| 15 Oct 2023 |
@5m5z3q888q5prxkg:chat.lightnovel-dungeon.de | so i think it's something nix-caused | 09:49:55 |
@5m5z3q888q5prxkg:chat.lightnovel-dungeon.de | bcs the mesa bug states that the fix is in mesa 23.X | 09:50:08 |
Jan Tojnar | does unstable have the correct version then? | 09:50:14 |
Jan Tojnar | looks like it does, so 🤷♀️ | 09:54:24 |
@5m5z3q888q5prxkg:chat.lightnovel-dungeon.de | 🤔 | 09:57:08 |
@5m5z3q888q5prxkg:chat.lightnovel-dungeon.de | i try to mess with it more to do overlays for mesa versions and report in the issue then, worst case throw that at mesa people to figure out or? | 09:57:47 |
Jan Tojnar | yeah, probably | 09:59:07 |
Jan Tojnar | can you reproduce with the script mentioned in the upstream issue? | 09:59:20 |
Jan Tojnar | you could also try to apply the debug patch from https://gitlab.freedesktop.org/mesa/mesa/-/issues/8198#note_1763243 | 09:59:34 |
@5m5z3q888q5prxkg:chat.lightnovel-dungeon.de | In reply to @jtojnar:matrix.org can you reproduce with the script mentioned in the upstream issue? Which one? | 10:06:24 |
Jan Tojnar | In reply to @5m5z3q888q5prxkg:chat.lightnovel-dungeon.de Which one? https://gitlab.freedesktop.org/mesa/mesa/-/issues/8198#note_1754876 | 10:15:06 |
@5m5z3q888q5prxkg:chat.lightnovel-dungeon.de | oh didn't notice that one i will try that when i get home | 10:15:41 |
Hubble the Wolverine (they/them) | Heya! (reposted from Nix/NixOS room)
I'm having trouble with tracker-extract-3.service on nixos. It's been crashing since nixos 23.05.20231011.bd1cde (October 12th). https://gist.github.com/the-furry-hubofeverything/97e6dbbca82bcdfb6325626e7b88b40a
Looking at the time that it happened, and comparing that to the closest system profile change, I ran a diff-closure between unproblematic and the problematic system, and it resulted with:
[hubble@Gulo-Laptop:~]$ nix store diff-closures /nix/var/nix/profiles/system-395-link /nix/var/nix/profiles/system-396-link
nixos-system-Gulo-Laptop: 23.05.20231007.5a237ae → 23.05.20231011.bd1cde4
source: +417.8 KiB
tracker-miners: 3.5.0 → 3.5.3, -41.0 KiB
And looking at the latest commits at that time, tracker-miners was updated to patch CVE-2023-43641. Is this related to the CVE? Is this a nixos bug or upstream?
| 23:07:07 |
| 16 Oct 2023 |
| @dandelionc:matrix.org joined the room. | 01:25:25 |
Jan Tojnar | In reply to @hubofeverything:bark.lgbt
Heya! (reposted from Nix/NixOS room)
I'm having trouble with tracker-extract-3.service on nixos. It's been crashing since nixos 23.05.20231011.bd1cde (October 12th). https://gist.github.com/the-furry-hubofeverything/97e6dbbca82bcdfb6325626e7b88b40a
Looking at the time that it happened, and comparing that to the closest system profile change, I ran a diff-closure between unproblematic and the problematic system, and it resulted with:
[hubble@Gulo-Laptop:~]$ nix store diff-closures /nix/var/nix/profiles/system-395-link /nix/var/nix/profiles/system-396-link
nixos-system-Gulo-Laptop: 23.05.20231007.5a237ae → 23.05.20231011.bd1cde4
source: +417.8 KiB
tracker-miners: 3.5.0 → 3.5.3, -41.0 KiB
And looking at the latest commits at that time, tracker-miners was updated to patch CVE-2023-43641. Is this related to the CVE? Is this a nixos bug or upstream?
Hi, the security sandbox whitelists allowed system calls so if some dependency is updated it might start using one not on the whitelist | 04:29:37 |
Jan Tojnar | It would help if you could get a trace by running `coredumpctl gdb` and entering `bt` | 04:33:14 |
@5m5z3q888q5prxkg:chat.lightnovel-dungeon.de | In reply to @jtojnar:matrix.org https://gitlab.freedesktop.org/mesa/mesa/-/issues/8198#note_1754876 Doesn't seem to be reproducible with the script, it seems to happen when trying to call epiphany which then slowly crashes the whole system | 10:10:23 |
@5m5z3q888q5prxkg:chat.lightnovel-dungeon.de | where epiphany seems to be using bwrap maybe it has the old mesa? | 10:12:14 |
@5m5z3q888q5prxkg:chat.lightnovel-dungeon.de | also seems that the hardened kernel prevents the crashes | 10:13:54 |
@5m5z3q888q5prxkg:chat.lightnovel-dungeon.de | hmm i can reproduce that by playing a mpv video of the big bucks bunny sample 🤔 | 10:29:49 |
@5m5z3q888q5prxkg:chat.lightnovel-dungeon.de | and can't anymore | 10:30:26 |
@5m5z3q888q5prxkg:chat.lightnovel-dungeon.de | maybe it's caused by full memory? | 10:30:32 |
Hubble the Wolverine (they/them) | In reply to @jtojnar:matrix.org Hi, the security sandbox whitelists allowed system calls so if some dependency is updated it might start using one not on the whitelist
warning: core file may not match specified executable file.
[New LWP 5389]
[New LWP 5393]
[New LWP 5390]
[New LWP 5392]
[New LWP 5391]
[Thread debugging using libthread_db enabled]
Using host libthread_db library "/nix/store/whypqfa83z4bsn43n4byvmw80n4mg3r8-glibc-2.37-45/lib/libthread_db.so.1".
Core was generated by `/nix/store/mngainxz4xg8mzqgl4028lxij0jhqcpx-tracker-miners-3.5.3/libexec/tracke'.
Program terminated with signal SIGSYS, Bad system call.
#0 <signal handler called>
[Current thread is 1 (Thread 0x7fdb2921c840 (LWP 5389))]
(gdb) bt
#0 <signal handler called>
#1 0x00007fdb29db21ab in sched_get_priority_max () from /nix/store/whypqfa83z4bsn43n4byvmw80n4mg3r8-glibc-2.37-45/lib/libc.so.6
#2 0x00007fdb062e1cb5 in ?? () from /run/opengl-driver/lib/libcuda.so.1
#3 0x00007fdb067df0d2 in ?? () from /run/opengl-driver/lib/libcuda.so.1
#4 0x0000000000000000 in ?? ()
| 14:58:52 |
Hubble the Wolverine (they/them) | In reply to @jtojnar:matrix.org Hi, the security sandbox whitelists allowed system calls so if some dependency is updated it might start using one not on the whitelist * Reading symbols from /nix/store/mngainxz4xg8mzqgl4028lxij0jhqcpx-tracker-miners-3.5.3/libexec/.tracker-extract-3-wrapped...
(No debugging symbols found in /nix/store/mngainxz4xg8mzqgl4028lxij0jhqcpx-tracker-miners-3.5.3/libexec/.tracker-extract-3-wrapped)
warning: core file may not match specified executable file.
[New LWP 5389]
[New LWP 5393]
[New LWP 5390]
[New LWP 5392]
[New LWP 5391]
[Thread debugging using libthread_db enabled]
Using host libthread_db library "/nix/store/whypqfa83z4bsn43n4byvmw80n4mg3r8-glibc-2.37-45/lib/libthread_db.so.1".
Core was generated by `/nix/store/mngainxz4xg8mzqgl4028lxij0jhqcpx-tracker-miners-3.5.3/libexec/tracke'.
Program terminated with signal SIGSYS, Bad system call.
#0 <signal handler called>
[Current thread is 1 (Thread 0x7fdb2921c840 (LWP 5389))]
(gdb) bt
#0 <signal handler called>
#1 0x00007fdb29db21ab in sched_get_priority_max () from /nix/store/whypqfa83z4bsn43n4byvmw80n4mg3r8-glibc-2.37-45/lib/libc.so.6
#2 0x00007fdb062e1cb5 in ?? () from /run/opengl-driver/lib/libcuda.so.1
#3 0x00007fdb067df0d2 in ?? () from /run/opengl-driver/lib/libcuda.so.1
#4 0x0000000000000000 in ?? ()
| 14:59:22 |
Hubble the Wolverine (they/them) | * Reading symbols from /nix/store/mngainxz4xg8mzqgl4028lxij0jhqcpx-tracker-miners-3.5.3/libexec/.tracker-extract-3-wrapped...
(No debugging symbols found in /nix/store/mngainxz4xg8mzqgl4028lxij0jhqcpx-tracker-miners-3.5.3/libexec/.tracker-extract-3-wrapped)
warning: core file may not match specified executable file.
[New LWP 5389]
[New LWP 5393]
[New LWP 5390]
[New LWP 5392]
[New LWP 5391]
[Thread debugging using libthread_db enabled]
Using host libthread_db library "/nix/store/whypqfa83z4bsn43n4byvmw80n4mg3r8-glibc-2.37-45/lib/libthread_db.so.1".
Core was generated by `/nix/store/mngainxz4xg8mzqgl4028lxij0jhqcpx-tracker-miners-3.5.3/libexec/tracke'.
Program terminated with signal SIGSYS, Bad system call.
#0 <signal handler called>
[Current thread is 1 (Thread 0x7fdb2921c840 (LWP 5389))]
(gdb) bt
#0 <signal handler called>
#1 0x00007fdb29db21ab in sched_get_priority_max () from /nix/store/whypqfa83z4bsn43n4byvmw80n4mg3r8-glibc-2.37-45/lib/libc.so.6
#2 0x00007fdb062e1cb5 in ?? () from /run/opengl-driver/lib/libcuda.so.1
#3 0x00007fdb067df0d2 in ?? () from /run/opengl-driver/lib/libcuda.so.1
#4 0x0000000000000000 in ?? ()
| 14:59:30 |
Hubble the Wolverine (they/them) | Let me know if any more information is needed | 15:17:21 |
| Unidealistic Raccoon joined the room. | 19:50:59 |
| 17 Oct 2023 |
vcunat | I wonder, is cairo upgrade the only "breaking change" that has significant reach outside gnome and needs to be in 23.11? | 07:15:07 |
vcunat | (such changes have under two weeks to merge now) | 07:15:56 |
vcunat | * (such changes have under two weeks to merge now) | 07:16:19 |