[Bug 267606] x11-drivers/xf86-video-nv: Segmentation Fault post update from 1.20.14,1 to 21.1.4

From: <bugzilla-noreply_at_freebsd.org>
Date: Mon, 29 Jan 2024 21:06:57 UTC
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=267606

--- Comment #47 from Sergiy <Black_N@ukr.net> ---
Comment on attachment 248069
  --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=248069
gdb result (driver xf86-video-nv-2.1.22 unchanged, default).

>Script started on Mon Jan 29 11:22:22 2024
>root@T0sha2_db:/home/Black_N # gdb -c /h[K[K/home/Black_N/Xorg.core /usr/local/libexec /Xorg

>[35;1mGNU gdb (GDB) 13.2 [GDB v13.2 for FreeBSD][m
>Copyright (C) 2023 Free Software Foundation, Inc.
>License GPLv3+: GNU GPL version 3 or later <[32mhttp://gnu.org/licenses/gpl.html[m>
>This is free software: you are free to change and redistribute it.
>There is NO WARRANTY, to the extent permitted by law.
>Type "show copying" and "show warranty" for details.
>This GDB was configured as "x86_64-portbld-freebsd13.2".
>Type "show configuration" for configuration details.
>For bug reporting instructions, please see:
>[32m<https://www.gnu.org/software/gdb/bugs/>[m.
>Find the GDB manual and other documentation resources online at:
>    <[32mhttp://www.gnu.org/software/gdb/documentation/[m>.
>
>For help, type "help".
>Type "apropos word" to search for commands related to "word"...
>Reading symbols from [32m/usr/local/libexec/Xorg[m...
>[New LWP 100142]
>[New LWP 100143]
>
>warning: Could not load shared library symbols for [vdso].
>Do you need "set solib-search-path" or "set sysroot"?
>Core was generated by `/usr/local/libexec/Xorg :0 -auth /root/.serverauth.1002'.
>Program terminated with signal SIGABRT, Aborted.
>Sent by thr_kill() from pid 1015 and user 0.
>#0  [33mthr_kill[m () at [32mthr_kill.S[m:4
>4	thr_kill.S: No such file or directory.
>[Current thread is 1 (LWP 100142)]
>[?2004h(gdb) bt
>[?2004l
#0  [33mthr_kill[m () at [32mthr_kill.S[m:4
>#1  [34m0x0000000828dcd6f4[m in [33m__raise[m ([36ms=s@entry[m=6)
>    at [32m/usr/src/lib/libc/gen/raise.c[m:52
>#2  [34m0x0000000828e7ebc9[m in [33mabort[m () at [32m/usr/src/lib/libc/stdlib/abort.c[m:67
>#3  [34m0x000000000045de4c[m in [33mOsAbort[m () at [32m../os/utils.c[m:1352
>#4  [34m0x00000000004684b6[m in [33mAbortServer[m () at [32m../os/log.c[m:879
>#5  [34m0x0000000000465fd7[m in [33mFatalError[m (
>    [36mf[m=0x23a3de "Caught signal %d (%s). Server aborting\n") at [32m../os/log.c[m:1017
>#6  [34m0x000000000045a763[m in [33mOsSigHandler[m ([36msigno[m=11, [36msip[m=0x820658710, 
>    [36munused[m=0x8206583a0) at [32m../os/osinit.c[m:156
>#7  [34m0x000000082766eb6e[m in [33mhandle_signal[m ([36mactp=actp@entry[m=0x820658320, 
>    [36msig=sig@entry[m=11, [36minfo=info@entry[m=0x820658710, [36mucp=ucp@entry[m=0x8206583a0)
>    at [32m/usr/src/lib/libthr/thread/thr_sig.c[m:301
>#8  [34m0x000000082766e11f[m in [33mthr_sighandler[m ([36msig[m=11, [36minfo[m=0x0, 
>    [36m_ucp[m=0x828e54daa <thr_self+10>) at [32m/usr/src/lib/libthr/thread/thr_sig.c[m:246
>#9  [2m<signal handler called>[m
>#10 [33mstrcmp[m () at [32m/usr/src/lib/libc/amd64/string/strcmp.S[m:46
>#11 [34m0x000000000049cc5d[m in [33mxf86LookupMode[m ([36mscrp[m=0x83014fe00, [36mmodep[m=0x8301b5b80, 
>    [36mclockRanges[m=0x8300b4810, [36mstrategy[m=LOOKUP_BEST_REFRESH)
>    at [32m../hw/xfree86/common/xf86Mode.c[m:511
>#12 [34m0x000000000049b1c3[m in [33mxf86ValidateModes[m ([36mscrp[m=0x83014fe00, 
>    [36mavailModes[m=0x83013d0c0, [36mmodeNames[m=0x830087710, [36mclockRanges[m=0x8300b4810, 
>    [36mlinePitches[m=0x0, [36mminPitch[m=256, [36mmaxPitch[m=4080, [36mpitchInc[m=512, [36mminHeight[m=128, 
>    [36mmaxHeight[m=4096, [36mvirtualX[m=0, [36mvirtualY[m=0, [36mapertureSize[m=267845632, 
>    [36mstrategy[m=LOOKUP_BEST_REFRESH) at [32m../hw/xfree86/common/xf86Mode.c[m:1719
>#13 [34m0x000000083713f25a[m in [33mNVPreInit[m ([36mpScrn[m=0x83014fe00, [36mflags[m=0)
>    at [32mnv_driver.c[m:1978
>#14 [34m0x000000000048467d[m in [33mInitOutput[m ([36mpScreenInfo[m=0x54b8b8 <screenInfo>, 
>    [36margc[m=4, [36margv[m=0x820658de0) at [32m../hw/xfree86/common/xf86Init.c[m:478
>#15 [34m0x00000000002f9a6a[m in [33mdix_main[m ([36margc[m=4, [36margv[m=0x820658de0, [36menvp[m=0x820658e08)
>    at [32m../dix/main.c[m:190
>#16 [34m0x000000000050dc2a[m in [33mmain[m ([36margc[m=4, [36margv[m=0x820658de0, [36menvp[m=0x820658e08)
>    at [32m../dix/stubmain.c[m:34
>[?2004h(gdb) bt full
>[?2004l
#0  [33mthr_kill[m () at [32mthr_kill.S[m:4
>No locals.
>#1  [34m0x0000000828dcd6f4[m in [33m__raise[m ([36ms=s@entry[m=6)
>    at [32m/usr/src/lib/libc/gen/raise.c[m:52
>        [36mid[m = 100142
>#2  [34m0x0000000828e7ebc9[m in [33mabort[m () at [32m/usr/src/lib/libc/stdlib/abort.c[m:67
>        [36mact[m = {[36m__sigaction_u[m = {[36m__sa_handler[m = [34m0x0[m, [36m__sa_sigaction[m = [34m0x0[m}, 
>          [36msa_flags[m = 4564560, [36msa_mask[m = {[36m__bits[m = {4294967263, 4294967295, 
>              4294967295, 4294967295}}}
>#3  [34m0x000000000045de4c[m in [33mOsAbort[m () at [32m../os/utils.c[m:1352
>No locals.
>#4  [34m0x00000000004684b6[m in [33mAbortServer[m () at [32m../os/log.c[m:879
>No locals.
>#5  [34m0x0000000000465fd7[m in [33mFatalError[m (
>    [36mf[m=0x23a3de "Caught signal %d (%s). Server aborting\n") at [32m../os/log.c[m:1017
>        [36mbeenhere[m = 1
>        [36margs[m = {{[36mgp_offset[m = 24, [36mfp_offset[m = 48, 
>            [36moverflow_arg_area[m = [34m0x820657f30[m, [36mreg_save_area[m = [34m0x820657e30[m}}
>        [36margs2[m = {{[36mgp_offset[m = 8, [36mfp_offset[m = 48, 
>            [36moverflow_arg_area[m = [34m0x820657f30[m, [36mreg_save_area[m = [34m0x820657e30[m}}
>#6  [34m0x000000000045a763[m in [33mOsSigHandler[m ([36msigno[m=11, [36msip[m=0x820658710, 
>    [36munused[m=0x8206583a0) at [32m../os/osinit.c[m:156
>No locals.
>#7  [34m0x000000082766eb6e[m in [33mhandle_signal[m ([36mactp=actp@entry[m=0x820658320, 
>    [36msig=sig@entry[m=11, [36minfo=info@entry[m=0x820658710, [36mucp=ucp@entry[m=0x8206583a0)
>    at [32m/usr/src/lib/libthr/thread/thr_sig.c[m:301
>        [36muc2[m = {[36muc_sigmask[m = {[36m__bits[m = {0, 4294967295, 0, 0}}, [36muc_mcontext[m = {
>            [36mmc_onstack[m = 0, [36mmc_rdi[m = 0, [36mmc_rsi[m = 35165516480, 
>            [36mmc_rdx[m = 34903260032, [36mmc_rcx[m = 206158430216, [36mmc_r8[m = 34903263392, 
>            [36mmc_r9[m = 34903263152, [36mmc_rax[m = 1024, [36mmc_rbx[m = 0, 
>            [36mmc_rbp[m = 35046592752, [36mmc_r10[m = 0, [36mmc_r11[m = 0, [36mmc_r12[m = 0, 
>            [36mmc_r13[m = 34903260112, [36mmc_r14[m = 4398046511104, [36mmc_r15[m = 196616, 
>            [36mmc_trapno[m = 543521744, [36mmc_fs[m = 8, [36mmc_gs[m = 0, [36mmc_addr[m = 1024, 
>            [36mmc_flags[m = 0, [36mmc_es[m = 0, [36mmc_ds[m = 0, [36mmc_err[m = 35046592752, 
>            [36mmc_rip[m = 0, [36mmc_cs[m = 0, [36mmc_rflags[m = 0, [36mmc_rsp[m = 35045740768, 
>            [36mmc_ss[m = 0, [36mmc_len[m = 0, [36mmc_fpformat[m = 0, [36mmc_ownedfp[m = 0, 
>            [36mmc_fpstate[m = {0, 0, 0, 0, 0, 0, -4294967296, 0, 0, 0, 35165516480, 
>              35194167560, 34903261472, 35020778426, 0, 0, 0, 0, 0, 
>              35165516480, 0, 34903261520, 35046527704, 35046600176, 
>              34903261824, 2311003, 34903261504, 35020752016, 35046521264, 13, 
>              34903261632, 35045744854, 0, 35045741408, 35046592752, 0, 
>              35165516480, 35194167560, 34903261680, 35020778426, 34903261632, 
>              35045741015, 66, 34903262016, 0, 35165516480, 543523344, 
>              34903261760, 1, 1, 66, 35046592752, 34903261712, 35020752016, 
>              35046521264, 66, 34903261872, 35045724063, 34903262016, 66, 
>              34903261728, 1, 0, 35045741408}, [36mmc_fsbase[m = 35046592752, 
>            [36mmc_gsbase[m = 1095216660480, [36mmc_xfpustate[m = 4644985458150304907, 
>            [36mmc_xfpustate_len[m = 0, [36mmc_spare[m = {1, 0, -4808989965519753994, 0}}, 
>          [36muc_link[m = [34m0x200[m, [36muc_stack[m = {[36mss_sp[m = [34m0xff0[m, [36mss_size[m = 4096, 
>[?2004h--Type <RET> for more, q to quit, c to continue without paging--c
>[?2004l
            [36mss_flags[m = 128}, [36muc_flags[m = 543523568, [36m__spare__[m
= {8, 4615166, 0, 
>            66}}
>        [36mcurthread[m = [34m0x830073000[m
>        [36min_sigsuspend[m = 0
>        [36mcancel_enable[m = 1
>        [36mcancel_point[m = 0
>        [36msigfunc[m = [34m0x0[m
>        [36merr[m = [2m<optimized out>[m
>        [36mcancel_async[m = [2m<optimized out>[m
>#8  [34m0x000000082766e11f[m in [33mthr_sighandler[m ([36msig[m=11, [36minfo[m=0x0, 
>    [36m_ucp[m=0x828e54daa <thr_self+10>) at [32m/usr/src/lib/libthr/thread/thr_sig.c[m:246
>        [36mact[m = {[36m__sigaction_u[m = {[36m__sa_handler[m = [34m0x45a650[m <[33mOsSigHandler[m>, 
>            [36m__sa_sigaction[m = [34m0x45a650[m <[33mOsSigHandler[m>}, [36msa_flags[m = 64, 
>          [36msa_mask[m = {[36m__bits[m = {1024, 0, 0, 0}}}
>        [36merr[m = 20
>        [36mcurthread[m = [34m0x830073000[m
>        [36mucp[m = [2m<optimized out>[m
>        [36musa[m = [2m<optimized out>[m
>#9  [2m<signal handler called>[m
>No symbol table info available.
>#10 [33mstrcmp[m () at [32m/usr/src/lib/libc/amd64/string/strcmp.S[m:46
>No locals.
>#11 [34m0x000000000049cc5d[m in [33mxf86LookupMode[m ([36mscrp[m=0x83014fe00, [36mmodep[m=0x8301b5b80, 
>    [36mclockRanges[m=0x8300b4810, [36mstrategy[m=LOOKUP_BEST_REFRESH)
>    at [32m../hw/xfree86/common/xf86Mode.c[m:511
>        [36mtype[m = 64
>        [36mp[m = [34m0x8301b5ac0[m
>        [36mbestMode[m = [34m0x0[m
>        [36mcp[m = [34m0x0[m
>        [36mi[m = 0
>        [36mk[m = 0
>        [36mgap[m = 0
>        [36mminimumGap[m = 2001
>        [36mrefresh[m = 2.3889185624127413e-317
>        [36mbestRefresh[m = 0
>        [36mfound[m = 0
>        [36mextraFlags[m = 0
>        [36mclockIndex[m = -1
>        [36mMulFactor[m = 1
>        [36mDivFactor[m = 1
>        [36mModePrivFlags[m = 0
>        [36mstatus[m = [36mMODE_NOMODE[m
>        [36mallowDiv2[m = 0
>        [36mn[m = 5
>        [36mtypes[m = {9, 1, 40, 32, 72, 64, 0}
>        [36mntypes[m = 7
>#12 [34m0x000000000049b1c3[m in [33mxf86ValidateModes[m ([36mscrp[m=0x83014fe00, 
>    [36mavailModes[m=0x83013d0c0, [36mmodeNames[m=0x830087710, [36mclockRanges[m=0x8300b4810, 
>    [36mlinePitches[m=0x0, [36mminPitch[m=256, [36mmaxPitch[m=4080, [36mpitchInc[m=512, [36mminHeight[m=128, 
>    [36mmaxHeight[m=4096, [36mvirtualX[m=0, [36mvirtualY[m=0, [36mapertureSize[m=267845632, 
>    [36mstrategy[m=LOOKUP_BEST_REFRESH) at [32m../hw/xfree86/common/xf86Mode.c[m:1719
>        [36mrepeat[m = 0
>        [36mp[m = [34m0x8301b5b80[m
>        [36mq[m = [34m0x8301b5ac0[m
>        [36mr[m = [34m0x690[m
>        [36mnew[m = [34m0x8301b5b80[m
>        [36mlast[m = [34m0x8301b5b80[m
>        [36mendp[m = [34m0x8301b5b88[m
>        [36mi[m = 1
>        [36mnumModes[m = 0
>        [36mstatus[m = [36mMODE_OK[m
>        [36mlinePitch[m = -1
>        [36mvirtX[m = 0
>        [36mvirtY[m = 0
>        [36mnewLinePitch[m = 8
>        [36mnewVirtX[m = 773883912
>        [36mnewVirtY[m = 8
>        [36mmodeSize[m = 923997624
>        [36mvalidateAllDefaultModes[m = 1
>        [36muserModes[m = 1
>        [36msaveType[m = 32
>        [36mBankFormat[m = [34m0x83014fe50[m
>        [36mcp[m = [34m0x0[m
>        [36mnumTimings[m = 0
>        [36mhsync[m = {{[36mhi[m = 1.94434593e-19, [36mlo[m = 1.12103877e-44}, {[36mhi[m = 8671373, 
>            [36mlo[m = 2.07812562e-41}, {[36mhi[m = 0, [36mlo[m = 0}, {[36mhi[m = 0, [36mlo[m = 0}, {
>            [36mhi[m = 3.58732407e-43, [36mlo[m = 0}, {[36mhi[m = 0, [36mlo[m = 0}, {
>            [36mhi[m = 5.42030421e-10, [36mlo[m = 1.12103877e-44}, {[36mhi[m = 5.37749401e-10, 
>            [36mlo[m = 1.12103877e-44}}
>        [36mvrefresh[m = {{[36mhi[m = 6.76031221e-39, [36mlo[m = 0}, {[36mhi[m = 3.07585573e-39, 
>            [36mlo[m = 0}, {[36mhi[m = 4.64922804e-41, [36mlo[m = 0}, {[36mhi[m = 5.73971851e-42, 
>            [36mlo[m = 0}, {[36mhi[m = 1.94439867e-19, [36mlo[m = 1.12103877e-44}, {[36mhi[m = 0, 
>            [36mlo[m = 0}, {[36mhi[m = 5.71729773e-42, [36mlo[m = 0}, {[36mhi[m = 5.60519386e-45, 
>            [36mlo[m = 0}}
>        [36minferred_virtual[m = 0
>#13 [34m0x000000083713f25a[m in [33mNVPreInit[m ([36mpScrn[m=0x83014fe00, [36mflags[m=0)
>    at [32mnv_driver.c[m:1978
>        [36mpNv[m = [34m0x8300c3800[m
>        [36mfrom[m = [36mX_PROBED[m
>        [36mi[m = 773853856
>        [36mmax_width[m = 4080
>        [36mmax_height[m = 4096
>        [36mclockRanges[m = [34m0x8300b4810[m
>        [36ms[m = [34m0x0[m
>        [36mconfig_mon_rates[m = 1
>#14 [34m0x000000000048467d[m in [33mInitOutput[m ([36mpScreenInfo[m=0x54b8b8 <screenInfo>, 
>    [36margc[m=4, [36margv[m=0x820658de0) at [32m../hw/xfree86/common/xf86Init.c[m:478
>        [36mi[m = 0
>        [36mj[m = 0
>        [36mk[m = 0
>        [36mscr_index[m = 0
>        [36mmodulelist[m = [34m0x0[m
>        [36moptionlist[m = [34m0x830087ba0[m
>        [36mautoconfig[m = 0
>        [36msigio_blocked[m = 0
>        [36mwant_hw_access[m = 1
>        [36mconfigured_device[m = [34m0x830160300[m
>#15 [34m0x00000000002f9a6a[m in [33mdix_main[m ([36margc[m=4, [36margv[m=0x820658de0, [36menvp[m=0x820658e08)
>    at [32m../dix/main.c[m:190
>        [36mi[m = 256
>        [36malwaysCheckForInput[m = {0, 1}
>#16 [34m0x000000000050dc2a[m in [33mmain[m ([36margc[m=4, [36margv[m=0x820658de0, [36menvp[m=0x820658e08)
>    at [32m../dix/stubmain.c[m:34
>No locals.
>[?2004h(gdb) exit
>[?2004l
root@T0sha2_db:/home/Black_N # ^Dexit
>
>Script done on Mon Jan 29 11:28:31 2024

-- 
You are receiving this mail because:
You are on the CC list for the bug.
You are the assignee for the bug.