Bug#902661: linux-image-4.16.0-2-amd64: kernel BUG at /build/linux-uwVqDp/linux-4.16.16/mm/usercopy.c:100!

2018-06-29 Thread Luca Boccassi
Control: reassign -1 nvidia-driver 390.48-3
Control: forcemerge 901919 -1

On Fri, 29 Jun 2018 11:02:37 +0200 Fabian 
wrote:
> Package: src:linux
> Version: 4.16.16-2
> Severity: important
> 
> Dear Maintainer,
> 
> starting X via 'startx' causes every screen to stay black, no more
> interaction with mouse or keyboards is possible. So I connected via
ssh
> and tried to execute 'systemctl reboot'. Only the ssh connection was
> closed but the system stayed running without any interaction.
> After a reboot I looked again via ssh what dmesg prints out.
> It said "usercopy: Kernel memory exposure attempt detected from SLUB
> object 'nvidia_stack_cache' (offset: 11440, size 3)!", followed by
the
> message mentioned in the subject.
> Therefore the system is not usable with X in this configuration.
> 
> nvidia-driver is in version 390.67-1

Version 390.67-1 shipped a NEWS entry telling you what to do - add this
to the kernel cmdline:

slab_common.usercopy_fallback=y

-- 
Kind regards,
Luca Boccassi

signature.asc
Description: This is a digitally signed message part


Bug#902661: linux-image-4.16.0-2-amd64: kernel BUG at /build/linux-uwVqDp/linux-4.16.16/mm/usercopy.c:100!

2018-06-29 Thread Ben Hutchings
Control: reassign -1 src:nvidia-graphics-drivers 390.67-1

On Fri, 2018-06-29 at 11:02 +0200, Fabian wrote:
> Package: src:linux
> Version: 4.16.16-2
> Severity: important
> 
> Dear Maintainer,
> 
> starting X via 'startx' causes every screen to stay black, no more
> interaction with mouse or keyboards is possible. So I connected via ssh
> and tried to execute 'systemctl reboot'. Only the ssh connection was
> closed but the system stayed running without any interaction.
> After a reboot I looked again via ssh what dmesg prints out.
> It said "usercopy: Kernel memory exposure attempt detected from SLUB
> object 'nvidia_stack_cache' (offset: 11440, size 3)!", followed by the
> message mentioned in the subject.
> Therefore the system is not usable with X in this configuration.
> 
> nvidia-driver is in version 390.67-1
[...]

And the bug should have been reported against that.

Ben.

-- 
Ben Hutchings
Sturgeon's Law: Ninety percent of everything is crap.



signature.asc
Description: This is a digitally signed message part


Bug#902661: linux-image-4.16.0-2-amd64: kernel BUG at /build/linux-uwVqDp/linux-4.16.16/mm/usercopy.c:100!

2018-06-29 Thread Fabian
Package: src:linux
Version: 4.16.16-2
Severity: important

Dear Maintainer,

starting X via 'startx' causes every screen to stay black, no more
interaction with mouse or keyboards is possible. So I connected via ssh
and tried to execute 'systemctl reboot'. Only the ssh connection was
closed but the system stayed running without any interaction.
After a reboot I looked again via ssh what dmesg prints out.
It said "usercopy: Kernel memory exposure attempt detected from SLUB
object 'nvidia_stack_cache' (offset: 11440, size 3)!", followed by the
message mentioned in the subject.
Therefore the system is not usable with X in this configuration.

nvidia-driver is in version 390.67-1

-- Package-specific info:
** Version:
Linux version 4.16.0-2-amd64 (debian-ker...@lists.debian.org) (gcc version 
7.3.0 (Debian 7.3.0-23)) #1 SMP Debian 4.16.16-2 (2018-06-22)

** Command line:
BOOT_IMAGE=/vmlinuz-4.16.0-2-amd64 root=/dev/mapper/loki-root ro 
cgroup_enable=memory swapaccount=1 quiet

** Tainted: PDO (4225)
 * Proprietary module has been loaded.
 * Kernel has oopsed before.
 * Out-of-tree module has been loaded.

** Kernel log:
[  116.932901]  ? _nv028088rm+0x55/0x90 [nvidia]
[  116.933048]  ? _nv013695rm+0xee/0x100 [nvidia]
[  116.933195]  ? _nv015343rm+0x154/0x270 [nvidia]
[  116.933350]  ? _nv008317rm+0x134/0x1a0 [nvidia]
[  116.933505]  ? _nv008296rm+0x29c/0x2b0 [nvidia]
[  116.933661]  ? _nv001072rm+0xe/0x20 [nvidia]
[  116.933818]  ? _nv007324rm+0xd8/0x100 [nvidia]
[  116.933962]  ? _nv001171rm+0x627/0x830 [nvidia]
[  116.934106]  ? rm_ioctl+0x73/0x100 [nvidia]
[  116.934240]  ? nvidia_ioctl+0xb0/0x730 [nvidia]
[  116.934370]  ? nvidia_ioctl+0x57c/0x730 [nvidia]
[  116.934371]  ? kmem_cache_free+0x19c/0x1d0
[  116.934501]  ? nvidia_frontend_unlocked_ioctl+0x3e/0x50 [nvidia]
[  116.934502]  ? do_vfs_ioctl+0xa4/0x630
[  116.934504]  ? __fput+0x164/0x1e0
[  116.934505]  ? SyS_ioctl+0x74/0x80
[  116.934507]  ? do_syscall_64+0x6c/0x130
[  116.934508]  ? entry_SYSCALL_64_after_hwframe+0x3d/0xa2
[  116.934509] Code: 2e 00 00 44 8d 42 01 88 50 01 48 8b 05 4a 2e 00 00 8a 48 
02 48 8b 05 40 2e 00 00 41 0b c8 88 48 02 48 8b 05 33 2e 00 00 8a 48 02 <41> 84 
c8 74 0e 66 41 03 d0 b8 ff ff 00 00 66 3b d0 72 e3 f3 c3 
[  126.968483] INFO: NMI handler (nmi_cpu_backtrace_handler) took too long to 
run: 2.416 msecs
[  126.970325] general protection fault:  [#2] SMP NOPTI
[  126.970328] Modules linked in: ctr ccm ipt_MASQUERADE nf_nat_masquerade_ipv4 
nf_conntrack_netlink nfnetlink xfrm_user xfrm_algo iptable_nat 
nf_conntrack_ipv4 nf_defrag_ipv4 nf_nat_ipv4 xt_addrtype xt_conntrack nf_nat 
nf_conntrack br_netfilter bridge stp llc overlay aufs(O) ebtable_filter 
ebtables devlink ip6table_filter ip6_tables iptable_filter pci_stub vboxpci(O) 
vboxnetadp(O) vboxnetflt(O) vboxdrv(O) tun arc4 snd_hda_codec_hdmi nls_ascii 
rt2800usb nls_cp437 rt2x00usb vfat rt2800lib fat rt2x00lib eeepc_wmi asus_wmi 
sparse_keymap mac80211 snd_hda_codec_realtek video mxm_wmi wmi_bmof efi_pstore 
snd_hda_codec_generic cfg80211 edac_mce_amd kvm_amd ccp crc_ccitt rng_core 
evdev rfkill snd_hda_intel joydev kvm snd_hda_codec irqbypass serio_raw efivars 
fam15h_power sg snd_hda_core snd_hwdep snd_pcm snd_timer
[  126.970372]  snd wmi soundcore button shpchp sp5100_tco k10temp 
nvidia_drm(PO) drm_kms_helper drm nvidia_modeset(PO) nvidia(PO) ipmi_devintf 
ipmi_msghandler it87 hwmon_vid loop parport_pc ppdev lp parport efivarfs 
ip_tables x_tables autofs4 ext4 crc16 mbcache jbd2 fscrypto ecb algif_skcipher 
af_alg uas usb_storage dm_crypt dm_mod sr_mod cdrom raid10 raid456 
async_raid6_recov async_memcpy async_pq async_xor async_tx xor hid_holtek_mouse 
hid_generic usbhid hid sd_mod raid6_pq libcrc32c crc32c_generic raid1 raid0 
multipath linear md_mod ohci_pci crct10dif_pclmul crc32_pclmul crc32c_intel 
ghash_clmulni_intel pcbc ahci aesni_intel aes_x86_64 libahci crypto_simd 
glue_helper xhci_pci cryptd ohci_hcd ehci_pci libata xhci_hcd ehci_hcd 
i2c_piix4 usbcore e1000e usb_common scsi_mod
[  126.970449] CPU: 7 PID: 2270 Comm: Xorg Tainted: P  DO 
4.16.0-2-amd64 #1 Debian 4.16.16-2
[  126.970450] Hardware name: To be filled by O.E.M. To be filled by 
O.E.M./Crosshair V Formula, BIOS 1703 10/17/2012
[  126.970854] RIP: 0010:_nv007222rm+0x25/0x90 [nvidia]
[  126.970856] RSP: 0018:a199c4017d20 EFLAGS: 00010006
[  126.970858] RAX: 48e28944ff36 RBX: c14f82b8 RCX: a199c4017db0
[  126.970859] RDX: c089a515 RSI: 08de RDI: c14f82b8
[  126.970860] RBP: 8caf4d202ff8 R08:  R09: a199c4017dac
[  126.970861] R10:  R11: ff00 R12: 08de
[  126.970862] R13: 8caf4d855000 R14: 8caf87ec0f00 R15: 8caf85ef7000
[  126.970864] FS:  7f827a97f6c0() GS:8caf9edc() 
knlGS:
[  126.970866] CS:  0010 DS:  ES:  CR0: 80050033
[  126.970867] CR2: 7f4a27c12900 CR3: 0003af20a000 CR4: 000406e0