Wireshark-bugs: [Wireshark-bugs] [Bug 9730] Buildbot crash output: fuzz-2014-02-06-17909.pcap
Date: Sat, 08 Feb 2014 13:43:28 +0000
Comment # 3
on bug 9730
from Evan Huus
==13246== Invalid read of size 8 ==13246== at 0x68DED44: rlc_frag_delete (packet-rlc.c:425) ==13246== by 0x93489B4: g_hash_table_remove_all_nodes (ghash.c:499) ==13246== by 0x9349700: g_hash_table_remove_all (ghash.c:1361) ==13246== by 0x934976D: g_hash_table_destroy (ghash.c:1057) ==13246== by 0x68DEEA6: fragment_table_init (packet-rlc.c:554) ==13246== by 0x93763D7: g_slist_foreach (gslist.c:880) ==13246== by 0x63B3EE7: cleanup_dissection (packet.c:182) ==13246== by 0x63AA218: epan_cleanup (epan.c:121) ==13246== by 0x40B281: main (tshark.c:2036) ==13246== Address 0x1280a4b8 is 40 bytes inside a block of size 56 free'd ==13246== at 0x4C2B68C: free (in /usr/lib/valgrind/vgpreload_memcheck-amd64-linux.so) ==13246== by 0x63A7E84: emem_free_all (emem.c:1180) ==13246== by 0x63B3ECD: cleanup_dissection (packet.c:175) ==13246== by 0x63AA218: epan_cleanup (epan.c:121) ==13246== by 0x40B281: main (tshark.c:2036) ==13246== ==13246== Invalid read of size 8 ==13246== at 0x68DED01: rlc_sdu_frags_delete (packet-rlc.c:437) ==13246== by 0x93489C2: g_hash_table_remove_all_nodes (ghash.c:502) ==13246== by 0x9349700: g_hash_table_remove_all (ghash.c:1361) ==13246== by 0x934976D: g_hash_table_destroy (ghash.c:1057) ==13246== by 0x68DEEA6: fragment_table_init (packet-rlc.c:554) ==13246== by 0x93763D7: g_slist_foreach (gslist.c:880) ==13246== by 0x63B3EE7: cleanup_dissection (packet.c:182) ==13246== by 0x63AA218: epan_cleanup (epan.c:121) ==13246== by 0x40B281: main (tshark.c:2036) ==13246== Address 0x12d42c30 is 32 bytes inside a block of size 48 free'd ==13246== at 0x4C2B68C: free (in /usr/lib/valgrind/vgpreload_memcheck-amd64-linux.so) ==13246== by 0x63A7E84: emem_free_all (emem.c:1180) ==13246== by 0x63B3ECD: cleanup_dissection (packet.c:175) ==13246== by 0x63AA218: epan_cleanup (epan.c:121) ==13246== by 0x40B281: main (tshark.c:2036) ==13246== ==13246== Invalid read of size 8 ==13246== at 0x68DED10: rlc_sdu_frags_delete (packet-rlc.c:439) ==13246== by 0x93489C2: g_hash_table_remove_all_nodes (ghash.c:502) ==13246== by 0x9349700: g_hash_table_remove_all (ghash.c:1361) ==13246== by 0x934976D: g_hash_table_destroy (ghash.c:1057) ==13246== by 0x68DEEA6: fragment_table_init (packet-rlc.c:554) ==13246== by 0x93763D7: g_slist_foreach (gslist.c:880) ==13246== by 0x63B3EE7: cleanup_dissection (packet.c:182) ==13246== by 0x63AA218: epan_cleanup (epan.c:121) ==13246== by 0x40B281: main (tshark.c:2036) ==13246== Address 0x1280a4b8 is 40 bytes inside a block of size 56 free'd ==13246== at 0x4C2B68C: free (in /usr/lib/valgrind/vgpreload_memcheck-amd64-linux.so) ==13246== by 0x63A7E84: emem_free_all (emem.c:1180) ==13246== by 0x63B3ECD: cleanup_dissection (packet.c:175) ==13246== by 0x63AA218: epan_cleanup (epan.c:121) ==13246== by 0x40B281: main (tshark.c:2036) ==13246== ==13246== Invalid write of size 8 ==13246== at 0x68DED1E: rlc_sdu_frags_delete (packet-rlc.c:442) ==13246== by 0x93489C2: g_hash_table_remove_all_nodes (ghash.c:502) ==13246== by 0x9349700: g_hash_table_remove_all (ghash.c:1361) ==13246== by 0x934976D: g_hash_table_destroy (ghash.c:1057) ==13246== by 0x68DEEA6: fragment_table_init (packet-rlc.c:554) ==13246== by 0x93763D7: g_slist_foreach (gslist.c:880) ==13246== by 0x63B3EE7: cleanup_dissection (packet.c:182) ==13246== by 0x63AA218: epan_cleanup (epan.c:121) ==13246== by 0x40B281: main (tshark.c:2036) ==13246== Address 0x1280a4b8 is 40 bytes inside a block of size 56 free'd ==13246== at 0x4C2B68C: free (in /usr/lib/valgrind/vgpreload_memcheck-amd64-linux.so) ==13246== by 0x63A7E84: emem_free_all (emem.c:1180) ==13246== by 0x63B3ECD: cleanup_dissection (packet.c:175) ==13246== by 0x63AA218: epan_cleanup (epan.c:121) ==13246== by 0x40B281: main (tshark.c:2036) ==13246== ==13246== Invalid read of size 8 ==13246== at 0x68DED26: rlc_sdu_frags_delete (packet-rlc.c:443) ==13246== by 0x93489C2: g_hash_table_remove_all_nodes (ghash.c:502) ==13246== by 0x9349700: g_hash_table_remove_all (ghash.c:1361) ==13246== by 0x934976D: g_hash_table_destroy (ghash.c:1057) ==13246== by 0x68DEEA6: fragment_table_init (packet-rlc.c:554) ==13246== by 0x93763D7: g_slist_foreach (gslist.c:880) ==13246== by 0x63B3EE7: cleanup_dissection (packet.c:182) ==13246== by 0x63AA218: epan_cleanup (epan.c:121) ==13246== by 0x40B281: main (tshark.c:2036) ==13246== Address 0x1280a4c0 is 48 bytes inside a block of size 56 free'd ==13246== at 0x4C2B68C: free (in /usr/lib/valgrind/vgpreload_memcheck-amd64-linux.so) ==13246== by 0x63A7E84: emem_free_all (emem.c:1180) ==13246== by 0x63B3ECD: cleanup_dissection (packet.c:175) ==13246== by 0x63AA218: epan_cleanup (epan.c:121) ==13246== by 0x40B281: main (tshark.c:2036) ==13246== ==13246== Invalid read of size 8 ==13246== at 0x68DECE4: free_sequence_table_entry_data (packet-rlc.c:528) ==13246== by 0x93489C2: g_hash_table_remove_all_nodes (ghash.c:502) ==13246== by 0x9349700: g_hash_table_remove_all (ghash.c:1361) ==13246== by 0x934976D: g_hash_table_destroy (ghash.c:1057) ==13246== by 0x68DEEB7: fragment_table_init (packet-rlc.c:557) ==13246== by 0x93763D7: g_slist_foreach (gslist.c:880) ==13246== by 0x63B3EE7: cleanup_dissection (packet.c:182) ==13246== by 0x63AA218: epan_cleanup (epan.c:121) ==13246== by 0x40B281: main (tshark.c:2036) ==13246== Address 0xd97c128 is 24 bytes inside a block of size 40 free'd ==13246== at 0x4C2B68C: free (in /usr/lib/valgrind/vgpreload_memcheck-amd64-linux.so) ==13246== by 0x63A7E84: emem_free_all (emem.c:1180) ==13246== by 0x63B3ECD: cleanup_dissection (packet.c:175) ==13246== by 0x63AA218: epan_cleanup (epan.c:121) ==13246== by 0x40B281: main (tshark.c:2036) ==13246== ==13246== Invalid write of size 8 ==13246== at 0x68DECF2: free_sequence_table_entry_data (packet-rlc.c:530) ==13246== by 0x93489C2: g_hash_table_remove_all_nodes (ghash.c:502) ==13246== by 0x9349700: g_hash_table_remove_all (ghash.c:1361) ==13246== by 0x934976D: g_hash_table_destroy (ghash.c:1057) ==13246== by 0x68DEEB7: fragment_table_init (packet-rlc.c:557) ==13246== by 0x93763D7: g_slist_foreach (gslist.c:880) ==13246== by 0x63B3EE7: cleanup_dissection (packet.c:182) ==13246== by 0x63AA218: epan_cleanup (epan.c:121) ==13246== by 0x40B281: main (tshark.c:2036) ==13246== Address 0xd97c128 is 24 bytes inside a block of size 40 free'd ==13246== at 0x4C2B68C: free (in /usr/lib/valgrind/vgpreload_memcheck-amd64-linux.so) ==13246== by 0x63A7E84: emem_free_all (emem.c:1180) ==13246== by 0x63B3ECD: cleanup_dissection (packet.c:175) ==13246== by 0x63AA218: epan_cleanup (epan.c:121) ==13246== by 0x40B281: main (tshark.c:2036)
You are receiving this mail because:
- You are watching all bug changes.
- References:
- [Wireshark-bugs] [Bug 9730] New: Buildbot crash output: fuzz-2014-02-06-17909.pcap
- From: bugzilla-daemon
- [Wireshark-bugs] [Bug 9730] New: Buildbot crash output: fuzz-2014-02-06-17909.pcap
- Prev by Date: [Wireshark-bugs] [Bug 9730] Buildbot crash output: fuzz-2014-02-06-17909.pcap
- Next by Date: [Wireshark-bugs] [Bug 9436] Mobile IPv6 decoding fails on TLV MHLLA
- Previous by thread: [Wireshark-bugs] [Bug 9730] Buildbot crash output: fuzz-2014-02-06-17909.pcap
- Next by thread: [Wireshark-bugs] [Bug 9730] Buildbot crash output: fuzz-2014-02-06-17909.pcap
- Index(es):