This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos UI Causing Kernel Panic - Related to Meltdown or Spectre issues?

My mac in the last two days has been shutting down randomly. Looks like according to the console it's the Sophos UI in Sophos Home causing this. Does anyone from Sophos monitor the free tools forums to confirm if Sophos has yet to push a patch to fix this issue, if it's related to the latest issues?

 

Process: SophosUIServer [822]
Path: /Library/Sophos Anti-Virus/SophosUIServer.app/Contents/MacOS/SophosUIServer
Identifier: SophosUIServer
Version: 9.6.5 (???)
Code Type: X86-64 (Native)
Parent Process: ??? [1]
Responsible: SophosUIServer [822]
User ID: 501

Date/Time: 2018-01-05 06:36:09.341 -0700
OS Version: Mac OS X 10.13.2 (17C88)
Report Version: 12
Anonymous UUID: 4215534C-CDFB-A6B8-061F-25128966BDD0



This thread was automatically locked due to age.
Parents Reply Children
  • Unless there is a compatabliity issue with application software (per the KB) the Meltdown patch should not be causing a panic. I also have been encountering kernel panics on my Mac - that seem to indicate a possible problem with the Sophos software.

     

    System Integrity Protection: enabled

    Crashed Thread:        2  Dispatch queue: com.sophos.xpc.broker.clienthelper.taskqueue

    Exception Type:        EXC_BAD_ACCESS (SIGSEGV)
    Exception Codes:       KERN_INVALID_ADDRESS at 0x0000000004018101
    Exception Note:        EXC_CORPSE_NOTIFY

    Termination Signal:    Segmentation fault: 11
    Termination Reason:    Namespace SIGNAL, Code 0xb
    Terminating Process:   exc handler [0]

    VM Regions Near 0x4018101:
    -->
        __TEXT                 000000010ec79000-000000010ece5000 [  432K] r-x/rwx SM=COW  /Library/Sophos Anti-Virus/SophosUIServer.app/Contents/MacOS/SophosUIServer

    As I mentioned, this may be a consequence of another kernel thread/process aborting. Is there a way to send Sophos engineering a kernel panic report (coredump)?

    --Eric