I updated to 24.04 hwe (sudo apt install linux-generic-hwe-24.04).

Kernel is 6.11.0-17-generic now.

Same problem : the PC freeze completely when I download a big file or
randomly when navigating on the internet.

Still this in dmesg output (BEFORE the problem occurs, so it is maybe
not related to the freeze) :

[   25.105952] ------------[ cut here ]------------
[   25.105955] UBSAN: array-index-out-of-bounds in 
/var/lib/dkms/broadcom-sta/6.30.223.271/build/src/wl/sys/wl_linux.c:1935:4
[   25.105960] index 2 is out of range for type 'ether_addr [1]'
[   25.105963] CPU: 0 UID: 0 PID: 893 Comm: NetworkManager Tainted: P           
OE      6.11.0-17-generic #17~24.04.2-Ubuntu
[   25.105967] Tainted: [P]=PROPRIETARY_MODULE, [O]=OOT_MODULE, 
[E]=UNSIGNED_MODULE
[   25.105969] Hardware name: ASUSTeK COMPUTER INC. G750JX/G750JX, BIOS 
G750JX.209 11/18/2013
[   25.105971] Call Trace:
[   25.105973]  <TASK>
[   25.105976]  dump_stack_lvl+0x76/0xa0
[   25.105985]  dump_stack+0x10/0x20
[   25.105988]  __ubsan_handle_out_of_bounds+0xcb/0x110
[   25.105992]  _wl_set_multicast_list+0x126/0x230 [wl]
[   25.106047]  wl_set_multicast_list+0x3a/0xa0 [wl]
[   25.106108]  __dev_set_rx_mode+0x79/0xe0
[   25.106112]  __dev_mc_add+0x94/0xa0
[   25.106116]  dev_mc_add+0x10/0x20
[   25.106120]  igmp_group_added+0x1c1/0x1f0
[   25.106123]  ? __kmalloc_cache_noprof+0x10d/0x320
[   25.106127]  ____ip_mc_inc_group+0x1b9/0x320
[   25.106130]  ip_mc_up+0x54/0xd0
[   25.106132]  inetdev_event+0x2a5/0x530
[   25.106135]  notifier_call_chain+0x61/0xe0
[   25.106139]  raw_notifier_call_chain+0x16/0x30
[   25.106141]  call_netdevice_notifiers_info+0x52/0xa0
[   25.106145]  __dev_notify_flags+0x58/0x100
[   25.106147]  dev_change_flags+0x56/0x80
[   25.106150]  do_setlink+0xab7/0xe50
[   25.106154]  ? default_wake_function+0x1a/0x40
[   25.106158]  ? ep_autoremove_wake_function+0x12/0x40
[   25.106162]  ? __wake_up_common+0x79/0xb0
[   25.106165]  ? __nla_validate_parse+0x49/0x1d0
[   25.106170]  __rtnl_newlink+0x69b/0x720
[   25.106176]  rtnl_newlink+0x77/0xa0
[   25.106180]  rtnetlink_rcv_msg+0x170/0x460
[   25.106183]  ? ____sys_sendmsg+0x3ab/0x410
[   25.106187]  ? __pfx_rtnetlink_rcv_msg+0x10/0x10
[   25.106190]  netlink_rcv_skb+0x5d/0x110
[   25.106194]  rtnetlink_rcv+0x15/0x30
[   25.106197]  netlink_unicast+0x248/0x390
[   25.106200]  netlink_sendmsg+0x213/0x470
[   25.106203]  ____sys_sendmsg+0x3ab/0x410
[   25.106206]  ___sys_sendmsg+0x9a/0xf0
[   25.106222]  __sys_sendmsg+0x89/0xf0
[   25.106227]  __x64_sys_sendmsg+0x1d/0x30
[   25.106230]  x64_sys_call+0x912/0x25f0
[   25.106234]  do_syscall_64+0x7e/0x170
[   25.106249]  ? syscall_exit_to_user_mode+0x18d/0x250
[   25.106253]  ? do_syscall_64+0x8a/0x170
[   25.106256]  ? syscall_exit_to_user_mode+0x4e/0x250
[   25.106259]  ? do_syscall_64+0x8a/0x170
[   25.106262]  ? do_syscall_64+0x8a/0x170
[   25.106265]  ? do_syscall_64+0x8a/0x170
[   25.106267]  ? irqentry_exit_to_user_mode+0x182/0x250
[   25.106269]  ? irqentry_exit+0x43/0x50
[   25.106271]  ? common_interrupt+0x64/0xe0
[   25.106274]  entry_SYSCALL_64_after_hwframe+0x76/0x7e
[   25.106279] RIP: 0033:0x7be1b7b2c03b
[   25.106281] Code: 48 89 e5 48 83 ec 20 89 55 ec 48 89 75 f0 89 7d f8 e8 29 
c5 f6 ff 8b 55 ec 48 8b 75 f0 41 89 c0 8b 7d f8 b8 2e 00 00 00 0f 05 <48> 3d 00 
f0 ff ff 77 2d 44 89 c7 48 89 45 f8 e8 81 c5 f6 ff 48 8b
[   25.106297] RSP: 002b:00007fffae618b00 EFLAGS: 00000293 ORIG_RAX: 
000000000000002e
[   25.106300] RAX: ffffffffffffffda RBX: 0000573049ef3010 RCX: 00007be1b7b2c03b
[   25.106301] RDX: 0000000000000000 RSI: 00007fffae618b40 RDI: 000000000000000d
[   25.106302] RBP: 00007fffae618b20 R08: 0000000000000000 R09: 0000000000000000
[   25.106303] R10: 0000000000000000 R11: 0000000000000293 R12: 0000000000000010
[   25.106304] R13: 0000573049ef3010 R14: 0000000000000001 R15: 0000000000000000
[   25.106306]  </TASK>
[   25.106307] ---[ end trace ]---
[   29.794789] ------------[ cut here ]------------
[   29.794793] memcpy: detected field-spanning write (size 346) of single field 
"dst" at 
/var/lib/dkms/broadcom-sta/6.30.223.271/build/src/wl/sys/wl_cfg80211_hybrid.c:3076
 (size 0)
[   29.794823] WARNING: CPU: 5 PID: 599 at 
/var/lib/dkms/broadcom-sta/6.30.223.271/build/src/wl/sys/wl_cfg80211_hybrid.c:3076
 wl_inform_single_bss+0x46f/0x6b0 [wl]
[   29.794893] Modules linked in: rfcomm snd_seq_dummy snd_hrtimer xt_conntrack 
nft_chain_nat xt_MASQUERADE nf_nat nf_conntrack_netlink nf_conntrack 
nf_defrag_ipv6 nf_defrag_ipv4 xfrm_user xfrm_algo xt_addrtype nft_compat 
nf_tables libcrc32c br_netfilter bridge stp llc vboxnetadp(OE) vboxnetflt(OE) 
vboxdrv(OE) nvidia_uvm(POE) nvidia_drm(POE) nvidia_modeset(POE) overlay qrtr 
cmac algif_hash algif_skcipher af_alg bnep intel_rapl_msr intel_rapl_common 
x86_pkg_temp_thermal intel_powerclamp coretemp kvm_intel snd_hda_codec_realtek 
snd_hda_codec_generic nvidia(POE) snd_hda_scodec_component snd_hda_codec_hdmi 
kvm spi_nor snd_hda_intel mtd binfmt_misc snd_intel_dspcfg snd_intel_sdw_acpi 
crct10dif_pclmul polyval_clmulni snd_hda_codec polyval_generic 
ghash_clmulni_intel snd_hda_core at24 mei_hdcp snd_hwdep sha256_ssse3 snd_pcm 
wl(POE) sha1_ssse3 mei_pxp snd_seq_midi snd_seq_midi_event aesni_intel btusb 
snd_rawmidi uvcvideo btrtl crypto_simd cryptd btintel videobuf2_vmalloc 
nls_iso8859_1 uvc sp
 i_intel_platform videobuf2_memops
[   29.794942]  btbcm snd_seq videobuf2_v4l2 asus_nb_wmi btmtk spi_intel 
mfd_aaeon i2c_i801 rapl videodev snd_seq_device asus_wmi i2c_mux bluetooth 
sparse_keymap videobuf2_common intel_cstate platform_profile i2c_smbus 
snd_timer cfg80211 mc snd mei_me soundcore mei lpc_ich input_leds joydev 
asus_wireless mac_hid serio_raw sch_fq_codel msr parport_pc ppdev lp parport 
efi_pstore nfnetlink dmi_sysfs ip_tables x_tables autofs4 hid_logitech_hidpp 
hid_logitech_dj hid_generic usbhid hid crc32_pclmul psmouse ahci alx libahci 
mdio xhci_pci xhci_pci_renesas video wmi
[   29.794981] CPU: 5 UID: 0 PID: 599 Comm: wl_event_handle Tainted: P          
 OE      6.11.0-17-generic #17~24.04.2-Ubuntu
[   29.794985] Tainted: [P]=PROPRIETARY_MODULE, [O]=OOT_MODULE, 
[E]=UNSIGNED_MODULE
[   29.794986] Hardware name: ASUSTeK COMPUTER INC. G750JX/G750JX, BIOS 
G750JX.209 11/18/2013
[   29.794987] RIP: 0010:wl_inform_single_bss+0x46f/0x6b0 [wl]
[   29.795041] Code: 31 c9 48 c7 c2 e0 c3 0d c1 4c 89 ee 4c 89 5d 88 48 c7 c7 
38 c3 0d c1 48 89 85 78 ff ff ff c6 05 8b ba 15 00 01 e8 61 42 2d d6 <0f> 0b 48 
8b 85 78 ff ff ff 4c 8b 5d 88 e9 1b fd ff ff e8 8a d6 13
[   29.795043] RSP: 0018:ffffafab419cfd80 EFLAGS: 00010246
[   29.795045] RAX: 0000000000000000 RBX: ffff94a10842400c RCX: 0000000000000000
[   29.795047] RDX: 0000000000000000 RSI: 0000000000000000 RDI: 0000000000000000
[   29.795048] RBP: ffffafab419cfe18 R08: 0000000000000000 R09: 0000000000000000
[   29.795049] R10: 0000000000000000 R11: 0000000000000000 R12: ffff94a16dc14000
[   29.795050] R13: 000000000000015a R14: ffff94a106ac2920 R15: 0000000000000050
[   29.795052] FS:  0000000000000000(0000) GS:ffff94a48f080000(0000) 
knlGS:0000000000000000
[   29.795054] CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
[   29.795055] CR2: 00005bea71ba48b8 CR3: 00000001f963e004 CR4: 00000000001706f0
[   29.795057] Call Trace:
[   29.795058]  <TASK>
[   29.795060]  ? show_regs+0x6c/0x80
[   29.795067]  ? __warn+0x88/0x140
[   29.795069]  ? wl_inform_single_bss+0x46f/0x6b0 [wl]
[   29.795124]  ? report_bug+0x182/0x1b0
[   29.795127]  ? handle_bug+0x6e/0xb0
[   29.795130]  ? exc_invalid_op+0x18/0x80
[   29.795133]  ? asm_exc_invalid_op+0x1b/0x20
[   29.795139]  ? wl_inform_single_bss+0x46f/0x6b0 [wl]
[   29.795192]  ? wlc_set_ratetable+0x2ce/0x3e2 [wl]
[   29.795235]  ? wlc_ioctl_internal+0xbc/0x170 [wl]
[   29.795289]  wl_notify_scan_status+0x230/0x360 [wl]
[   29.795342]  wl_event_handler+0x7b/0x240 [wl]
[   29.795395]  ? __pfx_wl_event_handler+0x10/0x10 [wl]
[   29.795447]  kthread+0xe4/0x110
[   29.795450]  ? __pfx_kthread+0x10/0x10
[   29.795453]  ret_from_fork+0x47/0x70
[   29.795454]  ? __pfx_kthread+0x10/0x10
[   29.795457]  ret_from_fork_asm+0x1a/0x30
[   29.795461]  </TASK>
[   29.795462] ---[ end trace 0000000000000000 ]---

-- 
You received this bug notification because you are a member of Kernel
Packages, which is subscribed to broadcom-sta in Ubuntu.
https://bugs.launchpad.net/bugs/2078697

Title:
  Ubuntu 24.04.1 (kernel ?) freeze/crashes when downloading using
  broadcom-sta package

Status in broadcom-sta package in Ubuntu:
  Confirmed

Bug description:
  I just updated my computer from Ubuntu 22.04 to Ubuntu 24.04.

  I observe that my PC started freezing. I need to reboot it to make it
  works again.

  The freeze/crash appears when I download something (updates from
  Ubuntu, file on the internet, or just navigating on the internet).

  This problem never occurs in 22.04.

  When the crash occurs, there is no log. The screen stays frozen.

  But in logs, I have found this but I don't know if it is related (8
  times) :

  sept. 02 12:15:55 kernel: ------------[ cut here ]------------
  sept. 02 12:15:55 kernel: UBSAN: array-index-out-of-bounds in 
/var/lib/dkms/broadcom-sta/6.30.223.271/build/src/wl/sys/wl_linux.c:1935:4
  sept. 02 12:15:55 kernel: index 2 is out of range for type 'ether_addr [1]'
  sept. 02 12:15:55 kernel: CPU: 2 PID: 943 Comm: wpa_supplicant Tainted: P     
      OE      6.8.0-41-generic #41-Ubuntu
  sept. 02 12:15:55 kernel: Hardware name: ASUSTeK COMPUTER INC. G750JX/G750JX, 
BIOS G750JX.209 11/18/2013
  sept. 02 12:15:55 kernel: Call Trace:
  sept. 02 12:15:55 kernel:  <TASK>
  sept. 02 12:15:55 kernel:  dump_stack_lvl+0x76/0xa0
  sept. 02 12:15:55 kernel:  dump_stack+0x10/0x20
  sept. 02 12:15:55 kernel:  __ubsan_handle_out_of_bounds+0xc6/0x110
  sept. 02 12:15:55 kernel:  _wl_set_multicast_list+0x211/0x230 [wl]
  sept. 02 12:15:55 kernel:  wl_set_multicast_list+0x3a/0xa0 [wl]
  sept. 02 12:15:55 kernel:  __dev_set_rx_mode+0x79/0xe0
  sept. 02 12:15:55 kernel:  __dev_mc_add+0x94/0xa0
  sept. 02 12:15:55 kernel:  dev_mc_add+0x10/0x20
  sept. 02 12:15:55 kernel:  igmp6_group_added+0xe0/0x100
  sept. 02 12:15:55 kernel:  ipv6_mc_up+0xa2/0xd0
  sept. 02 12:15:55 kernel:  ipv6_find_idev+0x47/0xb0
  sept. 02 12:15:55 kernel:  addrconf_add_dev+0x24/0xd0
  sept. 02 12:15:55 kernel:  addrconf_init_auto_addrs+0xe7/0x3c0
  sept. 02 12:15:55 kernel:  addrconf_notify+0x4c3/0x560
  sept. 02 12:15:55 kernel:  notifier_call_chain+0x61/0xe0
  sept. 02 12:15:55 kernel:  raw_notifier_call_chain+0x16/0x30
  sept. 02 12:15:55 kernel:  call_netdevice_notifiers_info+0x52/0xa0
  sept. 02 12:15:55 kernel:  netdev_state_change+0x7b/0xa0
  sept. 02 12:15:55 kernel:  set_operstate+0x5c/0xb0
  sept. 02 12:15:55 kernel:  do_setlink+0x504/0xe70
  sept. 02 12:15:55 kernel:  ? __nla_validate_parse+0x151/0x1e0
  sept. 02 12:15:55 kernel:  rtnl_setlink+0x12f/0x1f0
  sept. 02 12:15:55 kernel:  ? try_to_wake_up+0x227/0x700
  sept. 02 12:15:55 kernel:  ? security_capable+0x47/0x80
  sept. 02 12:15:55 kernel:  rtnetlink_rcv_msg+0x170/0x430
  sept. 02 12:15:55 kernel:  ? ep_poll_callback+0x23f/0x290
  sept. 02 12:15:55 kernel:  ? __pfx_rtnetlink_rcv_msg+0x10/0x10
  sept. 02 12:15:55 kernel:  netlink_rcv_skb+0x5d/0x110
  sept. 02 12:15:55 kernel:  rtnetlink_rcv+0x15/0x30
  sept. 02 12:15:55 kernel:  netlink_unicast+0x24d/0x390
  sept. 02 12:15:55 kernel:  netlink_sendmsg+0x214/0x470
  sept. 02 12:15:55 kernel:  __sys_sendto+0x21e/0x230
  sept. 02 12:15:55 kernel:  __x64_sys_sendto+0x24/0x40
  sept. 02 12:15:55 kernel:  x64_sys_call+0x1c33/0x25c0
  sept. 02 12:15:55 kernel:  do_syscall_64+0x7f/0x180
  sept. 02 12:15:55 kernel:  ? syscall_exit_to_user_mode+0x89/0x260
  sept. 02 12:15:55 kernel:  ? do_syscall_64+0x8c/0x180
  sept. 02 12:15:55 kernel:  ? sock_def_readable+0x52/0xf0
  sept. 02 12:15:55 kernel:  ? unix_dgram_sendmsg+0x667/0xab0
  sept. 02 12:15:55 kernel:  ? __sys_sendto+0x21e/0x230
  sept. 02 12:15:55 kernel:  ? syscall_exit_to_user_mode+0x89/0x260
  sept. 02 12:15:55 kernel:  ? do_syscall_64+0x8c/0x180
  sept. 02 12:15:55 kernel:  ? do_user_addr_fault+0x21a/0x670
  sept. 02 12:15:55 kernel:  ? irqentry_exit_to_user_mode+0x7e/0x260
  sept. 02 12:15:55 kernel:  ? irqentry_exit+0x43/0x50
  sept. 02 12:15:55 kernel:  ? exc_page_fault+0x94/0x1b0
  sept. 02 12:15:55 kernel:  entry_SYSCALL_64_after_hwframe+0x78/0x80
  sept. 02 12:15:55 kernel: RIP: 0033:0x7d75e912bead
  sept. 02 12:15:55 kernel: Code: c3 ff ff ff ff 64 89 02 eb b9 0f 1f 00 f3 0f 
1e fa 80 3d a5 f1 0d 00 00 41 89 ca 74 20 45 31 c9 45 31 c0 b8 2c 00 00 00 0f 
05 <48> 3d 00 f0 ff ff 77 6b c3 66 2e 0f 1f 84 00 00 00 00 00 55 48 89
  sept. 02 12:15:55 kernel: RSP: 002b:00007ffdae4c9758 EFLAGS: 00000246 
ORIG_RAX: 000000000000002c
  sept. 02 12:15:55 kernel: RAX: ffffffffffffffda RBX: 00005f2d57d40b40 RCX: 
00007d75e912bead
  sept. 02 12:15:55 kernel: RDX: 0000000000000028 RSI: 00007ffdae4c9770 RDI: 
0000000000000005
  sept. 02 12:15:55 kernel: RBP: 00007ffdae4c97c0 R08: 0000000000000000 R09: 
0000000000000000
  sept. 02 12:15:55 kernel: R10: 0000000000000000 R11: 0000000000000246 R12: 
0000000000000008
  sept. 02 12:15:55 kernel: R13: 0000000000000001 R14: 00005f2d57dd2990 R15: 
00005f2d57dbb290
  sept. 02 12:15:55 kernel:  </TASK>
  sept. 02 12:15:55 kernel: ---[ end trace ]---

  
  Also this (1 time) :

  2024-09-02T13:29:20.830667+02:00 NetworkManager[943]: <info>  
[1725276560.8304] device (wlp3s0): supplicant interface state: disconnected -> 
associating
  2024-09-02T13:29:20.963109+02:00 kernel: ------------[ cut here ]------------
  2024-09-02T13:29:20.963132+02:00 kernel: UBSAN: array-index-out-of-bounds in 
/var/lib/dkms/broadcom-sta/6.30.223.271/build/src/wl/sys/wl_cfg80211_hybrid.c:2394:26
  2024-09-02T13:29:20.963135+02:00 kernel: index 1 is out of range for type 
'uint8 [1]'
  2024-09-02T13:29:20.963137+02:00 kernel: CPU: 6 PID: 556 Comm: 
wl_event_handle Tainted: P           OE      6.8.0-41-generic #41-Ubuntu
  2024-09-02T13:29:20.963139+02:00 kernel: Hardware name: ASUSTeK COMPUTER INC. 
G750JX/G750JX, BIOS G750JX.209 11/18/2013
  2024-09-02T13:29:20.963140+02:00 kernel: Call Trace:
  2024-09-02T13:29:20.963143+02:00 kernel:  <TASK>
  2024-09-02T13:29:20.963144+02:00 kernel:  dump_stack_lvl+0x76/0xa0
  2024-09-02T13:29:20.963146+02:00 kernel:  dump_stack+0x10/0x20
  2024-09-02T13:29:20.963147+02:00 kernel:  
__ubsan_handle_out_of_bounds+0xc6/0x110
  2024-09-02T13:29:20.963149+02:00 kernel:  wl_update_bss_info+0x10f/0x370 [wl]
  2024-09-02T13:29:20.963150+02:00 kernel:  
wl_bss_connect_done.isra.0+0x170/0x2a0 [wl]
  2024-09-02T13:29:20.963151+02:00 kernel:  wl_notify_connect_status+0xdf/0x450 
[wl]
  2024-09-02T13:29:20.963152+02:00 kernel:  wl_event_handler+0x7b/0x240 [wl]
  2024-09-02T13:29:20.963154+02:00 kernel:  ? __pfx_wl_event_handler+0x10/0x10 
[wl]
  2024-09-02T13:29:20.963155+02:00 kernel:  kthread+0xf2/0x120
  2024-09-02T13:29:20.963157+02:00 kernel:  ? __pfx_kthread+0x10/0x10
  2024-09-02T13:29:20.963158+02:00 kernel:  ret_from_fork+0x47/0x70
  2024-09-02T13:29:20.963159+02:00 kernel:  ? __pfx_kthread+0x10/0x10
  2024-09-02T13:29:20.963161+02:00 kernel:  ret_from_fork_asm+0x1b/0x30
  2024-09-02T13:29:20.963163+02:00 kernel:  </TASK>
  2024-09-02T13:29:20.963164+02:00 kernel: ---[ end trace ]---

  What can I do do correct this ?

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/broadcom-sta/+bug/2078697/+subscriptions


-- 
Mailing list: https://launchpad.net/~kernel-packages
Post to     : kernel-packages@lists.launchpad.net
Unsubscribe : https://launchpad.net/~kernel-packages
More help   : https://help.launchpad.net/ListHelp

Reply via email to