Qualcomm QCNFA765 Bluetooth issue

I have Qualcomm QCNFA765 in my HP Elitebook 865 G9. I have problems with Bluetooth.

Steps to reproduce:

  1. Wifi is turned off;
   journalctl -b | grep Wi-Fi
   ...
   manager: rfkill: Wi-Fi now disabled by radio killswitch
   ...
  1. Reboot;
  2. Reboot again without turning on Wifi;
  3. At the next boot PC will hang or will have such message in log:
Aug 06 20:01:57 f-pc kernel: kernel BUG at mm/slub.c:435!
Aug 06 20:01:57 f-pc kernel: invalid opcode: 0000 [#1] PREEMPT SMP NOPTI
Aug 06 20:01:57 f-pc kernel: CPU: 1 PID: 1303 Comm: kworker/u33:2 Not tainted 6.4.7-200.fc38.x86_64 #1
Aug 06 20:01:57 f-pc kernel: Hardware name: HP HP EliteBook 865 16 inch G9 Notebook PC/8990, BIOS U82 Ver. 01.06.00 07/03/2023
Aug 06 20:01:57 f-pc kernel: Workqueue: hci0 hci_devcd_rx [bluetooth]
Aug 06 20:01:57 f-pc kernel: RIP: 0010:__slab_free+0x13a/0x310
Aug 06 20:01:57 f-pc kernel: Code: 69 49 8b 04 24 48 89 4c 24 20 48 c1 e8 36 4c 8b ac c3 d8 00 00 00 4c 89 ef e8 22 b9 bb 00 48 8b 4c 24 20 48 89 44 24 18 eb 8e <0f> 0b f7 43 08 00 0d 21 00 75 cc eb c5 f7 43 08 00 0d 21 00 0f 84
Aug 06 20:01:57 f-pc kernel: RSP: 0018:ffffa63940fa7cf0 EFLAGS: 00010246
Aug 06 20:01:57 f-pc kernel: RAX: ffff986a8a377c00 RBX: ffff986a80042c00 RCX: 000000008010000b
Aug 06 20:01:57 f-pc kernel: RDX: ffffa63940fa7d18 RSI: fffffff8ced77800 RDI: ffffa63940fa7d58
Aug 06 20:01:57 f-pc kernel: RBP: ffff986a8a377800 R08: 0000000000000001 R09: ffffffff8ad131a2
Aug 06 20:01:57 f-pc kernel: R10: 0000000000000000 R11: 0000000000071000 R12: fffff6b3c428dc00
Aug 06 20:01:57 f-pc kernel: R13: ffff986a84554c00 R14: ffff986a8a377800 R15: ffff986a8a377800
Aug 06 20:01:57 f-pc kernel: FS:  0000000000000000(0000) GS:ffff9871be840000(0000) knlGS:0000000000000000
Aug 06 20:01:57 f-pc kernel: CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
Aug 06 20:01:57 f-pc kernel: CR2: 00007fa404005048 CR3: 00000001d3022000 CR4: 0000000000750ee0
Aug 06 20:01:57 f-pc kernel: PKRU: 55555554
Aug 06 20:01:57 f-pc kernel: Call Trace:
Aug 06 20:01:57 f-pc kernel:  <TASK>
Aug 06 20:01:57 f-pc kernel:  ? die+0x36/0x90
Aug 06 20:01:57 f-pc kernel:  ? do_trap+0xda/0x100
Aug 06 20:01:57 f-pc kernel:  ? __slab_free+0x13a/0x310
Aug 06 20:01:57 f-pc kernel:  ? do_error_trap+0x6a/0x90
Aug 06 20:01:57 f-pc kernel:  ? __slab_free+0x13a/0x310
Aug 06 20:01:57 f-pc kernel:  ? exc_invalid_op+0x50/0x70
Aug 06 20:01:57 f-pc kernel:  ? __slab_free+0x13a/0x310
Aug 06 20:01:57 f-pc kernel:  ? asm_exc_invalid_op+0x1a/0x20
Aug 06 20:01:57 f-pc kernel:  ? skb_release_data+0x142/0x1c0
Aug 06 20:01:57 f-pc kernel:  ? __slab_free+0x13a/0x310
Aug 06 20:01:57 f-pc kernel:  skb_release_data+0x142/0x1c0
Aug 06 20:01:57 f-pc kernel:  kfree_skb_reason+0x52/0x120
Aug 06 20:01:57 f-pc kernel:  hci_devcd_rx+0xad/0x7d0 [bluetooth]
Aug 06 20:01:57 f-pc kernel:  process_one_work+0x1c7/0x3d0
Aug 06 20:01:57 f-pc kernel:  worker_thread+0x51/0x390
Aug 06 20:01:57 f-pc kernel:  ? __pfx_worker_thread+0x10/0x10
Aug 06 20:01:57 f-pc kernel:  kthread+0xe8/0x120
Aug 06 20:01:57 f-pc kernel:  ? __pfx_kthread+0x10/0x10
Aug 06 20:01:57 f-pc kernel:  ret_from_fork+0x2c/0x50
Aug 06 20:01:57 f-pc kernel:  </TASK>
Aug 06 20:01:57 f-pc kernel: Modules linked in: bnep binfmt_misc vfat fat qrtr ath11k_pci(+) ath11k snd_soc_dmic snd_acp6x_pdm_dma snd_soc_acp6x_mach snd_sof_amd_rembrandt snd_hda_codec_realtek(+) snd_sof_amd_renoir snd_sof_amd_acp snd_hda_codec_generic snd_sof_pci qmi_helpers s>
Aug 06 20:01:57 f-pc kernel:  snd_hda_cs_dsp_ctls cs_dsp snd_soc_acpi hid_sensor_als k10temp i2c_piix4 hid_sensor_trigger snd_timer snd_soc_cs35l41_lib rfkill mhi hid_sensor_iio_common snd_pci_acp3x snd industrialio_triggered_buffer soundcore kfifo_buf amd_pmf industrialio platf>
Aug 06 20:01:57 f-pc kernel: ---[ end trace 0000000000000000 ]---
Aug 06 20:01:57 f-pc kernel: RIP: 0010:__slab_free+0x13a/0x310
Aug 06 20:01:57 f-pc kernel: Code: 69 49 8b 04 24 48 89 4c 24 20 48 c1 e8 36 4c 8b ac c3 d8 00 00 00 4c 89 ef e8 22 b9 bb 00 48 8b 4c 24 20 48 89 44 24 18 eb 8e <0f> 0b f7 43 08 00 0d 21 00 75 cc eb c5 f7 43 08 00 0d 21 00 0f 84
Aug 06 20:01:57 f-pc kernel: RSP: 0018:ffffa63940fa7cf0 EFLAGS: 00010246
Aug 06 20:01:57 f-pc kernel: RAX: ffff986a8a377c00 RBX: ffff986a80042c00 RCX: 000000008010000b
Aug 06 20:01:57 f-pc kernel: RDX: ffffa63940fa7d18 RSI: fffffff8ced77800 RDI: ffffa63940fa7d58
Aug 06 20:01:57 f-pc kernel: RBP: ffff986a8a377800 R08: 0000000000000001 R09: ffffffff8ad131a2
Aug 06 20:01:57 f-pc kernel: R10: 0000000000000000 R11: 0000000000071000 R12: fffff6b3c428dc00
Aug 06 20:01:57 f-pc kernel: R13: ffff986a84554c00 R14: ffff986a8a377800 R15: ffff986a8a377800
Aug 06 20:01:57 f-pc kernel: FS:  0000000000000000(0000) GS:ffff9871be840000(0000) knlGS:0000000000000000
Aug 06 20:01:57 f-pc kernel: CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033
Aug 06 20:01:57 f-pc kernel: CR2: 00007fa404005048 CR3: 00000001d3022000 CR4: 0000000000750ee0
Aug 06 20:01:57 f-pc kernel: PKRU: 55555554
...
Aug 06 20:01:58 f-pc kernel: ath11k_pci 0000:01:00.0: chip_id 0x12 chip_family 0xb board_id 0xff soc_id 0x400c1211
Aug 06 20:01:58 f-pc kernel: ath11k_pci 0000:01:00.0: fw_version 0x110b196e fw_build_timestamp 2022-12-22 12:54 fw_build_id WLAN.HSP.1.1-03125-QCAHSPSWPL_V1_V2_SILICONZ_LITE-3.6510.23
...
Aug 06 20:01:59 f-pc abrt-notification[1632]: [🡕] System encountered a non-fatal error in die()
...
Aug 06 20:01:59 f-pc kernel: Bluetooth: hci0: Opcode 0x c03 failed: -19
...
Aug 06 20:02:01 f-pc kernel: Bluetooth: hci0: Failed to read MSFT supported features (-110)

  1. After this it is not possible to turn on Bluetooth, Wifi works.
  2. PC is unable to power off or reboot on its own.
  3. When PC is turned off and then powers on, all works as intended. If Wifi is turned on at least one time before reboot, all is good.

Can someone with Qualcomm QCNFA765 try this scenario?
@dev-null , I have seen you have Qualcomm. Maybe you can test it out?

Maybe I have to file a bug somewhere? If so, what is the best place?