воскресенье

[Bug 2169505] Re: NVIDIA dGPU never enters RTD3 on kernel 7.3.0; works on 7.0.0

** Package changed: compiz-plugins-main (Ubuntu) => linux (Ubuntu) -- You received this bug notification because you are subscribed to linux in Ubuntu. Matching subscriptions: Bgg, Bmail, Nb https://bugs.launchpad.net/bugs/2169505 Title: NVIDIA dGPU never enters RTD3 on kernel 7.3.0; works on 7.0.0 Status in linux package in Ubuntu: New Bug description: Dell XPS 15 9530, hybrid Intel Iris Xe + RTX 4070 Laptop (AD106M), Ubuntu 26.10, nvidia 615.71.09 (open, from the archive), GNOME/Wayland, PRIME on-demand, display on the iGPU. Same driver, same DKMS build, same config, only the kernel differs: 7.3.0-8-generic: /proc/driver/nvidia/gpus/0000:01:00.0/power Runtime D3 status: Not supported Video Memory: Active power/runtime_status = active power/runtime_suspended_time = 0 (across full uptime, every boot) 7.0.0-38-generic: /proc/driver/nvidia/gpus/0000:01:00.0/power Runtime D3 status: Enabled (fine-grained) Video Memory: Off power/runtime_status = suspended power/runtime_suspended_time = 24769 Every documented RTD3 requirement is satisfied on both kernels: - Ada GPU (newer than the Turing minimum) - CONFIG_PM=y, CONFIG_PCIE_PME=y - ACPI _PR3 present: \_SB_.PC00.PEG1.PG01 "New power resource"; power_resources_D3hot present on the parent bridge 0000:00:01.0 - d3cold_allowed=1 on bridge and GPU - NVreg_DynamicPowerManagement=0x02, set by Ubuntu's own /usr/lib/modprobe.d/nvidia-runtimepm.conf - no displays on the dGPU (no card2-* connectors) - platform ships a dedicated RTD3 ACPI table: ACPI: SSDT (v02 DELL DellRtd3 00001000 INTL 20200717) So on 7.3 the driver declines RTD3 on a platform that meets every requirement and that demonstrably works on 7.0. Impact: the dGPU is pinned in D0 permanently — constant idle power draw and heat on battery. Likely the same regression as CachyOS/linux-cachyos#1053, where 7.2.6 reported "Enabled (fine-grained)" and 7.3.0-rc3 reported "Not supported". That reporter believed it was CachyOS-specific; this reproduces on Ubuntu's own 7.3.0-8-generic, so it is not. Combining both data points puts the regression window at 7.2.6 -> 7.3.0-rc3. Not reproducible on 7.0.0-38-generic. I have no 7.1/7.2 kernels installed to narrow it further locally, but can test builds on request. To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/2169505/+subscriptions

[Bug 2169505] [NEW] NVIDIA dGPU never enters RTD3 on kernel 7.3.0; works on 7.0.0

You have been subscribed to a public bug: Dell XPS 15 9530, hybrid Intel Iris Xe + RTX 4070 Laptop (AD106M), Ubuntu 26.10, nvidia 615.71.09 (open, from the archive), GNOME/Wayland, PRIME on-demand, display on the iGPU. Same driver, same DKMS build, same config, only the kernel differs: 7.3.0-8-generic: /proc/driver/nvidia/gpus/0000:01:00.0/power Runtime D3 status: Not supported Video Memory: Active power/runtime_status = active power/runtime_suspended_time = 0 (across full uptime, every boot) 7.0.0-38-generic: /proc/driver/nvidia/gpus/0000:01:00.0/power Runtime D3 status: Enabled (fine-grained) Video Memory: Off power/runtime_status = suspended power/runtime_suspended_time = 24769 Every documented RTD3 requirement is satisfied on both kernels: - Ada GPU (newer than the Turing minimum) - CONFIG_PM=y, CONFIG_PCIE_PME=y - ACPI _PR3 present: \_SB_.PC00.PEG1.PG01 "New power resource"; power_resources_D3hot present on the parent bridge 0000:00:01.0 - d3cold_allowed=1 on bridge and GPU - NVreg_DynamicPowerManagement=0x02, set by Ubuntu's own /usr/lib/modprobe.d/nvidia-runtimepm.conf - no displays on the dGPU (no card2-* connectors) - platform ships a dedicated RTD3 ACPI table: ACPI: SSDT (v02 DELL DellRtd3 00001000 INTL 20200717) So on 7.3 the driver declines RTD3 on a platform that meets every requirement and that demonstrably works on 7.0. Impact: the dGPU is pinned in D0 permanently — constant idle power draw and heat on battery. Likely the same regression as CachyOS/linux-cachyos#1053, where 7.2.6 reported "Enabled (fine-grained)" and 7.3.0-rc3 reported "Not supported". That reporter believed it was CachyOS-specific; this reproduces on Ubuntu's own 7.3.0-8-generic, so it is not. Combining both data points puts the regression window at 7.2.6 -> 7.3.0-rc3. Not reproducible on 7.0.0-38-generic. I have no 7.1/7.2 kernels installed to narrow it further locally, but can test builds on request. ** Affects: linux (Ubuntu) Importance: Undecided Status: New -- NVIDIA dGPU never enters RTD3 on kernel 7.3.0; works on 7.0.0 https://bugs.launchpad.net/bugs/2169505 You received this bug notification because you are subscribed to linux in Ubuntu.

[Bug 2167549] Re: ThinkPad P1 Gen 7 Meteor Lake — i915 PHY/DPLL failure after s2idle resume

Relevant patch is included in 7.0.0-38 - drm/i915/mtl+: Enable PPS before PLL ** Changed in: linux (Ubuntu) Status: Confirmed => Fix Released -- You received this bug notification because you are subscribed to linux in Ubuntu. Matching subscriptions: Bgg, Bmail, Nb https://bugs.launchpad.net/bugs/2167549 Title: ThinkPad P1 Gen 7 Meteor Lake — i915 PHY/DPLL failure after s2idle resume Status in linux package in Ubuntu: Fix Released Bug description: After resuming from an s2idle suspend of 30+ minutes, the i915 driver fails to re-enable the display. According to logs, the C10 PHY becomes completely unresponsive because its internal registers are inaccessible and this causes the entire display pipeline to remain stuck, sometimes for ~60 seconds or sometimes indefinitely (requiring a hard reset). GNOME Shell and input handling remain functional throughout; keystrokes typed during the black screen appear in the password box if/when the display eventually recovers. Short-duration suspends (<~2 minutes) resume cleanly without errors. The failure apparently correlates with suspend duration: during long s2idle, the display power well fully shuts down, and on resume the C10 PHY cold-start sequence fails. The bug does NOT reproduce on Windows (on the same laptop), suggesting this is an i915 driver bug, not a hardware or BIOS issue. ## My setup - Laptop: Lenovo ThinkPad P1 Gen 7 (model 21KV0025UK) - BIOS: N48ET34W (1.21), dated 2026-05-11 (current; no LVFS updates available) - iGPU: Intel Meteor Lake-P [Intel Arc Graphics] — PCI 8086:7d55 (rev 08) - Kernel driver: i915 - Panel: eDP-1, 3840x2400 (16:10), 4 lanes, C10 PLL at 540 MHz port clock - dGPU: NVIDIA AD107M [GeForce RTX 4060 Max-Q / Mobile] — PCI 10de:28a0 - Driver: nvidia 580.173.02 (open kernel module), nvidia-drm modeset=1 - NOTE: bug reproduces with and without nvidia loaded — not a factor - suspend mode: s2idle (platform supports only s2idle; no "deep"/S3 available) ## Software - OS: Ubuntu 24.04.5 LTS (Noble Numbat) - Kernel: 7.0.0-31-generic (#31~24.04.1-Ubuntu PREEMPT_DYNAMIC) (also reproduces on 7.0.0-30-generic) - Desktop: GNOME 46.0 on Wayland (GDM) - linux-firmware: 20240318.git3b128b60.0ubuntu3.1 - i915 firmware loaded: - DMC: i915/mtl_dmc.bin v2.21 - GuC: i915/mtl_guc_70.bin v70.36.0 (kernel recommends v70.53.0 but only 70.36.0 available — may or may not be related) - HuC: i915/mtl_huc_gsc.bin v8.5.4 ## To reproduce 1. Boot the system (any kernel 7.0.0-30 or 7.0.0-31) 2. Suspend (lid close or `systemctl suspend`) 3. Leave suspended for 30+ minutes (short suspends <2 min do NOT trigger it) 4. Resume (open lid / press key) 5. Observe: screen stays black for ~60 seconds (or never recovers and needs a hard reset) 6. Kernel log shows the error burst (see below) Suspend duration correlation: - Short suspends (1-2 min): 0 DRM errors, prompt in ~2s - Long suspends (30+ min): 19-97 DRM errors, 60s+ delay or hard reset ## What does NOT work I tried quite a few things, none of which succeeded: - Kernel update 7.0.0-30 → 7.0.0-31: no effect - i915.enable_psr=0 (PSR disabled): no effect - i915.enable_dc=0 (display C-states disabled): no effect - i915.enable_dsb=0 (Display State Buffer disabled): no effect (DSB timeouts disappeared from logs, but core PHY failure remained) - i915.disable_power_well=0 (keep power wells always on): no effect - NVIDIA driver loaded vs unloaded: no effect - nvidia_drm modeset=0 / modeset=1: no effect ## What DOES work - Hibernation: bypasses s2idle entirely (full boot from hibernation image re-initializes display from scratch). Zero DRM errors on resume. Confirmed working across multiple hibernate cycles. - Windows Modern Standby: does NOT reproduce the bug. ## What was NOT testable - xe driver: my laptop would not boot (apparently because the xe driver does not work in my kernel version. It refuses to probe even with xe.force_probe=7d55, requiring both xe.force_probe=7d55 AND i915.force_probe=!7d55. When loaded on 7.0.0-30, it registered only a generic card0-Unknown-1 connector with no eDP display output. Not a viable alternative without a newer kernel with proper MTL display support in xe. ## Root cause (from logs) On resume from long s2idle, the C10 PHY cold-start sequence fails at the hardware register level: 1. `Failed to bring PHY A to idle` PHY A cannot reach idle state 2. `PHY A Read 0c70 failed after 3 retries` PHY register 0c70 is completely inaccessible (returns no data) 3. `PHY A Write 0c70 failed after 3 retries` writes to the PHY also fail 4. `Timeout waiting for DDI BUF A to get active` DDI buffer never enables (depends on PHY being up) 5. `Timed out waiting for DP idle patterns` DP link training cannot proceed 6. C10 PLL state mismatch: expected clock 540000 (540 MHz), found 61440 (61.44 MHz = the idle/standby clock; PLL never re-enabled at full rate) All PLL registers found as 0x00 (zeroed/idle state) 7. `flip_done timed out` repeating every ~10s all atomic commits fail 8. `vblank wait timed out on crtc 0` pipe is dead, no vblanks The C10 PHY's control register interface (offset 0c70) is completely dead after long s2idle. No i915 kernel parameter that I tried can fix this. The PHY itself is in an inaccessible state. Since Windows handles the same hardware correctly, the i915 driver is missing a step in its PHY re-initialization sequence that the Windows Intel driver performs. From: journalctl -b 0 -k (With i915.enable_dc=0, i915.enable_dsb=0, i915.disable_power_well=0 all active) Code: Select all Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* Failed to bring PHY A to idle. Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* PHY A Read 0c70 failed after 3 retries. Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* PHY A Write 0c70 failed after 3 retries. Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* Timeout waiting for DDI BUF A to get active Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* Timed out waiting for DP idle patterns Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* [CRTC:150:pipe A] flip_done timed out Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* [CRTC:150:pipe A] mismatch in pixel_rate (expected 572010, found 65082) Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* [CRTC:150:pipe A] mismatch in dpll_hw_state Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* expected: Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* cx0pll_hw_state: lane_count: 4, ssc_enabled: no, use_c10: yes, tbt_mode: no Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* c10pll_hw_state: clock: 540000, fracen: yes, Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* quot: 40960, rem: 0, den: 1, multiplier: 140, tx_clk_div: 0. Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* c10pll_rawhw_state: tx: 0x10, cmn: 0x21 Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* pll[0] = 0xf4, pll[1] = 0x0, pll[2] = 0xf8, pll[3] = 0x0 Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* pll[16] = 0x84, pll[17] = 0x4f, pll[18] = 0xe5, pll[19] = 0x23 Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* found: Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* c10pll_hw_state: clock: 61440, fracen: no, multiplier: 16, tx_clk_div: 0. Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* c10pll_rawhw_state: tx: 0x0, cmn: 0x0 Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* pll[0-19] = 0x0 (all zeros) Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* [CRTC:150:pipe A] mismatch in hw.pipe_mode.crtc_clock (expected 572010, found 65082) Sep 14 13:06:35 kernel: i915 0000:00:02.0: [drm] *ERROR* [CRTC:150:pipe A] mismatch in port_clock (expected 540000, found 61440) Sep 14 13:06:35 kernel: i915 0000:00.0: [drm] pipe state doesn't match! Sep 14 13:06:35 kernel: WARNING: drivers/gpu/drm/i915/display/intel_modeset_verify.c:225 at verify_crtc_state+0x51b/0x6c0 [i915] Sep 14 13:06:35 kernel: intel_modeset_verify_crtc+0x70/0xb0 [i915] Sep 14 13:06:35 kernel: intel_atomic_commit_tail+0x8bb/0xc80 [i915] Sep 14 13:06:35 kernel: intel_atomic_commit+0x2c0/0x310 [i915] Sep 14 13:06:35 kernel: drm_atomic_commit+0xaf/0xf0 Sep 14 13:06:35 kernel: WARNING: drivers/gpu/drm/i915/display/intel_dpll_mgr.c:4945 at verify_single_dpll_state+0x6c7/0x7e0 [i915] Sep 14 13:06:35 kernel: intel_modeset_verify_crtc+0x7b/0xb0 [i915] (flip_done timeouts repeat every ~10s:) Sep 14 13:06:45 i915 *ERROR* flip_done timed out Sep 14 13:06:45 i915 *ERROR* [CRTC:150:pipe A] commit wait timed out Sep 14 13:06:55 i915 *ERROR* flip_done timed out Sep 14 13:06:55 i915 *ERROR* [CONNECTOR:507:eDP-1] commit wait timed out Sep 14 13:07:06 i915 *ERROR* flip_done timed out Sep 14 13:07:06 i915 *ERROR* [PLANE:34:plane 1A] commit wait timed out ... Sep 14 13:07:57 i915 *ERROR* [CRTC:150:pipe A] flip_done timed out Sep 14 13:07:58 i915: vblank wait timed out on crtc 0 Sep 14 13:07:58 WARNING: drivers/gpu/drm/drm_vblank.c:1320 at drm_crtc_wait_one_vblank+0x18c/0x200 Sep 14 13:07:58 drm_client_modeset_wait_for_vblank+0x61/0x80 Sep 14 13:07:58 drm_fb_helper_damage_work+0x8c/0x1a0 (PM: suspend exit at 13:07:57, ~90s after the first PHY error at 13:06:35) Sep 14 13:07:57 kernel: PM: suspend exit Seems like it needs a kernel patch in the i915 display PHY resume code (drivers/gpu/drm/i915/display/intel_cx0_phy.c or similar), potentially adding a forced PHY reset or an alternative re-initialization sequence for the post-s2idle cold-start case. ## Workaround Hibernation works. I had to fiddle around with swap space and resume paramters to make this work but then `systemctl hibernate` works reliably with zero DRM errors on resume. To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/2167549/+subscriptions

суббота

[Bug 2168920] Re: LTS update fails on mysql_native_password check

** Information type changed from Private Security to Public Security -- You received this bug notification because you are subscribed to linux in Ubuntu. Matching subscriptions: Bgg, Bmail, Nb https://bugs.launchpad.net/bugs/2168920 Title: LTS update fails on mysql_native_password check Status in linux package in Ubuntu: New Bug description: LTS update suggests changing mysql_native_password to caching_sha2_password then fails. After setting default_authentication_plugin=caching_sha2_password AND changing old users to caching_sha2_password, flush privileges AND restarting mysql two mysql built in users remain stuck with mysql_native_password. Users mysql.session and mysql.sys which are locked by mysql, mysql documentation say they will migrate when mysql is updated. Unfortunately the LTS update is blocked because of the check fo any mysql user still on mysql_native_password.... Mysql and net searches provide no means of manually changing those to caching_sha2_password. ProblemType: Bug DistroRelease: Ubuntu 24.04 Package: linux-image-6.8.0-142-generic 6.8.0-142.142 ProcVersionSignature: Ubuntu 6.8.0-142.142-generic 6.8.12 Uname: Linux 6.8.0-142-generic x86_64 NonfreeKernelModules: nvidia_modeset nvidia ApportVersion: 2.28.3-0ubuntu0.1 Architecture: amd64 AudioDevicesInUse: USER PID ACCESS COMMAND /dev/snd/controlC1: atuttle 3946 F.... wireplumber /dev/snd/controlC0: atuttle 3946 F.... wireplumber /dev/snd/seq: atuttle 3942 F.... pipewire CasperMD5CheckResult: unknown CurrentDesktop: KDE Date: Tue Sep 29 15:53:15 2026 HibernationDevice: RESUME=/dev/nvme0n1p3 InstallationDate: Installed on 2018-11-17 (2873 days ago) InstallationMedia: Ubuntu-Server 18.04.1 LTS "Bionic Beaver" - Release amd64 (20180725) IwConfig: lo no wireless extensions. eno1 no wireless extensions. MachineType: Gigabyte Technology Co., Ltd. B450 AORUS ELITE ProcEnviron: LANG=en_US.UTF-8 LANGUAGE=en_US:en PATH=(custom, no user) SHELL=/bin/bash TERM=xterm-256color ProcFB: 0 simpledrmdrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-6.8.0-142-generic root=UUID=01736369-094d-46a1-bdf5-ea9657dbb6ef ro PulseList: Error: command ['pacmd', 'list'] failed with exit code 1: No PulseAudio daemon running, or not running as session daemon. RelatedPackageVersions: linux-restricted-modules-6.8.0-142-generic N/A linux-backports-modules-6.8.0-142-generic N/A linux-firmware 20240318.git3b128b60.0ubuntu3.1 RfKill: SourcePackage: linux UpgradeStatus: Upgraded to noble on 2026-09-29 (0 days ago) dmi.bios.date: 10/28/2025 dmi.bios.release: 5.17 dmi.bios.vendor: American Megatrends International, LLC. dmi.bios.version: F67 dmi.board.asset.tag: Default string dmi.board.name: B450 AORUS ELITE dmi.board.vendor: Gigabyte Technology Co., Ltd. dmi.board.version: Default string dmi.chassis.asset.tag: Default string dmi.chassis.type: 3 dmi.chassis.vendor: Default string dmi.chassis.version: Default string dmi.modalias: dmi:bvnAmericanMegatrendsInternational,LLC.:bvrF67:bd10/28/2025:br5.17:svnGigabyteTechnologyCo.,Ltd.:pnB450AORUSELITE:pvrDefaultstring:rvnGigabyteTechnologyCo.,Ltd.:rnB450AORUSELITE:rvrDefaultstring:cvnDefaultstring:ct3:cvrDefaultstring:skuDefaultstring: dmi.product.family: B450 MB dmi.product.name: B450 AORUS ELITE dmi.product.sku: Default string dmi.product.version: Default string dmi.sys.vendor: Gigabyte Technology Co., Ltd. To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/2168920/+subscriptions

[Bug 2165873] Re: Bluetooth fails to initialize due to a kernel NULL pointer error

I'm no longer having this issue on build: 6.8.0-146-generic #146-Ubuntu SMP PREEMPT_DYNAMIC Thu Sep 3 16:12:30 UTC 2026 x86_64 x86_64 x86_64 GNU/Linux -- You received this bug notification because you are subscribed to linux in Ubuntu. Matching subscriptions: Bgg, Bmail, Nb https://bugs.launchpad.net/bugs/2165873 Title: Bluetooth fails to initialize due to a kernel NULL pointer error Status in linux package in Ubuntu: Confirmed Status in linux-hwe-6.8 package in Ubuntu: Confirmed Status in linux source package in Noble: Fix Released Status in linux-hwe-6.8 source package in Noble: In Progress Bug description: SRU Justification [Impact] Bluetooth fails to start on HP systems with a MediaTek MT7922 controller (CID: 202401-33402) running 6.8.0-139.139~22.04.1. The kernel oopses during Bluetooth power-on. The worker thread dies, so hci0 stays in DOWN INIT and its BD address is all zeros. Bluetooth is unusable. rfkill unblock and hciconfig do not help. Error log: Bluetooth: hci0: HW/SW Version: 0x008a008a, Build Time: 20231120183620 BUG: kernel NULL pointer dereference, address: 0000000000000219 Oops: 0000 [#1] PREEMPT SMP NOPTI CPU: 9 PID: 340 Comm: kworker/u33:1 Not tainted 6.8.0-139-generic Workqueue: hci0 hci_power_on [bluetooth] RIP: 0010:__pm_runtime_resume+0x1b/0x80 Call Trace: <TASK> usb_autopm_get_interface+0x1d/0x60 btmtk_usb_hci_wmt_sync+0xb9/0x340 [btmtk] btmtk_setup_firmware_79xx+0x1c7/0x360 [btmtk] btusb_mtk_setup+0x2d6/0x610 [btusb] hci_dev_setup_sync+0x6c/0x440 [bluetooth] hci_dev_init_sync+0x3e/0x1c0 [bluetooth] hci_dev_open_sync+0x8b/0x350 [bluetooth] hci_dev_do_open+0x28/0x70 [bluetooth] hci_power_on+0x50/0x210 [bluetooth] Hits 3 out of 3 boots. 6.8.0-138.138~22.04.1 is fine. This breaks these checkbox tests: com.canonical.certification::bluetooth/detect-output com.canonical.certification::bluetooth4/beacon_eddystone_url_hc0 This is not limited to the reporting machine. Any MediaTek MT766x or MT79xx USB Bluetooth controller takes the same path and hits the same oops on 6.8.0-139. [Fix] 6.8.0-139 picked up d019930b0049 ("Bluetooth: btmtk: move btusb_mtk_hci_wmt_sync to btmtk.c", v6.11) as a stable dependency of the urb->setup_packet leak fix. That commit moves the WMT command path into btmtk.c, where it reads intf, udev and ctrl_anchor out of struct btmtk_data. The commit that fills those three fields in is the next one in the same upstream series, and it was not picked: 5c5e8c52e3ca Bluetooth: btmtk: move btusb_mtk_[setup, shutdown] to btmtk.c (v6.11) So the pointers stay NULL. The first WMT command calls usb_autopm_get_interface(NULL) and oopses. The fix is to backport 5c5e8c52e3ca so the series is complete again. It adds the missing assignments in btusb_mtk_setup(): btmtk_data->drv_name = btusb_driver.name; btmtk_data->intf = data->intf; btmtk_data->udev = data->udev; btmtk_data->ctrl_anchor = &data->ctrl_anchor; btmtk_data->reset_sync = btusb_mtk_reset; udev and ctrl_anchor are just as NULL as intf, and are used by the WMT receive URB, so all of them are needed. A NULL check on intf alone would only move the oops. [Test Plan] On a machine with a MediaTek MT7922 Bluetooth controller. Boot the machine, then check for the oops: $ dmesg | grep -A20 'NULL pointer' $ journalctl -b -0 -k | grep btmtk Check the controller came up: $ sudo rfkill unblock bluetooth $ hciconfig -a $ hcitool dev Without patch: dmesg shows the NULL pointer oops in __pm_runtime_resume with btmtk_usb_hci_wmt_sync in the call trace. hciconfig shows hci0 DOWN INIT with BD Address 00:00:00:00:00:00. hcitool dev lists no device. With patch: no oops in dmesg. hciconfig shows hci0 UP RUNNING with a real BD address. hcitool dev lists hci0. Then run the two failing tests: $ checkbox-cli run com.canonical.certification::bluetooth/detect-output $ checkbox-cli run com.canonical.certification::bluetooth4/beacon_eddystone_url_hc0 Both pass with the patch, both fail without it. [Where problems could occur] Could break the btusb and btmtk drivers for all MediaTek Bluetooth controllers. This is not a small patch. It moves btusb_mtk_setup() and btusb_mtk_shutdown() and their helpers out of btusb.c into btmtk.c, so the whole MediaTek setup path is touched. If the move dropped or changed something, MediaTek Bluetooth would fail to set up. That would show up as "Failed to set up firmware" or "Failed to send wmt func ctrl" in dmesg, or as a timeout during hci0 power-on, and Bluetooth would stay down. The device reset path also moves (btusb_mtk_subsys_reset becomes btmtk_usb_subsys_reset). If that is wrong, chip recovery after a firmware crash would fail and the controller would need a reboot to come back. Nothing outside drivers/bluetooth is touched. Other Bluetooth vendors (Intel, Realtek, Qualcomm, Broadcom) are not affected, because btusb only calls this code for MediaTek devices. [Other Info] The patch is upstream in v6.11. It is the second half of a two-commit series; the first half is already in 6.8.0-139, which is what caused the regression. The backport needed manual conflict resolution in drivers/bluetooth/btusb.c. 6.8 is missing the intermediate commits that added fw_flavor handling and the BTMTK_FIRMWARE_LOADED flag, so the old copies of btusb_mtk_func_query(), btusb_mtk_uhw_reg_*(), btusb_mtk_reg_read(), btusb_mtk_id_get(), btusb_mtk_reset_done(), btusb_mtk_subsys_reset() and the open-coded btusb_mtk_setup() body all conflicted. Those are exactly the functions this commit deletes, so the upstream side was taken. The resulting btusb_mtk_setup() is identical to upstream at 5c5e8c52e3ca. =========================== The Bluetooth controller fails to initialize on kernel 6.8.0-139.139~22.04.1. During hci_power_on, the MediaTek btmtk driver hits a kernel NULL pointer dereference, the handling kworker dies with IRQs disabled, and hci0 is left stuck in DOWN INIT with an all-zero BD address. The previous kernel 6.8.0-138.138~22.04.1 is unaffected, with identical linux-firmware(20220329.git681281e4-0ubuntu3.42) and bluez(5.64-0ubuntu1.4), this seems to be a kernel regression. This failure affects the following checkbox tests: - com.canonical.certification::bluetooth/detect-output - com.canonical.certification::bluetooth4/beacon_eddystone_url_hc0 Machines: - https://certification.canonical.com/hardware/202401-33402/ Steps to reproduce: 1. Boot the machine with kernel 6.8.0-139.139~22.04.1. 2. Checkbox dmesg for crash, null pointer appears in btmtk_usb_hci_wmt_sync during hci power on. 3. run `sudo rfkill unblock bluetooth; hciconfig -a; hcitool dev` to check the controller state. 4. reboot into 6.8.0-138.138~22.04.1 and repeat steps 2-3. Fail rate: 3/3 on 6.8.0.139 ProblemType: Bug DistroRelease: Ubuntu 22.04 Package: linux-image-6.8.0-139-generic 6.8.0-139.139~22.04.1 ProcVersionSignature: Ubuntu 6.8.0-139.139~22.04.1-generic 6.8.12 Uname: Linux 6.8.0-139-generic x86_64 ApportVersion: 2.20.11-0ubuntu82.10 Architecture: amd64 AudioDevicesInUse:  USER PID ACCESS COMMAND  /dev/snd/controlC1: ubuntu 1307 F.... pulseaudio  /dev/snd/controlC0: ubuntu 1307 F.... pulseaudio CasperMD5CheckMismatches: ./preseed/project.cfg CasperMD5CheckResult: fail Date: Mon Aug 31 13:19:26 2026 DistributionChannelDescriptor:  # This is the distribution channel descriptor for the OEM CDs  # For more information see http://wiki.ubuntu.com/DistributionChannelDescriptor  canonical-oem-stella-jammy-amd64-20240408-800 InstallationDate: Installed on 2026-08-28 (3 days ago) InstallationMedia: Ubuntu 22.04 LTS "Jammy Jellyfish" - pc-stella-jammy-amd64-20240408-800 MachineType: HP HP ZBook Power 16 inch G11 A Mobile Workstation PC ProcFB: 0 amdgpudrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-6.8.0-139-generic root=UUID=6006e56e-4c1e-49e1-8a56-4c55eea6d70d ro automatic-oem-config quiet splash vt.handoff=7 PulseList: Error: command ['pacmd', 'list'] failed with exit code 1: No PulseAudio daemon running, or not running as session daemon. RelatedPackageVersions:  linux-restricted-modules-6.8.0-139-generic N/A  linux-backports-modules-6.8.0-139-generic N/A  linux-firmware 20220329.git681281e4-0ubuntu3.42 SourcePackage: linux-hwe-6.8 UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 03/21/2024 dmi.bios.release: 1.1 dmi.bios.vendor: HP dmi.bios.version: W85 Ver. 01.01.01 dmi.board.name: 8C95 dmi.board.vendor: HP dmi.board.version: KBC Version 08.40.00 dmi.chassis.type: 10 dmi.chassis.vendor: HP dmi.ec.firmware.release: 8.64 dmi.modalias: dmi:bvnHP:bvrW85Ver.01.01.01:bd03/21/2024:br1.1:efr8.64:svnHP:pnHPZBookPower16inchG11AMobileWorkstationPC:pvrSBKPF:rvnHP:rn8C95:rvrKBCVersion08.40.00:cvnHP:ct10:cvr:skuXW8SKU3#ABA: dmi.product.family: 103C_5336AN HP ZBook dmi.product.name: HP ZBook Power 16 inch G11 A Mobile Workstation PC dmi.product.sku: XW8SKU3#ABA dmi.product.version: SBKPF dmi.sys.vendor: HP To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/2165873/+subscriptions

[Bug 2169402] Re: Kernel 7.0.0-38 regression: screen corruption flashes on RX 7600 XT (Wayland, VRR), 7.0.0-34 unaffected

Status changed to 'Confirmed' because the bug affects multiple users. ** Changed in: linux (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are subscribed to linux in Ubuntu. Matching subscriptions: Bgg, Bmail, Nb https://bugs.launchpad.net/bugs/2169402 Title: Kernel 7.0.0-38 regression: screen corruption flashes on RX 7600 XT (Wayland, VRR), 7.0.0-34 unaffected Status in linux package in Ubuntu: Confirmed Bug description: After the update from 7.0.0-34-generic to 7.0.0-38-generic (Oct 2, 2026), I get short flashes of screen corruption on my desktop. When you move around windows or sometimes random, blocks of colored noise appear. Regression: - 7.0.0-34-generic: no corruption - 7.0.0-38-generic: corruption, intermittent - Windows 11 on the same machine (dual boot): no corruption, so hardware seems fine Trigger: - Launching VS Code (Electron/Chromium) triggerd it. - Otherwise it is intermittent and can disappear for a while. System: - Kubuntu 26.04, Plasma 6.6.6, Wayland session - Mesa 26.0.8-1ubuntu0.3 - GPU: AMD Radeon RX 7600 XT [1002:7480], DCN 3.2.1 - CPU: Ryzen 5 7600, integrated GPU [1002:164e] enabled but no display connected - DP-1: LG UltraGear 1920x1080 @ 179.96 Hz, VRR Automatic, 10 bpc - DP-2: Dell U2419H 1920x1080 @ 60 Hz, VRR incapable Kernel log on 7.0.0-38 (no GPU resets or ring timeouts): workqueue: dm_handle_vmin_vmax_update [amdgpu] hogged CPU for >10000us 131 times, consider switching to WQ_UNBOUND Tried on 7.0.0-38 (brief tests only, since the issue is intermittent): VRR set to Never, 8 bpc, tearing disabled, 144 Hz. None clearly fixed it. Workaround: booting 7.0.0-34-generic. ProblemType: Bug DistroRelease: Ubuntu 26.04 Package: linux-image-7.0.0-34-generic 7.0.0-34.34 ProcVersionSignature: Ubuntu 7.0.0-34.34-generic 7.0.14 Uname: Linux 7.0.0-34-generic x86_64 ApportVersion: 2.34.1-0ubuntu0.1 Architecture: amd64 CasperMD5CheckResult: unknown CurrentDesktop: KDE Date: Sat Oct 3 12:21:30 2026 InstallationDate: Installed on 2024-10-20 (712 days ago) InstallationMedia: Kubuntu 24.10 "Oracular Oriole" - Release amd64 (20241007.6) MachineType: Micro-Star International Co., Ltd. MS-7E26 ProcFB: 0 amdgpudrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-7.0.0-34-generic root=UUID=634abc01-8b3c-4d75-baeb-4749e779b55f ro quiet splash PulseList: Error: command ['pacmd', 'list'] failed with exit code 1: No PulseAudio daemon running, or not running as session daemon. SourcePackage: linux UpgradeStatus: Upgraded to resolute on 2026-05-15 (141 days ago) dmi.bios.date: 12/27/2024 dmi.bios.release: 5.35 dmi.bios.vendor: American Megatrends International, LLC. dmi.bios.version: 1.I0 dmi.board.asset.tag: To be filled by O.E.M. dmi.board.name: B650 GAMING PLUS WIFI (MS-7E26) dmi.board.vendor: Micro-Star International Co., Ltd. dmi.board.version: 1.0 dmi.chassis.asset.tag: To be filled by O.E.M. dmi.chassis.type: 3 dmi.chassis.vendor: Micro-Star International Co., Ltd. dmi.chassis.version: 1.0 dmi.modalias: dmi:bvnAmericanMegatrendsInternational,LLC.:bvr1.I0:bd12/27/2024:br5.35:svnMicro-StarInternationalCo.,Ltd.:pnMS-7E26:pvr1.0:rvnMicro-StarInternationalCo.,Ltd.:rnB650GAMINGPLUSWIFI(MS-7E26):rvr1.0:cvnMicro-StarInternationalCo.,Ltd.:ct3:cvr1.0:skuTobefilledbyO.E.M.:pfaTobefilledbyO.E.M.: dmi.product.family: To be filled by O.E.M. dmi.product.name: MS-7E26 dmi.product.sku: To be filled by O.E.M. dmi.product.version: 1.0 dmi.sys.vendor: Micro-Star International Co., Ltd. To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/2169402/+subscriptions

[Bug 2169442] [NEW] Use-after-free in AppArmor prompting: audit_cache_work_function delayed work queued on freed memory → panic in __run_timers

Public bug reported: Kernel: 7.0.0-38-generic (also reproduced on 7.0.0-34-generic), Ubuntu 26.04 snapd: 2.77.1 with experimental.apparmor-prompting=true Hardware: Lenovo 21KV0018US (Meteor Lake), BIOS N48ET34W 1.21 Reproducible kernel panic within ~15-20s of launching the Thunderbird snap (157.0-2, rev 1279) when snapd AppArmor prompting is enabled. Happened 4 times in one evening. Setting experimental.apparmor-prompting=false makes it stop completely. Sequence: 1. Repeated: WARNING: kernel/workqueue.c:2351 at __queue_work.part.0+0x190/0x390 from delayed_work_timer_fn (timer softirq, idle CPU) 2. Oops: general protection fault, probably for non-canonical address 0xdead00000000012a, RIP: __run_timers+0x1e0/0x2c0 3. Kernel panic - not syncing: Fatal exception in interrupt A bpftrace kprobe on delayed_work_timer_fn caught the bad work items: in every case the delayed_work had func=audit_cache_work_function and work.entry.next == NULL (the memory was freed or zeroed). Each one was armed by snapd from this path: __queue_delayed_work knotif_update_from_uresp_perm+258 aa_listener_unotif_response+304 notify_user_response+288 listener_ioctl+699 __x64_sys_ioctl do_syscall_64 So when snapd responds to a prompt notification, the kernel queues audit_cache_work_function on a delayed_work whose containing object has already been freed (or was never initialized). The timer then fires on corrupted memory. Workaround: snap set system experimental.apparmor-prompting=false ProblemType: Bug DistroRelease: Ubuntu 26.04 Package: linux-image-7.0.0-38-generic 7.0.0-38.38 ProcVersionSignature: Ubuntu 7.0.0-38.38-generic 7.0.14 Uname: Linux 7.0.0-38-generic x86_64 ApportVersion: 2.34.1-0ubuntu0.1 Architecture: amd64 AudioDevicesInUse: USER PID ACCESS COMMAND /dev/snd/controlC0: tau 11619 F.... pipewire tau 11637 F.... wireplumber /dev/snd/seq: tau 11619 F.... pipewire CasperMD5CheckResult: pass CurrentDesktop: ubuntu:GNOME Date: Sat Oct 3 23:30:58 2026 InstallationDate: Installed on 2026-05-16 (141 days ago) InstallationMedia: Ubuntu 26.04 "Resolute Raccoon" - Release amd64 (20260423.1) MachineType: LENOVO 21KV0018US ProcEnviron: LANG=en_US.UTF-8 PATH=(custom, no user) SHELL=/bin/bash TERM=xterm-256color XDG_RUNTIME_DIR=<set> ProcFB: 0 i915drmfb ProcKernelCmdLine: BOOT_IMAGE=/vmlinuz-7.0.0-38-generic root=/dev/mapper/ubuntu--vg-ubuntu--lv ro quiet splash nvidia.NVreg_PreserveVideoMemoryAllocations=1 nvidia-drm.modeset=1 acpi.ec_no_wakeup=1 nmi_watchdog=0 snd_hda_intel.power_save=1 i915.enable_psr=0 crash_kexec_post_notifiers panic=10 crashkernel=2G-4G:320M,4G-32G:512M,32G-64G:1024M,64G-128G:2048M,128G-:4096M PulseList: Error: command ['pacmd', 'list'] failed with exit code 1: No PulseAudio daemon running, or not running as session daemon. SourcePackage: linux UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 05/11/2026 dmi.bios.release: 1.21 dmi.bios.vendor: LENOVO dmi.bios.version: N48ET34W (1.21 ) dmi.board.asset.tag: Not Available dmi.board.name: 21KV0018US dmi.board.vendor: LENOVO dmi.board.version: SDK0T76530 WIN dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: None dmi.ec.firmware.release: 1.15 dmi.modalias: dmi:bvnLENOVO:bvrN48ET34W(1.21):bd05/11/2026:br1.21:efr1.15:svnLENOVO:pn21KV0018US:pvrThinkPadP1Gen7:rvnLENOVO:rn21KV0018US:rvrSDK0T76530WIN:cvnLENOVO:ct10:cvrNone:skuLENOVO_MT_21KV_BU_Think_FM_ThinkPadP1Gen7:pfaThinkPadP1Gen7: dmi.product.family: ThinkPad P1 Gen 7 dmi.product.name: 21KV0018US dmi.product.sku: LENOVO_MT_21KV_BU_Think_FM_ThinkPad P1 Gen 7 dmi.product.version: ThinkPad P1 Gen 7 dmi.sys.vendor: LENOVO ** Affects: linux (Ubuntu) Importance: Undecided Status: New ** Tags: amd64 apport-bug resolute wayland-session -- You received this bug notification because you are subscribed to linux in Ubuntu. Matching subscriptions: Bgg, Bmail, Nb https://bugs.launchpad.net/bugs/2169442 Title: Use-after-free in AppArmor prompting: audit_cache_work_function delayed work queued on freed memory → panic in __run_timers Status in linux package in Ubuntu: New Bug description: Kernel: 7.0.0-38-generic (also reproduced on 7.0.0-34-generic), Ubuntu 26.04 snapd: 2.77.1 with experimental.apparmor-prompting=true Hardware: Lenovo 21KV0018US (Meteor Lake), BIOS N48ET34W 1.21 Reproducible kernel panic within ~15-20s of launching the Thunderbird snap (157.0-2, rev 1279) when snapd AppArmor prompting is enabled. Happened 4 times in one evening. Setting experimental.apparmor-prompting=false makes it stop completely. Sequence: 1. Repeated: WARNING: kernel/workqueue.c:2351 at __queue_work.part.0+0x190/0x390 from delayed_work_timer_fn (timer softirq, idle CPU) 2. Oops: general protection fault, probably for non-canonical address 0xdead00000000012a, RIP: __run_timers+0x1e0/0x2c0 3. Kernel panic - not syncing: Fatal exception in interrupt A bpftrace kprobe on delayed_work_timer_fn caught the bad work items: in every case the delayed_work had func=audit_cache_work_function and work.entry.next == NULL (the memory was freed or zeroed). Each one was armed by snapd from this path: __queue_delayed_work knotif_update_from_uresp_perm+258 aa_listener_unotif_response+304 notify_user_response+288 listener_ioctl+699 __x64_sys_ioctl do_syscall_64 So when snapd responds to a prompt notification, the kernel queues audit_cache_work_function on a delayed_work whose containing object has already been freed (or was never initialized). The timer then fires on corrupted memory. Workaround: snap set system experimental.apparmor-prompting=false ProblemType: Bug DistroRelease: Ubuntu 26.04 Package: linux-image-7.0.0-38-generic 7.0.0-38.38 ProcVersionSignature: Ubuntu 7.0.0-38.38-generic 7.0.14 Uname: Linux 7.0.0-38-generic x86_64 ApportVersion: 2.34.1-0ubuntu0.1 Architecture: amd64 AudioDevicesInUse: USER PID ACCESS COMMAND /dev/snd/controlC0: tau 11619 F.... pipewire tau 11637 F.... wireplumber /dev/snd/seq: tau 11619 F.... pipewire CasperMD5CheckResult: pass CurrentDesktop: ubuntu:GNOME Date: Sat Oct 3 23:30:58 2026 InstallationDate: Installed on 2026-05-16 (141 days ago) InstallationMedia: Ubuntu 26.04 "Resolute Raccoon" - Release amd64 (20260423.1) MachineType: LENOVO 21KV0018US ProcEnviron: LANG=en_US.UTF-8 PATH=(custom, no user) SHELL=/bin/bash TERM=xterm-256color XDG_RUNTIME_DIR=<set> ProcFB: 0 i915drmfb ProcKernelCmdLine: BOOT_IMAGE=/vmlinuz-7.0.0-38-generic root=/dev/mapper/ubuntu--vg-ubuntu--lv ro quiet splash nvidia.NVreg_PreserveVideoMemoryAllocations=1 nvidia-drm.modeset=1 acpi.ec_no_wakeup=1 nmi_watchdog=0 snd_hda_intel.power_save=1 i915.enable_psr=0 crash_kexec_post_notifiers panic=10 crashkernel=2G-4G:320M,4G-32G:512M,32G-64G:1024M,64G-128G:2048M,128G-:4096M PulseList: Error: command ['pacmd', 'list'] failed with exit code 1: No PulseAudio daemon running, or not running as session daemon. SourcePackage: linux UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 05/11/2026 dmi.bios.release: 1.21 dmi.bios.vendor: LENOVO dmi.bios.version: N48ET34W (1.21 ) dmi.board.asset.tag: Not Available dmi.board.name: 21KV0018US dmi.board.vendor: LENOVO dmi.board.version: SDK0T76530 WIN dmi.chassis.asset.tag: No Asset Information dmi.chassis.type: 10 dmi.chassis.vendor: LENOVO dmi.chassis.version: None dmi.ec.firmware.release: 1.15 dmi.modalias: dmi:bvnLENOVO:bvrN48ET34W(1.21):bd05/11/2026:br1.21:efr1.15:svnLENOVO:pn21KV0018US:pvrThinkPadP1Gen7:rvnLENOVO:rn21KV0018US:rvrSDK0T76530WIN:cvnLENOVO:ct10:cvrNone:skuLENOVO_MT_21KV_BU_Think_FM_ThinkPadP1Gen7:pfaThinkPadP1Gen7: dmi.product.family: ThinkPad P1 Gen 7 dmi.product.name: 21KV0018US dmi.product.sku: LENOVO_MT_21KV_BU_Think_FM_ThinkPad P1 Gen 7 dmi.product.version: ThinkPad P1 Gen 7 dmi.sys.vendor: LENOVO To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/2169442/+subscriptions

[Bug 2169427] Re: Regression: 7.0.0-38-generic hangs during boot when NVIDIA driver loads; boots successfully with NVIDIA modules blacklisted; 7.0.0-34 works

** Tags added: kernel-daily-bug -- You received this bug notification because you are subscribed to linux in Ubuntu. Matching subscriptions: Bgg, Bmail, Nb https://bugs.launchpad.net/bugs/2169427 Title: Regression: 7.0.0-38-generic hangs during boot when NVIDIA driver loads; boots successfully with NVIDIA modules blacklisted; 7.0.0-34 works Status in linux package in Ubuntu: New Bug description: I am running Kubuntu 24.04.5 amd64 with the HWE kernel stack. This is a regression between Ubuntu HWE kernels 7.0.0-34-generic and 7.0.0-38-generic. Working kernel 7.0.0-34-generic boots and operates normally on this system. Failing kernel 7.0.0-38-generic consistently hangs during early boot. With the normal quiet splash parameters, the last visible GRUB message is: Loading initial ramdisk ... Removing quiet splash and adding: loglevel=7 ignore_loglevel shows that the kernel actually progresses into hardware initialization before hanging. Near the end of the visible output are repeated ACPI errors involving: \_SB.PC00.RP01.PXSX._DSM.USRG AE_ALREADY_EXISTS CreateBufferField failure \_SB.PC00.RP01.PXSX._DSM PCI device 0000:02:00.0, corresponding to that ACPI path, is: NVIDIA Corporation AD103 [GeForce RTX 4070 Ti SUPER] [10de:2705] However, these same ACPI _DSM / AE_ALREADY_EXISTS errors also occur when booting the working 7.0.0-34-generic kernel. Under 7.0.0-34, boot continues after them and the NVIDIA DRM driver initializes normally. Therefore I do not believe the ACPI errors themselves are the regression. Important diagnostic result I edited the GRUB entry for 7.0.0-38-generic and added: module_blacklist=nvidia,nvidia_drm,nvidia_modeset,nvidia_uvm,nouveau systemd.unit=multi-user.target With the NVIDIA-related kernel modules blacklisted, 7.0.0-38 boots successfully. I can enter the LUKS disk-decryption password and the system reaches a text-mode TTY. There is no graphical desktop, as expected because the NVIDIA modules are blacklisted. Therefore the 7.0.0-38 boot failure appears to be associated with loading/initializing the NVIDIA driver rather than with the initramfs itself. Repair attempts already performed While booted into the working 7.0.0-34-generic kernel, I ran: sudo dpkg --configure -a sudo apt -f install sudo update-initramfs -u -k 7.0.0-38-generic sudo update-grub This did not change the behavior. 7.0.0-38 still hangs when NVIDIA is allowed to load. Reproducibility 1. Boot 7.0.0-38-generic normally. 2. System hangs during early kernel boot. 3. Reboot and select 7.0.0-34-generic: system boots normally. 4. Boot 7.0.0-38-generic with NVIDIA-related modules blacklisted: system boots successfully to a TTY. The failure has been reproduced multiple times. I am submitting this report while running another working kernel because 7.0.0-38-generic cannot boot normally far enough for me to run apport under that kernel. I have a photograph of the final console output from a failed 7.0.0-38 boot and will attach it to this report. In a sense, this is a security bug because I am forced to fall back to 7.0.0-34, which does not have all the security patches of -38. I'll also note that -38 failing to boot does not make the option of switching to 26.04 attractive. My understanding is that the 26.04 upgrade would install -38, possibly without a fallback. ProblemType: Bug DistroRelease: Ubuntu 24.04 Package: linux-image-6.8.0-146-generic 6.8.0-146.146 ProcVersionSignature: Ubuntu 6.8.0-146.146-generic 6.8.12 Uname: Linux 6.8.0-146-generic x86_64 NonfreeKernelModules: nvidia_modeset nvidia ApportVersion: 2.28.3-0ubuntu0.1 Architecture: amd64 AudioDevicesInUse: USER PID ACCESS COMMAND /dev/snd/controlC2: pm 3474 F.... wireplumber /dev/snd/controlC1: pm 3474 F.... wireplumber /dev/snd/controlC0: pm 3474 F.... wireplumber /dev/snd/seq: pm 3472 F.... pipewire CasperMD5CheckResult: unknown CurrentDesktop: KDE Date: Sat Oct 3 13:02:30 2026 HibernationDevice: RESUME=UUID=f2799cf1-38b5-43b9-80b1-9f330e95c354 InstallationDate: Installed on 2024-12-22 (651 days ago) InstallationMedia: Kubuntu 24.04.1 LTS "Noble Numbat" - Release amd64 (20240827) MachineType: CyberPowerPC GamingPC ProcFB: 0 i915drmfb ProcKernelCmdLine: BOOT_IMAGE=/vmlinuz-6.8.0-146-generic root=UUID=d7e17bac-b56c-4498-b5e0-e249bd682b7d ro quiet cryptdevice=UUID=c8b193ba-0124-495f-a549-091eb877b76a:cryptroot root=/dev/mapper/cryptroot splash resume=UUID=f2799cf1-38b5-43b9-80b1-9f330e95c354 "acpi_osi=Windows 2022" acpi_mask_gpe=0x6E vt.handoff=7 PulseList: Error: command ['pacmd', 'list'] failed with exit code 1: No PulseAudio daemon running, or not running as session daemon. RelatedPackageVersions: linux-restricted-modules-6.8.0-146-generic N/A linux-backports-modules-6.8.0-146-generic N/A linux-firmware 20240318.git3b128b60.0ubuntu3.1 SourcePackage: linux UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 07/29/2026 dmi.bios.release: 32.12 dmi.bios.vendor: American Megatrends Inc. dmi.bios.version: 3212 dmi.board.asset.tag: Default string dmi.board.name: Z890 MAX GAMING WIFI7 dmi.board.vendor: ASUSTeK COMPUTER INC. dmi.board.version: Rev 1.xx dmi.chassis.asset.tag: Default string dmi.chassis.type: 3 dmi.chassis.vendor: Default string dmi.chassis.version: Default string dmi.modalias: dmi:bvnAmericanMegatrendsInc.:bvr3212:bd07/29/2026:br32.12:svnCyberPowerPC:pnGamingPC:pvrSystemVersion:rvnASUSTeKCOMPUTERINC.:rnZ890MAXGAMINGWIFI7:rvrRev1.xx:cvnDefaultstring:ct3:cvrDefaultstring:skuCPPC-SYSTEM-US: dmi.product.family: C Series dmi.product.name: GamingPC dmi.product.sku: CPPC-SYSTEM-US dmi.product.version: System Version dmi.sys.vendor: CyberPowerPC To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/2169427/+subscriptions

пятница

[Bug 2169378] [NEW] Add Realtek RT721_U and RT718 SoundWire audio support

Public bug reported: [Impact] Audio on new Dell Pro 5 All-in-One platforms is not fully supported on systems with the newer Realtek SoundWire codec variants. The driver lacks device matching and the variant-specific settings needed for playback, microphone capture, and headset setup. [Fix] Extend the existing codec driver to match the new variants and apply their register settings, headset calibration, and playback volume ranges. Add the new device to the shared SoundWire codec information table. ASoC: rt721: Add support for the RT721_U and RT718 codec variants https://patch.msgid.link/20260917104244.2512641-1-oder_chiou@realtek.com [Test Plan] Use systems with each newly supported codec variant. Boot the unpatched kernel and then the patched kernel with the same audio userspace. List the playback and capture devices: aplay -l arecord -l Select the speaker output and set a safe audible volume. Use the matching ALSA card and device numbers to test stereo playback: speaker-test -D plughw:CARD,DEVICE -c 2 -t wav -l 1 Plug in a headset, select its output, and repeat with its playback device. Select the headset microphone and record while speaking: arecord -D plughw:CARD,DEVICE -f S16_LE -r 48000 -c 1 -d 5 /tmp/realtek-mic.wav aplay /tmp/realtek-mic.wav Repeat the recording with the built-in microphone selected. Replace CARD and DEVICE with the numbers for each path. Without the support patch, the new device may not bind to the driver, or audio paths may fail because they use settings for the original variant. With the patch, the device binds and playback and capture work on each path. For the reset dependency, warm-reboot an affected system from Windows into Ubuntu and run the playback test. Without the reset fix, output can sound abnormal. With the fix, output sounds normal. [Where problems could occur] The changes affect the Realtek SoundWire codec driver and the shared SoundWire codec table. Wrong variant detection or volume ranges could cause silent, distorted, or unexpectedly loud playback. Wrong pin or calibration settings could break headset detection or microphone capture. ** Affects: hwe-next Importance: Undecided Status: New ** Affects: linux (Ubuntu) Importance: Undecided Status: New ** Affects: linux (Ubuntu Resolute) Importance: Undecided Status: New ** Affects: linux (Ubuntu Stonking) Importance: Undecided Status: New ** Tags: jira-somerville-4796 oem-priority somerville ** Also affects: linux (Ubuntu Resolute) Importance: Undecided Status: New ** Also affects: linux (Ubuntu Stonking) Importance: Undecided Status: New ** Tags added: jira-somerville-4796 oem-priority somerville -- You received this bug notification because you are subscribed to linux in Ubuntu. Matching subscriptions: Bgg, Bmail, Nb https://bugs.launchpad.net/bugs/2169378 Title: Add Realtek RT721_U and RT718 SoundWire audio support Status in HWE Next: New Status in linux package in Ubuntu: New Status in linux source package in Resolute: New Status in linux source package in Stonking: New Bug description: [Impact] Audio on new Dell Pro 5 All-in-One platforms is not fully supported on systems with the newer Realtek SoundWire codec variants. The driver lacks device matching and the variant-specific settings needed for playback, microphone capture, and headset setup. [Fix] Extend the existing codec driver to match the new variants and apply their register settings, headset calibration, and playback volume ranges. Add the new device to the shared SoundWire codec information table. ASoC: rt721: Add support for the RT721_U and RT718 codec variants https://patch.msgid.link/20260917104244.2512641-1-oder_chiou@realtek.com [Test Plan] Use systems with each newly supported codec variant. Boot the unpatched kernel and then the patched kernel with the same audio userspace. List the playback and capture devices: aplay -l arecord -l Select the speaker output and set a safe audible volume. Use the matching ALSA card and device numbers to test stereo playback: speaker-test -D plughw:CARD,DEVICE -c 2 -t wav -l 1 Plug in a headset, select its output, and repeat with its playback device. Select the headset microphone and record while speaking: arecord -D plughw:CARD,DEVICE -f S16_LE -r 48000 -c 1 -d 5 /tmp/realtek-mic.wav aplay /tmp/realtek-mic.wav Repeat the recording with the built-in microphone selected. Replace CARD and DEVICE with the numbers for each path. Without the support patch, the new device may not bind to the driver, or audio paths may fail because they use settings for the original variant. With the patch, the device binds and playback and capture work on each path. For the reset dependency, warm-reboot an affected system from Windows into Ubuntu and run the playback test. Without the reset fix, output can sound abnormal. With the fix, output sounds normal. [Where problems could occur] The changes affect the Realtek SoundWire codec driver and the shared SoundWire codec table. Wrong variant detection or volume ranges could cause silent, distorted, or unexpectedly loud playback. Wrong pin or calibration settings could break headset detection or microphone capture. To manage notifications about this bug go to: https://bugs.launchpad.net/hwe-next/+bug/2169378/+subscriptions

[Bug 2167915] Re: Support Cirrus Logic CS42L45+CS35L63 on new Dell Slate NVL

** Description changed: [Impact] Dell Slate-2 Systems using Cirrus CS42L45 codec + CS35L63 amp need new SDCA feature support and the corresponding linux-firmware to have all audio function work + [Fix] ======= linux kernel ====== - [Fix] Need the following patches on 7.3 (which are already in Stonking) ee1811eacdbb soundwire: bus_type: Create IRQ mapping before calling driver probe() df036250d7d5 ASoC: SDCA: Remove sdca_function_data duplication 9557ec3f9c9f ASoC: SDCA: Add RJ support to class driver a158fe7b0c81 ASoC: SOF: Intel: NVL-S: add platform name ab463b465585 ASoC: SOF: Intel: NVL: add platform name - ====== linux-firmware ====== AMP FW: https://git.kernel.org/pub/scm/linux/kernel/git/firmware/linux-firmware.git/commit/?id=2ded07e3da99f522881039f13595f34d54acdc74 [git.kernel.org] Codec FW: https://git.kernel.org/pub/scm/linux/kernel/git/firmware/linux- firmware.git/commit/?id=10f09227a370e02de71b584024c20dc8d3a02103 [git.kernel.org] - ====== firmware-sof ====== https://github.com/thesofproject/sof-bin/releases/tag/v2026.09 - [Test Plan] 1. Boot up The Dell Slate-2 NVL system with CS42L45+CS35L63 audio solution 2. Go to g-s-d for sound settings for audio intput/output device check 3. Make sure they're not Dummy for audio input/output 4. `aplay` to verify audio output function and `arecord` to verify audio input [Where problems could occur] It's new Dell system with Intel NVL, need firmware-sof + kernel SDCA for Intel NVL + linux-firmware to work. Need to make sure no regression on older platforms. Ex. Intel WCL, PTL...etc -- You received this bug notification because you are subscribed to linux in Ubuntu. Matching subscriptions: Bgg, Bmail, Nb https://bugs.launchpad.net/bugs/2167915 Title: Support Cirrus Logic CS42L45+CS35L63 on new Dell Slate NVL Status in HWE Next: New Status in firmware-sof package in Ubuntu: New Status in linux package in Ubuntu: Fix Released Status in linux-firmware package in Ubuntu: New Status in firmware-sof source package in Resolute: New Status in linux source package in Resolute: Invalid Status in linux-firmware source package in Resolute: New Status in firmware-sof source package in Stonking: New Status in linux source package in Stonking: Fix Released Status in linux-firmware source package in Stonking: New Bug description: [Impact] Dell Slate-2 Systems using Cirrus CS42L45 codec + CS35L63 amp need new SDCA feature support and the corresponding linux-firmware to have all audio function work [Fix] ======= linux kernel ====== Need the following patches on 7.3 (which are already in Stonking) ee1811eacdbb soundwire: bus_type: Create IRQ mapping before calling driver probe() df036250d7d5 ASoC: SDCA: Remove sdca_function_data duplication 9557ec3f9c9f ASoC: SDCA: Add RJ support to class driver a158fe7b0c81 ASoC: SOF: Intel: NVL-S: add platform name ab463b465585 ASoC: SOF: Intel: NVL: add platform name ====== linux-firmware ====== AMP FW: https://git.kernel.org/pub/scm/linux/kernel/git/firmware/linux-firmware.git/commit/?id=2ded07e3da99f522881039f13595f34d54acdc74 [git.kernel.org] Codec FW: https://git.kernel.org/pub/scm/linux/kernel/git/firmware/linux- firmware.git/commit/?id=10f09227a370e02de71b584024c20dc8d3a02103 [git.kernel.org] ====== firmware-sof ====== https://github.com/thesofproject/sof-bin/releases/tag/v2026.09 [Test Plan] 1. Boot up The Dell Slate-2 NVL system with CS42L45+CS35L63 audio solution 2. Go to g-s-d for sound settings for audio intput/output device check 3. Make sure they're not Dummy for audio input/output 4. `aplay` to verify audio output function and `arecord` to verify audio input [Where problems could occur] It's new Dell system with Intel NVL, need firmware-sof + kernel SDCA for Intel NVL + linux-firmware to work. Need to make sure no regression on older platforms. Ex. Intel WCL, PTL...etc To manage notifications about this bug go to: https://bugs.launchpad.net/hwe-next/+bug/2167915/+subscriptions

[Bug 2169175] Re: Fix missing headset on Dell QCx1255 models

** Changed in: linux (Ubuntu Resolute) Status: New => In Progress ** Changed in: linux (Ubuntu Stonking) Status: New => In Progress -- You received this bug notification because you are subscribed to linux in Ubuntu. Matching subscriptions: Bgg, Bmail, Nb https://bugs.launchpad.net/bugs/2169175 Title: Fix missing headset on Dell QCx1255 models Status in HWE Next: New Status in linux package in Ubuntu: In Progress Status in linux source package in Resolute: In Progress Status in linux source package in Stonking: In Progress Bug description: [Impact] The headset microphone does not work on Dell QC1255 models. The earlier headphone pop-noise fix leaves out the headset-mode setup. [Fix] Chain the headset-microphone and headset-mode fixup after the headphone pop-noise fixup in the Realtek HDA codec driver. Upstream commit 608c0c8947f03069b651ace54538a115f5b23123 is in the sound tree and linux-next, It fixes the regression introduced by headphone pop-noise fix 97272a5704bf, which is in v7.2. [Test Plan] On an affected Dell QCx1255 models, plug in a headset with a microphone and select the headset microphone as the recording input. List the ALSA capture devices: arecord -l Record five seconds while speaking, using the card and device numbers shown above for the Realtek codec: arecord -D plughw:CARD,DEVICE -f S16_LE -r 48000 -c 1 -d 5 /tmp/headset-mic.wav aplay /tmp/headset-mic.wav Replace CARD and DEVICE with those numbers. Without the patch, the headset microphone does not record speech. With the patch, the recording contains speech from the headset microphone. [Where problems could occur] The change affects headset pin setup on Dell systems using this Realtek HDA fixup. If the chained fixup selects the wrong input pins, the headset microphone may still be silent or the built-in microphone may stop working. If the fixup changes headphone routing, headphone pop noise could return. To manage notifications about this bug go to: https://bugs.launchpad.net/hwe-next/+bug/2169175/+subscriptions

[Bug 1786013] Autopkgtest regression report (linux-restricted-modules-azure-fde/5.15.0-1123.132)

All autopkgtests for the newly accepted linux-restricted-modules-azure-fde (5.15.0-1123.132) for jammy have finished running. The following regressions have been reported in tests triggered by the package: nvidia-graphics-drivers-390/390.157-0ubuntu0.22.04.2 (amd64, armhf, i386) nvidia-graphics-drivers-450-server/450.248.02-0ubuntu0.22.04.1 (amd64) Please visit the excuses page listed below and investigate the failures, proceeding afterwards as per the StableReleaseUpdates policy regarding autopkgtest regressions [1]. https://ubuntu-archive-team.ubuntu.com/proposed- migration/jammy/update_excuses.html#linux-restricted-modules-azure-fde [1] https://documentation.ubuntu.com/project/SRU/howto/autopkgtest- failure/ Thank you! -- You received this bug notification because you are subscribed to linux in Ubuntu. Matching subscriptions: Bgg, Bmail, Nb https://bugs.launchpad.net/bugs/1786013 Title: Packaging resync Status in linux package in Ubuntu: Fix Released Status in linux-azure package in Ubuntu: Fix Released Status in linux-azure-edge package in Ubuntu: Fix Released Status in linux source package in Precise: Fix Released Status in linux-azure source package in Precise: Won't Fix Status in linux-azure-edge source package in Precise: Won't Fix Status in linux source package in Trusty: Fix Released Status in linux-azure source package in Trusty: Fix Released Status in linux-azure-edge source package in Trusty: Won't Fix Status in linux source package in Xenial: Fix Released Status in linux-azure source package in Xenial: Fix Released Status in linux-azure-edge source package in Xenial: Fix Released Status in linux source package in Bionic: Fix Released Status in linux-azure source package in Bionic: Fix Released Status in linux-azure-edge source package in Bionic: Fix Released Status in linux source package in Cosmic: Fix Released Status in linux-azure source package in Cosmic: Fix Released Status in linux-azure-edge source package in Cosmic: Won't Fix Status in linux source package in Disco: Fix Released Status in linux-azure source package in Disco: Fix Released Status in linux-azure-edge source package in Disco: Won't Fix Bug description: Ongoing packaging resyncs. To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1786013/+subscriptions

[Bug 2169339] Re: [iMac18,2] BCM43602 Wi-Fi (brcmfmac) cannot associate on 7.3 kernels: DMAR DMA Read faults, firmware hangs; works with intel_iommu=off

** Tags added: kernel-daily-bug -- You received this bug notification because you are subscribed to linux in Ubuntu. Matching subscriptions: Bgg, Bmail, Nb https://bugs.launchpad.net/bugs/2169339 Title: [iMac18,2] BCM43602 Wi-Fi (brcmfmac) cannot associate on 7.3 kernels: DMAR DMA Read faults, firmware hangs; works with intel_iommu=off Status in linux package in Ubuntu: New Bug description: On an iMac18,2 (2017) with a Broadcom BCM43602 [14e4:43ba] (subsystem Apple [106b:016e]), Wi-Fi no longer connects since the installed system moved to the 7.3 kernel. Booting with intel_iommu=off makes it work again. Wi-Fi worked in the Ubuntu 26.10 live session used to install the machine (kernel 7.2.0-5, image of 2026-09-15). The installer then upgraded to linux 7.3.0-5 and removed 7.2.0-5, and Wi-Fi has failed on every boot since (7.3.0-5, 7.3.0-6 and 7.3.0-8, 13 boots in total). I have no logs from the 7.2 live session, so I cannot tell whether the IOMMU was enabled there. What happens on a default boot: 1. brcmfmac loads, firmware starts, wlp3s0 appears, the initial scan works (the access point is listed with a strong signal). 2. As soon as association starts, the IOMMU reports two faults for the Wi-Fi device: DMAR: DRHD: handling fault status reg 2 DMAR: [DMA Read NO_PASID] Request device [0000:03:00.0] fault addr 0xfffa3000 [fault reason 0x06] PTE Read access is not set DMAR: [DMA Read NO_PASID] Request device [0000:03:00.0] fault addr 0xfffa5000 [fault reason 0x06] PTE Read access is not set (the addresses vary between boots, e.g. 0xfff64000 / 0xfff65000) 3. The firmware stops answering: ieee80211 phy0: brcmf_msgbuf_query_dcmd: Timeout on response for query command ieee80211 phy0: brcmf_get_assoc_ies: could not get assoc info (-5) 4. After a few minutes the control ring fills up: ieee80211 phy0: brcmf_msgbuf_tx_ioctl: Failed to reserve space in commonring ieee80211 phy0: brcmf_run_escan: error (-12) 5. NetworkManager: "association took too long, failing activation", reason 'ssid-not-found', retried forever. WORKAROUND Adding intel_iommu=off to the kernel command line. With it, on the same kernel (7.3.0-8-generic): no DMAR fault, no firmware timeout, association succeeds within seconds and traffic flows (IPv4 and IPv6). The usual BCM43602 workarounds were already in place and did not help: options brcmfmac feature_disable=0x82000 roamoff=1 options cfg80211 ieee80211_regdom=FR SYSTEM Release: Ubuntu 26.10 "Stonking Stingray" (development branch) Kernel: 7.3.0-8-generic (7.3.0-8.8, based on 7.3.0-rc5); also 7.3.0-5.5 and 7.3.0-6.6 Machine: Apple iMac18,2 Wi-Fi: Broadcom BCM43602 802.11ac [14e4:43ba] rev 01, subsystem Apple [106b:016e] Driver: brcmfmac (in-tree), firmware brcm/brcmfmac43602-pcie Firmware: BCM43602/1 wl0: Nov 10 2015 06:38:10 version 7.35.177.61 (r598657) FWID 01-ea662a8c linux-firmware: 20260915.git1522c78a wpasupplicant: 2:2.11-2ubuntu2 Kernel config: CONFIG_INTEL_IOMMU_DEFAULT_ON=y, CONFIG_INTEL_IOMMU_SCALABLE_MODE_DEFAULT_ON=y, IOMMU default domain type "Translated", lazy TLB invalidation Secure Boot: not supported on this machine Note: a custom NVRAM file /lib/firmware/brcm/brcmfmac43602-pcie.txt was added on 2026-09-20 while trying to fix this. The failure already occurred on the boots before that file existed. Note: the logs attached automatically by apport come from a boot with intel_iommu=off (working). Kernel log excerpts from a failing boot (default command line) are attached separately as dmesg-failing- boot.txt. ProblemType: Bug DistroRelease: Ubuntu 26.10 Package: linux-image-7.3.0-8-generic 7.3.0-8.8 ProcVersionSignature: Ubuntu 7.3.0-8.8-generic 7.3.0-rc5 Uname: Linux 7.3.0-8-generic x86_64 ApportVersion: 2.36.0-0ubuntu1 Architecture: amd64 AudioDevicesInUse: USER PID ACCESS COMMAND /dev/snd/controlC0: parents 18057 F.... wireplumber /dev/snd/controlC1: parents 18057 F.... wireplumber /dev/snd/seq: parents 18053 F.... pipewire CasperMD5CheckResult: pass CurrentDesktop: ubuntu:GNOME Date: Fri Oct 2 22:10:14 2026 InstallationDate: Installed on 2026-09-19 (13 days ago) InstallationMedia: Ubuntu 26.10 "Stonking Stingray" - Daily amd64 (20260915) MachineType: Apple Inc. iMac18,2 ProcEnviron: LANG=fr_FR.UTF-8 PATH=(custom, no user) SHELL=/bin/bash TERM=xterm-256color XDG_RUNTIME_DIR=<set> ProcFB: 0 amdgpudrmfb ProcKernelCmdLine: BOOT_IMAGE=/boot/vmlinuz-7.3.0-8-generic root=UUID=449c41b8-da4d-4c34-ad74-1f7a5e150bb0 ro quiet splash intel_iommu=off crashkernel=2G-4G:320M,4G-32G:512M,32G-64G:1024M,64G-128G:2048M,128G-:4096M SourcePackage: linux UpgradeStatus: No upgrade log present (probably fresh install) dmi.bios.date: 04/11/2022 dmi.bios.release: 0.1 dmi.bios.vendor: Apple Inc. dmi.bios.version: 451.140.1.0.0 dmi.board.name: Mac-77F17D7DA9285301 dmi.board.vendor: Apple Inc. dmi.board.version: iMac18,2 dmi.chassis.type: 9 dmi.chassis.vendor: Apple Inc. dmi.chassis.version: Mac-77F17D7DA9285301 dmi.modalias: dmi:bvnAppleInc.:bvr451.140.1.0.0:bd04/11/2022:br0.1:svnAppleInc.:pniMac18,2:pvr1.0:rvnAppleInc.:rnMac-77F17D7DA9285301:rvriMac18,2:cvnAppleInc.:ct9:cvrMac-77F17D7DA9285301:sku:pfaiMac: dmi.product.family: iMac dmi.product.name: iMac18,2 dmi.product.version: 1.0 dmi.sys.vendor: Apple Inc. To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/2169339/+subscriptions