor_support snd_hda_intel kvm snd_hda_codec iwlwifi snd_hda_core irqbypass snd_hwdep intel_cstate intel_unco>
Aug 13 18:26:48 p50 kernel: CPU: 2 PID: 3593 Comm: pool Tainted: G        W         4.17.12-200.fc28.x86_64 #1
Aug 13 18:26:48 p50 kernel: Hardware name: LENOVO 20EQS64N0L/20EQS64N0L, BIOS N1EET78W (1.51 ) 05/18/2018
Aug 13 18:26:48 p50 kernel: RIP: 0010:gk104_fifo_gpfifo_kick+0xe2/0x140 [nouveau]
Aug 13 18:26:48 p50 kernel: RSP: 0018:ffffbb8347eef9b8 EFLAGS: 00010286
Aug 13 18:26:48 p50 kernel: RAX: 0000000000000000 RBX: ffff9cdf3f0341d0 RCX: 0000000000000006
Aug 13 18:26:48 p50 kernel: RDX: 0000000000000007 RSI: 0000000000000096 RDI: ffff9cdf63c96930
Aug 13 18:26:48 p50 kernel: RBP: ffff9cdf32da6400 R08: 0000000000000005 R09: 00000000000005d3
Aug 13 18:26:48 p50 kernel: R10: 0000000000000000 R11: ffffffffa899b1ad R12: ffff9cdf3a234f00
Aug 13 18:26:48 p50 kernel: R13: 000005e1ffb77560 R14: ffff9cdf2c4fe000 R15: ffff9cdf34475000
Aug 13 18:26:48 p50 kernel: FS:  00007fec5e219700(0000) GS:ffff9cdf63c80000(0000) knlGS:0000000000000000
Aug 13 18:26:48 p50 kernel: CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
Aug 13 18:26:48 p50 kernel: CR2: 00005560f88b0780 CR3: 00000001af20a002 CR4: 00000000003626e0
Aug 13 18:26:48 p50 kernel: DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000
Aug 13 18:26:48 p50 kernel: DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400
Aug 13 18:26:48 p50 kernel: Call Trace:
Aug 13 18:26:48 p50 kernel:  gk104_fifo_gpfifo_engine_fini+0x2a/0xd0 [nouveau]
Aug 13 18:26:48 p50 kernel:  nvkm_fifo_chan_child_fini+0x62/0xe0 [nouveau]
Aug 13 18:26:48 p50 kernel:  nvkm_oproxy_fini+0x2b/0x90 [nouveau]
Aug 13 18:26:48 p50 kernel:  nvkm_object_fini+0xbc/0x150 [nouveau]
Aug 13 18:26:48 p50 kernel:  nvkm_object_fini+0x73/0x150 [nouveau]
Aug 13 18:26:48 p50 kernel:  nvkm_ioctl_del+0x3a/0x50 [nouveau]
Aug 13 18:26:48 p50 kernel:  nvkm_ioctl+0xd8/0x170 [nouveau]
Aug 13 18:26:48 p50 kernel:  nvif_object_fini+0x59/0x80 [nouveau]
Aug 13 18:26:48 p50 kernel:  nouveau_channel_del+0x97/0x150 [nouveau]
Aug 13 18:26:48 p50 kernel:  ? nouveau_channel_idle+0x94/0xe0 [nouveau]
Aug 13 18:26:48 p50 kernel:  nouveau_abi16_chan_fini.isra.1+0xa0/0x110 [nouveau]
Aug 13 18:26:48 p50 kernel:  nouveau_abi16_fini+0x2d/0x70 [nouveau]
Aug 13 18:26:48 p50 kernel:  nouveau_drm_postclose+0x4d/0xf0 [nouveau]
Aug 13 18:26:48 p50 kernel:  drm_release+0x27f/0x390 [drm]
Aug 13 18:26:48 p50 kernel:  __fput+0xae/0x220
Aug 13 18:26:48 p50 kernel:  task_work_run+0x84/0xa0
Aug 13 18:26:48 p50 kernel:  do_exit+0x2d3/0xae0
Aug 13 18:26:48 p50 kernel:  ? __hrtimer_init+0xb0/0xb0
Aug 13 18:26:48 p50 kernel:  do_group_exit+0x3a/0xa0
Aug 13 18:26:48 p50 kernel:  get_signal+0x276/0x590
Aug 13 18:26:48 p50 kernel:  do_signal+0x36/0x610
Aug 13 18:26:48 p50 kernel:  ? __vfs_write+0x36/0x170
Aug 13 18:26:48 p50 kernel:  exit_to_usermode_loop+0x69/0xa0
Aug 13 18:26:48 p50 kernel:  do_syscall_64+0x14d/0x160
Aug 13 18:26:48 p50 kernel:  entry_SYSCALL_64_after_hwframe+0x44/0xa9
Aug 13 18:26:48 p50 kernel: RIP: 0033:0x7fecb96b2ae9
Aug 13 18:26:48 p50 kernel: RSP: 002b:00007fec5e218a98 EFLAGS: 00000246 ORIG_RAX: 00000000000000ca
Aug 13 18:26:48 p50 kernel: RAX: fffffffffffffdfc RBX: 0000000000000526 RCX: 00007fecb96b2ae9
Aug 13 18:26:48 p50 kernel: RDX: 0000000000000526 RSI: 0000000000000080 RDI: 00007fec8c001fc0
Aug 13 18:26:48 p50 kernel: RBP: 00007fec8c001fb8 R08: 0000000000001921 R09: 0000000000001922
Aug 13 18:26:48 p50 kernel: R10: 00007fec5e218ab0 R11: 0000000000000246 R12: 00007fec8c001fb0
Aug 13 18:26:48 p50 kernel: R13: 00007fec8c001fb0 R14: 00007fec8c001fb8 R15: 00007fec9382c7f0
Aug 13 18:26:48 p50 kernel: Code: 41 5f c3 48 8b 7d 10 48 8b 5f 50 48 85 db 75 04 48 8b 5f 10 e8 30 18 26 e7 48 89 da 48
[...]
Aug 13 18:26:49 p50 kernel: BUG: unable to handle kernel NULL pointer dereference at 0000000000000028
Aug 13 18:26:49 p50 kernel: PGD 0 P4D 0ยท
Aug 13 18:26:49 p50 kernel: Oops: 0000 [#1] SMP PTI
Aug 13 18:26:49 p50 kernel: Modules linked in: vhost_net vhost tap fuse rfcomm thunderbolt xt_CHECKSUM tun ipt_MASQUERADE nf_nat_masquerade_ipv4 xt_addrtype nf_conntrack_netbios_ns nf_conntrack_broadcast xt_CT ip6t_rpfilter ip6t_REJECT nf_reject_ipv6 xt_conntrack br_netfilter devlink ip_set nfnetlink ebtable_nat ebtable_broute bridge ip6table_nat nf_conntrack_ipv6 nf_defrag_ipv6 nf_nat_ipv6 ip6table_mangle ip6table_raw ip6table_security iptable_nat nf_conntrack_ipv4 nf_defrag_ipv4 nf_nat_ipv4 nf_nat nf_conntrack libcrc32c iptable_mangle iptable_raw iptable_security ebtable_filter ebtables ip6table_filter ip6_tables overlay cmac bnep vfat fat btusb btrtl btbcm btintel uvcvideo bluetooth videobuf2_vmalloc videobuf2_memops videobuf2_v4l2 videobuf2_common videodev media ecdh_generic arc4 snd_hda_codec_hdmi iwlmvm intel_rapl
Aug 13 18:26:49 p50 kernel:  x86_pkg_temp_thermal intel_powerclamp coretemp mac80211 mei_wdt snd_hda_codec_realtek kvm_intel snd_hda_codec_generic iTCO_wdt iTCO_vendor_support snd_hda_intel kvm snd_hda_codec iwlwifi snd_hda_core irqbypass snd_hwdep intel_cstate intel_uncore snd_seq intel_rapl_perf snd_seq_device snd_pcm cfg80211 snd_timer thinkpad_acpi rtsx_pci_ms intel_wmi_thunderbolt wmi_bmof snd i2c_i801 mei_me joydev memstick mei intel_pch_thermal shpchp soundcore rfkill pcc_cpufreq scsi_transport_iscsi dm_crypt dm_multipath uas usb_storage 8021q garp mrp stp llc nouveau mxm_wmi i2c_algo_bit drm_kms_helper rtsx_pci_sdmmc mmc_core crct10dif_pclmul crc32_pclmul ttm crc32c_intel nvme drm e1000e nvme_core rtsx_pci ghash_clmulni_intel serio_raw wmi video sunrpc
Aug 13 18:26:49 p50 kernel: CPU: 7 PID: 543 Comm: kworker/7:1 Tainted: G        W         4.17.12-200.fc28.x86_64 #1
Aug 13 18:26:49 p50 kernel: Hardware name: LENOVO 20EQS64N0L/20EQS64N0L, BIOS N1EET78W (1.51 ) 05/18/2018
Aug 13 18:26:49 p50 kernel: Workqueue: events nouveau_cli_work [nouveau]
Aug 13 18:26:49 p50 kernel: RIP: 0010:nvif_object_ioctl+0x2c/0x50 [nouveau]
Aug 13 18:26:49 p50 kernel: RSP: 0018:ffffbb8362307d20 EFLAGS: 00010217
Aug 13 18:26:49 p50 kernel: RAX: ffffbb8362307d28 RBX: ffffbb8362307e10 RCX: 0000000000000000
Aug 13 18:26:49 p50 kernel: RDX: 0000000000000030 RSI: ffffbb8362307d28 RDI: ffff9cdf2457ad48
Aug 13 18:26:49 p50 kernel: RBP: ffffbb8362307d48 R08: 0000000000000000 R09: 0000000000000000
Aug 13 18:26:49 p50 kernel: R10: ffffe9941768d900 R11: ffff9cdf39a40800 R12: 0000000000000010
Aug 13 18:26:49 p50 kernel: R13: ffffbb8362307de8 R14: ffff9cdf2457ad48 R15: 0000000000000002
Aug 13 18:26:49 p50 kernel: FS:  0000000000000000(0000) GS:ffff9cdf63dc0000(0000) knlGS:0000000000000000
Aug 13 18:26:49 p50 kernel: CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
Aug 13 18:26:49 p50 kernel: CR2: 0000000000000028 CR3: 00000001af20a004 CR4: 00000000003626e0
Aug 13 18:26:49 p50 kernel: DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000
Aug 13 18:26:49 p50 kernel: DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400
Aug 13 18:26:49 p50 kernel: Call Trace:
Aug 13 18:26:49 p50 kernel:  nvif_object_mthd+0x108/0x130 [nouveau]
Aug 13 18:26:49 p50 kernel:  ? __slab_free+0x141/0x2e0
Aug 13 18:26:49 p50 kernel:  ? __slab_free+0x141/0x2e0
Aug 13 18:26:49 p50 kernel:  nvif_vmm_put+0x5c/0x80 [nouveau]
Aug 13 18:26:49 p50 kernel:  nouveau_vma_del+0x70/0xc0 [nouveau]
Aug 13 18:26:49 p50 kernel:  nouveau_gem_object_delete_work+0x2d/0x50 [nouveau]
Aug 13 18:26:49 p50 kernel:  nouveau_cli_work+0xc7/0x100 [nouveau]
Aug 13 18:26:49 p50 kernel:  process_one_work+0x187/0x340
Aug 13 18:26:49 p50 kernel:  worker_thread+0x2e/0x380
Aug 13 18:26:49 p50 kernel:  ? pwq_unbound_release_workfn+0xd0/0xd0
Aug 13 18:26:49 p50 kernel:  kthread+0x112/0x130
Aug 13 18:26:49 p50 kernel:  ? kthread_create_worker_on_cpu+0x70/0x70
Aug 13 18:26:49 p50 kernel:  ret_from_fork+0x35/0x40

full log attached.


Version-Release number of selected component (if applicable):
4.17.12-200.fc28.x86_64

How reproducible:
Happened twice so far

Steps to Reproduce:
1. Normal system use.
2.
3.

Additional info:
01:00.0 VGA compatible controller [0300]: NVIDIA Corporation GM107GLM [Quadro M1000M] [10de:13b1] (rev a2)

Comment 1 Ben Cotton 2019-05-02 21:09:44 UTC
This message is a reminder that Fedora 28 is nearing its end of life.
On 2019-May-28 Fedora will stop maintaining and issuing updates for
Fedora 28. It is Fedora's policy to close all bug reports from releases
that are no longer maintained. At that time this bug will be closed as
EOL if it remains open with a Fedora 'version' of '28'.

Package Maintainer: If you wish for this bug to remain open because you
plan to fix it in a currently maintained version, simply change the 'version' 
to a later Fedora version.

Thank you for reporting this issue and we are sorry that we were not 
able to fix it before Fedora 28 is end of life. If you would still like 
to see this bug fixed and are able to reproduce it against a later version 
of Fedora, you are encouraged  change the 'version' to a later Fedora 
version prior this bug is closed as described in the policy above.

Although we aim to fix as many bugs as possible during every release's 
lifetime, sometimes those efforts are overtaken by events. Often a 
more recent Fedora release includes newer upstream software that fixes 
bugs or makes them obsolete.

Comment 2 Ben Cotton 2019-05-28 22:07:23 UTC
Fedora 28 changed to end-of-life (EOL) status on 2019-05-28. Fedora 28 is
no longer maintained, which means that it will not receive any further
security or bug fix updates. As a result we are closing this bug.

If you can reproduce this bug against a currently maintained version of
Fedora please feel free to reopen this bug against that version. If you
are unable to reopen this bug, please file a new report against the
current release. If you experience problems, please add a comment to this
bug.

Thank you for reporting this bug and we are sorry it could not be fixed.


Note You need to log in before you can comment on or make changes to this bug.