- ************* Preparing the environment for Debugger Extensions Gallery repositories **************
- ExtensionRepository : Implicit
- UseExperimentalFeatureForNugetShare : true
- AllowNugetExeUpdate : true
- NonInteractiveNuget : true
- AllowNugetMSCredentialProviderInstall : true
- AllowParallelInitializationOfLocalRepositories : true
- EnableRedirectToV8JsProvider : false
- -- Configuring repositories
- ----> Repository : LocalInstalled, Enabled: true
- ----> Repository : UserExtensions, Enabled: true
- >>>>>>>>>>>>> Preparing the environment for Debugger Extensions Gallery repositories completed, duration 0.000 seconds
- ************* Waiting for Debugger Extensions Gallery to Initialize **************
- >>>>>>>>>>>>> Waiting for Debugger Extensions Gallery to Initialize completed, duration 0.407 seconds
- ----> Repository : UserExtensions, Enabled: true, Packages count: 0
- ----> Repository : LocalInstalled, Enabled: true, Packages count: 41
- Microsoft (R) Windows Debugger Version 10.0.27553.1004 AMD64
- Copyright (c) Microsoft Corporation. All rights reserved.
- Loading Dump File [C:\Windows\MEMORY.DMP]
- Kernel Bitmap Dump File: Kernel address space is available, User address space may not be available.
- ************* Path validation summary **************
- Response Time (ms) Location
- Deferred srv*
- OK C:\cygwin64\home\roland_mainz\work\msnfs41_uidmapping\ms-nfs41-client\destdir\cygdrive\c\cygwin64\sbin
- OK C:\cygwin64\home\roland_mainz\work\msnfs41_uidmapping\ms-nfs41-client\build.vc19\x64\Debug\nfs41_driver
- Symbol search path is: srv*;C:\cygwin64\home\roland_mainz\work\msnfs41_uidmapping\ms-nfs41-client\destdir\cygdrive\c\cygwin64\sbin;C:\cygwin64\home\roland_mainz\work\msnfs41_uidmapping\ms-nfs41-client\build.vc19\x64\Debug\nfs41_driver
- Executable search path is:
- Windows 10 Kernel Version 19041 MP (8 procs) Free x64
- Product: WinNt, suite: TerminalServer SingleUserTS
- Edition build lab: 19041.1.amd64fre.vb_release.191206-1406
- Kernel base = 0xfffff805`2621e000 PsLoadedModuleList = 0xfffff805`26e488c0
- Debug session time: Thu Aug 1 01:21:46.200 2024 (UTC + 2:00)
- System Uptime: 0 days 6:45:52.703
- Loading Kernel Symbols
- ...............................................................
- ................................................................
- ................................................................
- .....
- Loading User Symbols
- Loading unloaded module list
- .......
- For analysis of this file, run !analyze -v
- nt!KeBugCheckEx:
- fffff805`2661be50 48894c2408 mov qword ptr [rsp+8],rcx ss:0018:ffffd78c`2a909600=0000000000000050
- 1: kd> !analyze -v
- *******************************************************************************
- * *
- * Bugcheck Analysis *
- * *
- *******************************************************************************
- PAGE_FAULT_IN_NONPAGED_AREA (50)
- Invalid system memory was referenced. This cannot be protected by try-except.
- Typically the address is just plain bad or it is pointing at freed memory.
- Arguments:
- Arg1: ffffffffffffffd0, memory referenced.
- Arg2: 0000000000000002, X64: bit 0 set if the fault was due to a not-present PTE.
- bit 1 is set if the fault was due to a write, clear if a read.
- bit 3 is set if the processor decided the fault was due to a corrupted PTE.
- bit 4 is set if the fault was due to attempted execute of a no-execute PTE.
- - ARM64: bit 1 is set if the fault was due to a write, clear if a read.
- bit 3 is set if the fault was due to attempted execute of a no-execute PTE.
- Arg3: fffff80526478cb4, If non-zero, the instruction address which referenced the bad memory
- address.
- Arg4: 0000000000000002, (reserved)
- Debugging Details:
- ------------------
- *** WARNING: Check Image - Checksum mismatch - Dump: 0xd94f, File: 0x72fd - C:\ProgramData\Dbg\sym\hal.dll\1A7BE8E96000\hal.dll
- KEY_VALUES_STRING: 1
- Key : AV.Type
- Value: Write
- Key : Analysis.CPU.mSec
- Value: 6577
- Key : Analysis.Elapsed.mSec
- Value: 7673
- Key : Analysis.IO.Other.Mb
- Value: 0
- Key : Analysis.IO.Read.Mb
- Value: 2
- Key : Analysis.IO.Write.Mb
- Value: 4
- Key : Analysis.Init.CPU.mSec
- Value: 1093
- Key : Analysis.Init.Elapsed.mSec
- Value: 14819
- Key : Analysis.Memory.CommitPeak.Mb
- Value: 96
- Key : Bugcheck.Code.KiBugCheckData
- Value: 0x50
- Key : Bugcheck.Code.LegacyAPI
- Value: 0x50
- Key : Bugcheck.Code.TargetModel
- Value: 0x50
- Key : Failure.Bucket
- Value: AV_VRF_W_(null)_nfs41_driver!nfs41_UpcallCreate
- Key : Failure.Hash
- Value: {0e27b659-3e93-bfe1-c4d4-c3a512516823}
- Key : Hypervisor.Enlightenments.Value
- Value: 12576
- Key : Hypervisor.Enlightenments.ValueHex
- Value: 3120
- Key : Hypervisor.Flags.AnyHypervisorPresent
- Value: 1
- Key : Hypervisor.Flags.ApicEnlightened
- Value: 0
- Key : Hypervisor.Flags.ApicVirtualizationAvailable
- Value: 0
- Key : Hypervisor.Flags.AsyncMemoryHint
- Value: 0
- Key : Hypervisor.Flags.CoreSchedulerRequested
- Value: 0
- Key : Hypervisor.Flags.CpuManager
- Value: 0
- Key : Hypervisor.Flags.DeprecateAutoEoi
- Value: 1
- Key : Hypervisor.Flags.DynamicCpuDisabled
- Value: 0
- Key : Hypervisor.Flags.Epf
- Value: 0
- Key : Hypervisor.Flags.ExtendedProcessorMasks
- Value: 0
- Key : Hypervisor.Flags.HardwareMbecAvailable
- Value: 0
- Key : Hypervisor.Flags.MaxBankNumber
- Value: 0
- Key : Hypervisor.Flags.MemoryZeroingControl
- Value: 0
- Key : Hypervisor.Flags.NoExtendedRangeFlush
- Value: 1
- Key : Hypervisor.Flags.NoNonArchCoreSharing
- Value: 0
- Key : Hypervisor.Flags.Phase0InitDone
- Value: 1
- Key : Hypervisor.Flags.PowerSchedulerQos
- Value: 0
- Key : Hypervisor.Flags.RootScheduler
- Value: 0
- Key : Hypervisor.Flags.SynicAvailable
- Value: 1
- Key : Hypervisor.Flags.UseQpcBias
- Value: 0
- Key : Hypervisor.Flags.Value
- Value: 536632
- Key : Hypervisor.Flags.ValueHex
- Value: 83038
- Key : Hypervisor.Flags.VpAssistPage
- Value: 1
- Key : Hypervisor.Flags.VsmAvailable
- Value: 0
- Key : Hypervisor.RootFlags.AccessStats
- Value: 0
- Key : Hypervisor.RootFlags.CrashdumpEnlightened
- Value: 0
- Key : Hypervisor.RootFlags.CreateVirtualProcessor
- Value: 0
- Key : Hypervisor.RootFlags.DisableHyperthreading
- Value: 0
- Key : Hypervisor.RootFlags.HostTimelineSync
- Value: 0
- Key : Hypervisor.RootFlags.HypervisorDebuggingEnabled
- Value: 0
- Key : Hypervisor.RootFlags.IsHyperV
- Value: 0
- Key : Hypervisor.RootFlags.LivedumpEnlightened
- Value: 0
- Key : Hypervisor.RootFlags.MapDeviceInterrupt
- Value: 0
- Key : Hypervisor.RootFlags.MceEnlightened
- Value: 0
- Key : Hypervisor.RootFlags.Nested
- Value: 0
- Key : Hypervisor.RootFlags.StartLogicalProcessor
- Value: 0
- Key : Hypervisor.RootFlags.Value
- Value: 0
- Key : Hypervisor.RootFlags.ValueHex
- Value: 0
- Key : SecureKernel.HalpHvciEnabled
- Value: 0
- Key : WER.OS.Branch
- Value: vb_release
- Key : WER.OS.Version
- Value: 10.0.19041.1
- BUGCHECK_CODE: 50
- BUGCHECK_P1: ffffffffffffffd0
- BUGCHECK_P2: 2
- BUGCHECK_P3: fffff80526478cb4
- BUGCHECK_P4: 2
- FILE_IN_CAB: MEMORY.DMP
- READ_ADDRESS: unable to get nt!PspSessionIdBitmap
- ffffffffffffffd0
- MM_INTERNAL_CODE: 2
- BLACKBOXBSD: 1 (!blackboxbsd)
- BLACKBOXNTFS: 1 (!blackboxntfs)
- BLACKBOXWINLOGON: 1
- PROCESS_NAME: System
- TRAP_FRAME: ffffd78c2a9098a0 -- (.trap 0xffffd78c2a9098a0)
- NOTE: The trap frame does not contain all registers.
- Some register values may be zeroed or incorrect.
- rax=fffff80526478c90 rbx=0000000000000000 rcx=0000000000000000
- rdx=0000000000000008 rsi=0000000000000000 rdi=0000000000000000
- rip=fffff80526478cb4 rsp=ffffd78c2a909a30 rbp=0000000000000080
- r8=0000000000000008 r9=0000000000000000 r10=fffff80526478c90
- r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
- r14=0000000000000000 r15=0000000000000000
- iopl=0 nv up ei pl zr na po nc
- nt!ObfReferenceObject+0x24:
- fffff805`26478cb4 f0480fc15ed0 lock xadd qword ptr [rsi-30h],rbx ds:ffffffff`ffffffd0=????????????????
- Resetting default scope
- STACK_TEXT:
- ffffd78c`2a9095f8 fffff805`26663031 : 00000000`00000050 ffffffff`ffffffd0 00000000`00000002 ffffd78c`2a9098a0 : nt!KeBugCheckEx
- ffffd78c`2a909600 fffff805`26457790 : ffffb004`cb62f100 00000000`00000002 ffffd78c`2a909920 00000000`00000000 : nt!MiSystemFault+0x1ccad1
- ffffd78c`2a909700 fffff805`2662bf6d : 00000000`00000000 ffffb004`cc47b398 00000000`00000000 fffff80d`45ae1ca5 : nt!MmAccessFault+0x400
- ffffd78c`2a9098a0 fffff805`26478cb4 : ffff9900`01980000 fffff805`26be7b1a ffffb004`ce8e2000 fffff805`26bfbbb5 : nt!KiPageFault+0x36d
- ffffd78c`2a909a30 fffff805`26c08e06 : ffffb004`ce8e2080 fffff80d`45ad6620 ffffb004`ce8e2080 fffff80d`45ad6620 : nt!ObfReferenceObject+0x24
- ffffd78c`2a909a70 fffff80d`45ae1edc : ffffb004`ce8e2080 fffff80d`45ad6620 ffffb004`cbcc2690 00000000`00000699 : nt!VerifierObfReferenceObject+0x26
- ffffd78c`2a909ab0 fffff80d`45ad67ac : fffff80d`0000000b ffffc684`30cbeee0 0000027d`fe69da00 0000027e`208162a0 : nfs41_driver!nfs41_UpcallCreate+0x27c [C:\cygwin64\home\roland_mainz\work\msnfs41_uidmapping\ms-nfs41-client\sys\nfs41_driver.c @ 1649]
- ffffd78c`2a909b30 fffff805`26547655 : 00000000`00000000 fffff80d`45ad6620 00000000`00000000 00078404`ad9b3dfe : nfs41_driver!fcbopen_main+0x18c [C:\cygwin64\home\roland_mainz\work\msnfs41_uidmapping\ms-nfs41-client\sys\nfs41_driver.c @ 7515]
- ffffd78c`2a909c10 fffff805`26624e58 : fffff805`25006180 ffffb004`ce8e2080 fffff805`26547600 00000000`00000000 : nt!PspSystemThreadStartup+0x55
- ffffd78c`2a909c60 00000000`00000000 : ffffd78c`2a90a000 ffffd78c`2a904000 00000000`00000000 00000000`00000000 : nt!KiStartSystemThread+0x28
- FAULTING_SOURCE_LINE: C:\cygwin64\home\roland_mainz\work\msnfs41_uidmapping\ms-nfs41-client\sys\nfs41_driver.c
- FAULTING_SOURCE_FILE: C:\cygwin64\home\roland_mainz\work\msnfs41_uidmapping\ms-nfs41-client\sys\nfs41_driver.c
- FAULTING_SOURCE_LINE_NUMBER: 1649
- FAULTING_SOURCE_CODE:
- 1645: entry->psec_ctx_clienttoken = entry->psec_ctx->ClientToken;
- 1646: ObReferenceObject(entry->psec_ctx_clienttoken);
- 1647: }
- 1648:
- > 1649: *entry_out = entry;
- 1650: out:
- 1651: return status;
- 1652: }
- 1653:
- 1654: static void nfs41_UpcallDestroy(nfs41_updowncall_entry *entry)
- SYMBOL_NAME: nfs41_driver!nfs41_UpcallCreate+27c
- MODULE_NAME: nfs41_driver
- IMAGE_NAME: nfs41_driver.sys
- STACK_COMMAND: .cxr; .ecxr ; kb
- BUCKET_ID_FUNC_OFFSET: 27c
- FAILURE_BUCKET_ID: AV_VRF_W_(null)_nfs41_driver!nfs41_UpcallCreate
- OS_VERSION: 10.0.19041.1
- BUILDLAB_STR: vb_release
- OSPLATFORM_TYPE: x64
- OSNAME: Windows 10
- FAILURE_ID_HASH: {0e27b659-3e93-bfe1-c4d4-c3a512516823}
- Followup: MachineOwner
- ---------
- 1: kd> .frames
- ^ Syntax error in '.frames'
- 1: kd> .frame
- 00 ffffd78c`2a9095f8 fffff805`26663031 nt!KeBugCheckEx
- 1: kd> .frame 6
- 06 ffffd78c`2a909ab0 fffff80d`45ad67ac nfs41_driver!nfs41_UpcallCreate+0x27c [C:\cygwin64\home\roland_mainz\work\msnfs41_uidmapping\ms-nfs41-client\sys\nfs41_driver.c @ 1649]
- 1: kd> dt -r entry
- Local var @ 0xffffd78c2a909ad0 Type _updowncall_entry*
- 0xffffb004`cea70e50
- +0x000 version : 0x136f9
- +0x008 xid : 0n48519696
- +0x010 opcode : b ( NFS41_FILE_QUERY_TIME_BASED_COHERENCY )
- +0x014 status : 0n0
- +0x018 state : 0 ( NFS41_WAITING_FOR_UPCALL )
- +0x020 lock : _FAST_MUTEX
- +0x000 Count : 0n1
- +0x008 Owner : (null)
- +0x010 Contention : 0
- +0x018 Event : _KEVENT
- +0x000 Header : _DISPATCHER_HEADER
- +0x030 OldIrql : 0
- +0x058 next : _LIST_ENTRY [ 0x00000000`00000000 - 0x00000000`00000000 ]
- +0x000 Flink : (null)
- +0x008 Blink : (null)
- +0x068 cond : _KEVENT
- +0x000 Header : _DISPATCHER_HEADER
- +0x000 Type : 0x1 ''
- +0x001 TimerControlFlags : 0 ''
- +0x001 Absolute : 0y0
- +0x001 Coalescable : 0y0
- +0x001 KeepShifting : 0y0
- +0x001 EncodedTolerableDelay : 0y00000 (0)
- +0x001 Abandoned : 0 ''
- +0x001 Signalling : 0 ''
- +0x002 ThreadControlFlags : 0x6 ''
- +0x002 CpuThrottled : 0y0
- +0x002 CycleProfiling : 0y1
- +0x002 CounterProfiling : 0y1
- +0x002 Reserved : 0y00000 (0)
- +0x002 Hand : 0x6 ''
- +0x002 Size : 0x6 ''
- +0x003 TimerMiscFlags : 0 ''
- +0x003 Index : 0y000000 (0)
- +0x003 Inserted : 0y0
- +0x003 Expired : 0y0
- +0x003 DebugActive : 0 ''
- +0x003 ActiveDR7 : 0y0
- +0x003 Instrumented : 0y0
- +0x003 Reserved2 : 0y0000
- +0x003 UmsScheduled : 0y0
- +0x003 UmsPrimary : 0y0
- +0x003 DpcActive : 0 ''
- +0x000 Lock : 0n393217
- +0x004 SignalState : 0n0
- +0x008 WaitListHead : _LIST_ENTRY [ 0xffffb004`cea70ec0 - 0xffffb004`cea70ec0 ]
- +0x080 errno : 0
- +0x084 async_op : 0 ''
- +0x088 sec_ctx : _SECURITY_CLIENT_CONTEXT
- +0x000 SecurityQos : _SECURITY_QUALITY_OF_SERVICE
- +0x000 Length : 0
- +0x004 ImpersonationLevel : 0 ( SecurityAnonymous )
- +0x008 ContextTrackingMode : 0 ''
- +0x009 EffectiveOnly : 0 ''
- +0x010 ClientToken : (null)
- +0x018 DirectlyAccessClientToken : 0 ''
- +0x019 DirectAccessEffectiveOnly : 0 ''
- +0x01a ServerIsRemote : 0 ''
- +0x01c ClientTokenControl : _TOKEN_CONTROL
- +0x000 TokenId : _LUID
- +0x008 AuthenticationId : _LUID
- +0x010 ModifiedId : _LUID
- +0x018 TokenSource : _TOKEN_SOURCE
- +0x0d0 psec_ctx : 0xffffc684`30cbeee0 _SECURITY_CLIENT_CONTEXT
- +0x000 SecurityQos : _SECURITY_QUALITY_OF_SERVICE
- +0x000 Length : 0xc
- +0x004 ImpersonationLevel : 2 ( SecurityImpersonation )
- +0x008 ContextTrackingMode : 0 ''
- +0x009 EffectiveOnly : 0 ''
- +0x010 ClientToken : (null)
- +0x018 DirectlyAccessClientToken : 0 ''
- +0x019 DirectAccessEffectiveOnly : 0 ''
- +0x01a ServerIsRemote : 0 ''
- +0x01c ClientTokenControl : _TOKEN_CONTROL
- +0x000 TokenId : _LUID
- +0x008 AuthenticationId : _LUID
- +0x010 ModifiedId : _LUID
- +0x018 TokenSource : _TOKEN_SOURCE
- +0x0d8 psec_ctx_clienttoken : (null)
- +0x0e0 open_state : 0x0000027e`208162a0 Void
- +0x0e8 session : 0x0000027d`fe69da00 Void
- +0x0f0 filename : 0xfffff80d`45aefe50 _UNICODE_STRING ""
- +0x000 Length : 0
- +0x002 MaximumLength : 2
- +0x008 Buffer : 0xfffff80d`45aefdb4 ""
- +0x0f8 buf : (null)
- +0x100 buf_len : 0
- +0x108 ChangeTime : 0
- +0x110 u : <unnamed-tag>
- +0x000 Mount : <unnamed-tag>
- +0x000 srv_name : (null)
- +0x008 root : (null)
- +0x010 FsAttrs : (null)
- +0x018 sec_flavor : 0
- +0x01c rsize : 0
- +0x020 wsize : 0
- +0x024 lease_time : 0
- +0x028 use_nfspubfh : 0
- +0x000 ReadWrite : <unnamed-tag>
- +0x000 MdlAddress : (null)
- +0x008 offset : 0
- +0x010 rxcontext : (null)
- +0x000 Lock : <unnamed-tag>
- +0x000 offset : 0n0
- +0x008 length : 0n0
- +0x010 exclusive : 0 ''
- +0x011 blocking : 0 ''
- +0x000 Unlock : <unnamed-tag>
- +0x000 count : 0
- +0x008 locks : _LOWIO_LOCK_LIST
- +0x000 Open : <unnamed-tag>
- +0x000 binfo : _FILE_BASIC_INFORMATION
- +0x028 sinfo : _FILE_STANDARD_INFORMATION
- +0x040 symlink : _UNICODE_STRING ""
- +0x050 access_mask : 0
- +0x054 access_mode : 0
- +0x058 attrs : 0
- +0x05c copts : 0
- +0x060 disp : 0
- +0x064 cattrs : 0
- +0x068 open_owner_id : 0n0
- +0x06c mode : 0
- +0x070 owner_local_uid : 0
- +0x074 owner_group_local_gid : 0
- +0x078 srv_open : (null)
- +0x080 deleg_type : 0
- +0x084 symlink_embedded : 0 ''
- +0x088 EaMdl : (null)
- +0x090 EaBuffer : (null)
- +0x000 Close : <unnamed-tag>
- +0x000 srv_open : (null)
- +0x008 remove : 0 ''
- +0x009 renamed : 0 ''
- +0x000 QueryFile : <unnamed-tag>
- +0x000 filter : (null)
- +0x008 InfoClass : 0 (No matching name)
- +0x00c restart_scan : 0 ''
- +0x00d return_single : 0 ''
- +0x00e initial_query : 0 ''
- +0x010 mdl : (null)
- +0x018 mdl_buf : (null)
- +0x000 SetFile : <unnamed-tag>
- +0x000 InfoClass : 0 (No matching name)
- +0x000 SetEa : <unnamed-tag>
- +0x000 mode : 0
- +0x000 QueryEa : <unnamed-tag>
- +0x000 EaList : (null)
- +0x008 EaListLength : 0
- +0x00c Overflow : 0
- +0x010 EaIndex : 0
- +0x014 ReturnSingleEntry : 0 ''
- +0x015 RestartScan : 0 ''
- +0x000 Symlink : <unnamed-tag>
- +0x000 target : (null)
- +0x008 set : 0 ''
- +0x000 Volume : <unnamed-tag>
- +0x000 query : 0 (No matching name)
- +0x000 Acl : <unnamed-tag>
- +0x000 query : 0
Crash in |fcbopen_main()|/|VerifierObfReferenceObject()|
Posted by Anonymous on Thu 1st Aug 2024 12:39
raw | new post
Submit a correction or amendment below (click here to make a fresh posting)
After submitting an amendment, you'll be able to view the differences between the old and new posts easily.