lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite for Android: free password hash cracker in your pocket
[<prev] [next>] [day] [month] [year] [list]
Message-ID: <176682185563.8256.115798774340102079@copycat>
Date: Fri, 26 Dec 2025 23:50:55 -0800
From: Christopher Snowhill <chris@...e54.net>
To: nouveau@...ts.freedesktop.org
CC: dri-devel@...ts.freedesktop.org, linux-kernel@...r.kernel.org,
 Lyude Paul <lyude@...hat.com>, Danilo Krummrich <dakr@...nel.org>,
 Maxime Ripard <mripard@...nel.org>, Thomas Zimmermann <tzimmermann@...e.de>,
 David Airlie <airlied@...il.com>, Simona Vetter <simona@...ll.ch>
Subject: NULL pointer dereference in Nouveau in 6.19 rc2 on boot

I get the following NULL pointer dereference on boot, shortly before it
would be showing me my LUKS password prompt on a graphical screen. I had
to trust that there was a prompt and log into it blindly to boot and
recover this kernel log snippet.

This kernel is built using the linux-cachyos-rc package, and only has
minor patches unrelated to DRM code, except that I also applied the
Nouveau ZCULL patch set on top, as well as some downstream sched-ext
patches from Andrea Righi's tree.

Using latest stable linux-firmware packages from CachyOS, so
1:20251125-2.

Should I also have CC'd Maarten Lankhorst? I recall he was retiring from
the maintainer position due to leaving Intel, but get_maintainers.pl
still returns his contact name and address.

Dec 26 22:52:57 cachyos kernel: nouveau 0000:01:00.0: vgaarb: deactivate vga
console
Dec 26 22:52:57 cachyos kernel: BUG: kernel NULL pointer dereference, address:
00000000000000cc
Dec 26 22:52:57 cachyos kernel: #PF: supervisor read access in kernel mode
Dec 26 22:52:57 cachyos kernel: #PF: error_code(0x0000) - not-present page
Dec 26 22:52:57 cachyos kernel: PGD 0 P4D 0
Dec 26 22:52:57 cachyos kernel: Oops: Oops: 0000 [#1] SMP NOPTI
Dec 26 22:52:57 cachyos kernel: CPU: 3 UID: 0 PID: 398 Comm: (udev-worker) Not
tainted 6.19.0-rc2-1-cachyos-rc #1 PREEMPT(full)
71029b2e9fcfeb4957f998851dc3b8eefd7c60f1
Dec 26 22:52:57 cachyos kernel: Hardware name: Micro-Star International Co.,
Ltd. MS-7E16/X670E GAMING PLUS WIFI (MS-7E16), BIOS 1.C7 10/22/2025
Dec 26 22:52:57 cachyos kernel: RIP: 0010:bit_entry+0x14/0xf0 [nouveau]
Dec 26 22:52:57 cachyos kernel: Code: 48 88 f2 0f 1f 00 90 90 90 90 90 90 90
90 90 90 90 90 90 90 90 90 0f 1f 40 d6 0f 1f 44 00 00 41 56 41 55 41 89 f5 41
54 55 53 <8b> b7 cc 00 00 00 85 f6 0f 84 b0 00 00 00 83 c6 0a 49 89 d6 48 89
Dec 26 22:52:57 cachyos kernel: RSP: 0018:ffffd13900b73568 EFLAGS: 00010282
Dec 26 22:52:57 cachyos kernel: RAX: ffff8ef7a5429000 RBX: 0000000000000000
RCX: ffffd13900b735ff
Dec 26 22:52:57 cachyos kernel: RDX: ffffd13900b7359a RSI: 0000000000000070
RDI: 0000000000000000
Dec 26 22:52:57 cachyos kernel: RBP: ffff8ef79305d000 R08: ffffd13900b73608
R09: 000000000000001f
Dec 26 22:52:57 cachyos kernel: R10: 0000000000000002 R11: 0000000000010000
R12: ffffd13900b735ff
Dec 26 22:52:57 cachyos kernel: R13: 0000000000000070 R14: ffffd13900b73608
R15: ffffd13900b735fe
Dec 26 22:52:57 cachyos kernel: FS:  00007f830f677840(0000)
GS:ffff8f0ec8730000(0000) knlGS:0000000000000000
Dec 26 22:52:57 cachyos kernel: CS:  0010 DS: 0000 ES: 0000 CR0:
0000000080050033
Dec 26 22:52:57 cachyos kernel: CR2: 00000000000000cc CR3: 0000000117521000
CR4: 0000000000f50ef0
Dec 26 22:52:57 cachyos kernel: PKRU: 55555554
Dec 26 22:52:57 cachyos kernel: Call Trace:
Dec 26 22:52:57 cachyos kernel:  <TASK>
Dec 26 22:52:57 cachyos kernel:  nvbios_pmuEp+0x51/0x130 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  nvkm_gsp_fwsec_init+0x76/0x3c0 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  r535_gsp_oneinit+0x2e4/0x1060 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  gh100_gsp_oneinit+0x33b/0x4d0 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  nvkm_subdev_init_+0x63/0x100 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  nvkm_subdev_init+0x46/0x60 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  nvkm_device_init+0x163/0x1e0 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  nvkm_udevice_init+0x45/0x70 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  nvkm_object_init+0x42/0x120 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  nvkm_ioctl_new+0x1d8/0x290 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  ? __pfx_nvkm_client_child_new+0x10/0x10
[nouveau 92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  ? __pfx_nvkm_udevice_new+0x10/0x10 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  nvkm_ioctl+0xba/0x130 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos systemd-udevd[363]: 0000:01:00.0: Worker [398]
terminated by signal 9 (KILL).
Dec 26 22:52:57 cachyos kernel:  nvif_object_ctor+0x114/0x190 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  nvif_device_ctor+0x2e/0x70 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  nouveau_drm_device_new+0x15c/0x320 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  nouveau_drm_probe+0xbb/0x210 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  ? __pm_runtime_resume+0x59/0x80
Dec 26 22:52:57 cachyos kernel:  pci_device_probe+0x112/0x2d0
Dec 26 22:52:57 cachyos kernel:  really_probe+0xde/0x400
Dec 26 22:52:57 cachyos kernel:  ? __pfx___driver_attach+0x10/0x10
Dec 26 22:52:57 cachyos kernel:  ? __pfx___driver_attach+0x10/0x10
Dec 26 22:52:57 cachyos kernel:  __driver_probe_device+0x78/0x150
Dec 26 22:52:57 cachyos kernel:  __driver_attach+0xa0/0x340
Dec 26 22:52:57 cachyos kernel:  bus_for_each_dev+0x10b/0x160
Dec 26 22:52:57 cachyos kernel:  bus_add_driver+0x131/0x280
Dec 26 22:52:57 cachyos kernel:  ? __pfx_nouveau_drm_init+0x10/0x10 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  driver_register+0x75/0xe0
Dec 26 22:52:57 cachyos kernel:  nouveau_drm_init+0x1b3/0xff0 [nouveau
92367f81003504f1f8c63f31342b6d203ebdc5d1]
Dec 26 22:52:57 cachyos kernel:  do_one_initcall+0x5b/0x300
Dec 26 22:52:57 cachyos kernel:  do_init_module+0x62/0x250
Dec 26 22:52:57 cachyos kernel:  ? init_module_from_file+0xd6/0x140
Dec 26 22:52:57 cachyos kernel:  init_module_from_file+0xd6/0x140
Dec 26 22:52:57 cachyos kernel:  idempotent_init_module+0x118/0x310
Dec 26 22:52:57 cachyos kernel:  __x64_sys_finit_module+0x71/0xe0
Dec 26 22:52:57 cachyos kernel:  ? syscall_trace_enter+0x91/0x1e0
Dec 26 22:52:57 cachyos kernel:  do_syscall_64+0x81/0x630
Dec 26 22:52:57 cachyos kernel:  ? __x64_sys_pread64+0x9c/0xd0
Dec 26 22:52:57 cachyos kernel:  ? do_syscall_64+0x81/0x630
Dec 26 22:52:57 cachyos kernel:  ? __do_sys_newfstatat+0xe0/0x170
Dec 26 22:52:57 cachyos kernel:  ? do_syscall_64+0x81/0x630
Dec 26 22:52:57 cachyos kernel:  ? irq_exit_rcu+0x55/0x100
Dec 26 22:52:57 cachyos kernel:  entry_SYSCALL_64_after_hwframe+0x79/0x81
Dec 26 22:52:57 cachyos kernel: RIP: 0033:0x7f830ff3c79d
Dec 26 22:52:57 cachyos kernel: Code: ff c3 66 2e 0f 1f 84 00 00 00 00 00 90
f3 0f 1e fa 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24
08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 3b 15 0f 00 f7 d8 64 89 01 48
Dec 26 22:52:57 cachyos kernel: RSP: 002b:00007ffc68e73f08 EFLAGS: 00000246
ORIG_RAX: 0000000000000139
Dec 26 22:52:57 cachyos kernel: RAX: ffffffffffffffda RBX: 0000558c285bb2a0
RCX: 00007f830ff3c79d
Dec 26 22:52:57 cachyos kernel: RDX: 0000000000000004 RSI: 00007f830f6222f2
RDI: 000000000000003f
Dec 26 22:52:57 cachyos kernel: RBP: 00007ffc68e73fa0 R08: 0000000000000000
R09: 0000558c285bc240
Dec 26 22:52:57 cachyos kernel: R10: 0000000000000000 R11: 0000000000000246
R12: 00007f830f6222f2
Dec 26 22:52:57 cachyos kernel: R13: 0000000000020000 R14: 0000558c2853b7a0
R15: 0000558c285bb2a0
Dec 26 22:52:57 cachyos kernel:  </TASK>
Dec 26 22:52:57 cachyos kernel: Modules linked in: dm_mod nouveau(+)
drm_ttm_helper ttm gpu_sched hid_playstation(+) i2c_algo_bit uas nvme
ghash_clmulni_intel drm_gpuvm led_class_multicolor usb_storage aesni_intel
drm_exec ff_memless nvme_core mxm_wmi ccp nvme_keyring drm_display_helper
nvme_auth hid_multitouch hid_logitech_dj(+) video hkdf cec wmi
Dec 26 22:52:57 cachyos kernel: CR2: 00000000000000cc
Dec 26 22:52:57 cachyos kernel: ---[ end trace 0000000000000000 ]---
Dec 26 22:52:57 cachyos kernel: RIP: 0010:bit_entry+0x14/0xf0 [nouveau]
Dec 26 22:52:57 cachyos kernel: Code: 48 88 f2 0f 1f 00 90 90 90 90 90 90 90
90 90 90 90 90 90 90 90 90 0f 1f 40 d6 0f 1f 44 00 00 41 56 41 55 41 89 f5 41
54 55 53 <8b> b7 cc 00 00 00 85 f6 0f 84 b0 00 00 00 83 c6 0a 49 89 d6 48 89
Dec 26 22:52:57 cachyos kernel: RSP: 0018:ffffd13900b73568 EFLAGS: 00010282
Dec 26 22:52:57 cachyos kernel: RAX: ffff8ef7a5429000 RBX: 0000000000000000
RCX: ffffd13900b735ff
Dec 26 22:52:57 cachyos kernel: RDX: ffffd13900b7359a RSI: 0000000000000070
RDI: 0000000000000000
Dec 26 22:52:57 cachyos kernel: RBP: ffff8ef79305d000 R08: ffffd13900b73608
R09: 000000000000001f
Dec 26 22:52:57 cachyos kernel: R10: 0000000000000002 R11: 0000000000010000
R12: ffffd13900b735ff
Dec 26 22:52:57 cachyos kernel: R13: 0000000000000070 R14: ffffd13900b73608
R15: ffffd13900b735fe
Dec 26 22:52:57 cachyos kernel: FS:  00007f830f677840(0000)
GS:ffff8f0ec8730000(0000) knlGS:0000000000000000
Dec 26 22:52:57 cachyos kernel: CS:  0010 DS: 0000 ES: 0000 CR0:
0000000080050033
Dec 26 22:52:57 cachyos kernel: CR2: 00000000000000cc CR3: 0000000117521000
CR4: 0000000000f50ef0
Dec 26 22:52:57 cachyos kernel: PKRU: 55555554
Dec 26 22:52:57 cachyos kernel: note: (udev-worker)[398] exited with irqs
disabled


Download attachment "signature.asc" of type "application/pgp-signature" (834 bytes)

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ