*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************
PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffff902ad661cb0, memory referenced.
Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
Arg3: fffff9600006da46, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000005, (reserved)
Debugging Details:
------------------
Could not read faulting driver name
READ_ADDRESS: fffff902ad661cb0
FAULTING_IP:
win32k!RFONTOBJ::bGetGlyphMetrics+e6
fffff960`0006da46 498b540d00 mov rdx,qword ptr [r13+rcx]
MM_INTERNAL_CODE: 5
CUSTOMER_CRASH_COUNT: 1
DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT
BUGCHECK_STR: 0x50
PROCESS_NAME: explorer.exe
CURRENT_IRQL: 0
TRAP_FRAME: fffff8800cfff430 -- (.trap 0xfffff8800cfff430)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=fffff900c2a83020 rbx=0000000000000000 rcx=fffff900c2a87d70
rdx=0000000000000010 rsi=0000000000000000 rdi=0000000000000000
rip=fffff9600006da46 rsp=fffff8800cfff5c0 rbp=0000000000000020
r8=fffff900c2a83010 r9=fffff900c2b62010 r10=0000000000000340
r11=0000000000000000 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0 nv up ei pl nz na po cy
win32k!RFONTOBJ::bGetGlyphMetrics+0xe6:
fffff960`0006da46 498b540d00 mov rdx,qword ptr [r13+rcx] ds:0001:fffff900`c2a87d70=????????????????
Resetting default scope
LAST_CONTROL_TRANSFER: from fffff800030713bf to fffff800030c6c40
STACK_TEXT:
fffff880`0cfff2c8 fffff800`030713bf : 00000000`00000050 fffff902`ad661cb0 00000000`00000000 fffff880`0cfff430 : nt!KeBugCheckEx
fffff880`0cfff2d0 fffff800`030c4d6e : 00000000`00000000 fffff902`ad661cb0 00000000`00000000 fffff880`0cfff6c0 : nt! ?? ::FNODOBFM::`string'+0x44791
fffff880`0cfff430 fffff960`0006da46 : fffff880`0cfff6c0 00000000`00000002 00000000`00000340 fffff800`030d082b : nt!KiPageFault+0x16e
fffff880`0cfff5c0 fffff960`0009a4c2 : 00000000`10018000 00000000`00000360 00000000`00000040 00000000`00000020 : win32k!RFONTOBJ::bGetGlyphMetrics+0xe6
fffff880`0cfff640 fffff960`0009a21c : 00000000`1e011a01 fffff900`c0227558 fffff900`c286a630 fffff960`00114bf2 : win32k!GreGetCharABCWidthsW+0x22a
fffff880`0cfffa60 fffff800`030c5ed3 : 00000000`1e011a39 00000000`00000340 fffff900`00000040 00000000`00000000 : win32k!NtGdiGetCharABCWidthsW+0x1b0
fffff880`0cfffaf0 000007fe`fe10595a : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : nt!KiSystemServiceCopyEnd+0x13
00000000`0918d268 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x7fe`fe10595a
STACK_COMMAND: kb
FOLLOWUP_IP:
win32k!RFONTOBJ::bGetGlyphMetrics+e6
fffff960`0006da46 498b540d00 mov rdx,qword ptr [r13+rcx]
SYMBOL_STACK_INDEX: 3
SYMBOL_NAME: win32k!RFONTOBJ::bGetGlyphMetrics+e6
FOLLOWUP_NAME: MachineOwner
MODULE_NAME: win32k
IMAGE_NAME: win32k.sys
DEBUG_FLR_IMAGE_TIMESTAMP: 4e658d5a
FAILURE_BUCKET_ID: X64_0x50_win32k!RFONTOBJ::bGetGlyphMetrics+e6
BUCKET_ID: X64_0x50_win32k!RFONTOBJ::bGetGlyphMetrics+e6
Followup: MachineOwner
---------