Wireshark-bugs: [Wireshark-bugs] [Bug 13255] New: Buildbot crash output: fuzz-2016-12-17-22458.p
Date: Sat, 17 Dec 2016 23:50:03 +0000
Bug ID | 13255 |
---|---|
Summary | Buildbot crash output: fuzz-2016-12-17-22458.pcap |
Product | Wireshark |
Version | unspecified |
Hardware | x86-64 |
URL | https://www.wireshark.org/download/automated/captures/fuzz-2016-12-17-22458.pcap |
OS | Ubuntu |
Status | CONFIRMED |
Severity | Major |
Priority | High |
Component | Dissection engine (libwireshark) |
Assignee | [email protected] |
Reporter | [email protected] |
Problems have been found with the following capture file: https://www.wireshark.org/download/automated/captures/fuzz-2016-12-17-22458.pcap stderr: Input file: /home/wireshark/menagerie/menagerie/14807-160719-04_BLE_sensor_and_CGW_prefix_added_exp_pdu.pcapng Build host information: Linux wsbb04 4.4.0-53-generic #74-Ubuntu SMP Fri Dec 2 15:59:10 UTC 2016 x86_64 x86_64 x86_64 GNU/Linux Distributor ID: Ubuntu Description: Ubuntu 16.04.1 LTS Release: 16.04 Codename: xenial Buildbot information: BUILDBOT_REPOSITORY=ssh://[email protected]:29418/wireshark BUILDBOT_WORKERNAME=clang-code-analysis BUILDBOT_BUILDNUMBER=3826 BUILDBOT_URL=http://buildbot.wireshark.org/wireshark-master/ BUILDBOT_BUILDERNAME=Clang Code Analysis BUILDBOT_GOT_REVISION=01c328f0f66078f246a69cad34406d07a29b5602 Return value: 0 Dissector bug: 0 Valgrind error count: 63 Git commit commit 01c328f0f66078f246a69cad34406d07a29b5602 Author: Alexis La Goutte <[email protected]> Date: Wed Dec 30 21:31:10 2015 +0100 bootp: Update DHCP Message Type 53 Values Add RFC6926 and RFC7724 Change-Id: I2e10c337f3fe3043e5c36f501eb3e29b16bfcecc Reviewed-on: https://code.wireshark.org/review/19312 Petri-Dish: Alexis La Goutte <[email protected]> Tested-by: Petri Dish Buildbot <[email protected]> Reviewed-by: Michael Mann <[email protected]> ==12652== Memcheck, a memory error detector ==12652== Copyright (C) 2002-2015, and GNU GPL'd, by Julian Seward et al. ==12652== Using Valgrind-3.11.0 and LibVEX; rerun with -h for copyright info ==12652== Command: /home/wireshark/builders/wireshark-master-fuzz/clangcodeanalysis/install.plain/bin/tshark -nr /fuzz/buildbot/clangcodeanalysis/valgrind-fuzz/fuzz-2016-12-17-22458.pcap ==12652== ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 17: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 46: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ==12652== Conditional jump or move depends on uninitialised value(s) ==12652== at 0x4C33D52: __memcmp_sse4_1 (in /usr/lib/valgrind/vgpreload_memcheck-amd64-linux.so) ==12652== by 0x69E1D13: addresses_equal (address.h:230) ==12652== by 0x69E1D13: fragment_addresses_equal (reassemble.c:82) ==12652== by 0xA6FEDCE: g_hash_table_lookup_extended (in /lib/x86_64-linux-gnu/libglib-2.0.so.0.4800.1) ==12652== by 0x69E3216: lookup_fd_head (reassemble.c:541) ==12652== by 0x69E3216: fragment_add_seq_common (reassemble.c:1886) ==12652== by 0x69E3817: fragment_add_seq_check_work (reassemble.c:2037) ==12652== by 0x69E38D9: fragment_add_seq_next (reassemble.c:2100) ==12652== by 0x6B4A769: dissect_btle (packet-btle.c:883) ==12652== by 0x69B8695: call_dissector_through_handle (packet.c:650) ==12652== by 0x69B8695: call_dissector_work (packet.c:725) ==12652== by 0x69B774C: call_dissector_only (packet.c:2954) ==12652== by 0x69B774C: call_dissector_with_data (packet.c:2967) ==12652== by 0x6F7EFFB: dissect_nordic_ble (packet-nordic_ble.c:313) ==12652== by 0x69B8695: call_dissector_through_handle (packet.c:650) ==12652== by 0x69B8695: call_dissector_work (packet.c:725) ==12652== by 0x69B774C: call_dissector_only (packet.c:2954) ==12652== by 0x69B774C: call_dissector_with_data (packet.c:2967) ==12652== ==12652== Conditional jump or move depends on uninitialised value(s) ==12652== at 0x4C33D52: __memcmp_sse4_1 (in /usr/lib/valgrind/vgpreload_memcheck-amd64-linux.so) ==12652== by 0x69E1D4D: addresses_equal (address.h:230) ==12652== by 0x69E1D4D: fragment_addresses_equal (reassemble.c:83) ==12652== by 0xA6FEDCE: g_hash_table_lookup_extended (in /lib/x86_64-linux-gnu/libglib-2.0.so.0.4800.1) ==12652== by 0x69E3216: lookup_fd_head (reassemble.c:541) ==12652== by 0x69E3216: fragment_add_seq_common (reassemble.c:1886) ==12652== by 0x69E3817: fragment_add_seq_check_work (reassemble.c:2037) ==12652== by 0x69E38D9: fragment_add_seq_next (reassemble.c:2100) ==12652== by 0x6B4A769: dissect_btle (packet-btle.c:883) ==12652== by 0x69B8695: call_dissector_through_handle (packet.c:650) ==12652== by 0x69B8695: call_dissector_work (packet.c:725) ==12652== by 0x69B774C: call_dissector_only (packet.c:2954) ==12652== by 0x69B774C: call_dissector_with_data (packet.c:2967) ==12652== by 0x6F7EFFB: dissect_nordic_ble (packet-nordic_ble.c:313) ==12652== by 0x69B8695: call_dissector_through_handle (packet.c:650) ==12652== by 0x69B8695: call_dissector_work (packet.c:725) ==12652== by 0x69B774C: call_dissector_only (packet.c:2954) ==12652== by 0x69B774C: call_dissector_with_data (packet.c:2967) ==12652== ==12652== Conditional jump or move depends on uninitialised value(s) ==12652== at 0x4C33D52: __memcmp_sse4_1 (in /usr/lib/valgrind/vgpreload_memcheck-amd64-linux.so) ==12652== by 0x69E1D13: addresses_equal (address.h:230) ==12652== by 0x69E1D13: fragment_addresses_equal (reassemble.c:82) ==12652== by 0xA6FE5F9: ??? (in /lib/x86_64-linux-gnu/libglib-2.0.so.0.4800.1) ==12652== by 0x69E3834: fragment_unhash (reassemble.c:789) ==12652== by 0x69E3834: fragment_add_seq_check_work (reassemble.c:2052) ==12652== by 0x69E38D9: fragment_add_seq_next (reassemble.c:2100) ==12652== by 0x6B4A769: dissect_btle (packet-btle.c:883) ==12652== by 0x69B8695: call_dissector_through_handle (packet.c:650) ==12652== by 0x69B8695: call_dissector_work (packet.c:725) ==12652== by 0x69B774C: call_dissector_only (packet.c:2954) ==12652== by 0x69B774C: call_dissector_with_data (packet.c:2967) ==12652== by 0x6F7EFFB: dissect_nordic_ble (packet-nordic_ble.c:313) ==12652== by 0x69B8695: call_dissector_through_handle (packet.c:650) ==12652== by 0x69B8695: call_dissector_work (packet.c:725) ==12652== by 0x69B774C: call_dissector_only (packet.c:2954) ==12652== by 0x69B774C: call_dissector_with_data (packet.c:2967) ==12652== by 0x6CAA1E2: dissect_exported_pdu (packet-exported_pdu.c:285) ==12652== ==12652== Conditional jump or move depends on uninitialised value(s) ==12652== at 0x4C33D52: __memcmp_sse4_1 (in /usr/lib/valgrind/vgpreload_memcheck-amd64-linux.so) ==12652== by 0x69E1D4D: addresses_equal (address.h:230) ==12652== by 0x69E1D4D: fragment_addresses_equal (reassemble.c:83) ==12652== by 0xA6FE5F9: ??? (in /lib/x86_64-linux-gnu/libglib-2.0.so.0.4800.1) ==12652== by 0x69E3834: fragment_unhash (reassemble.c:789) ==12652== by 0x69E3834: fragment_add_seq_check_work (reassemble.c:2052) ==12652== by 0x69E38D9: fragment_add_seq_next (reassemble.c:2100) ==12652== by 0x6B4A769: dissect_btle (packet-btle.c:883) ==12652== by 0x69B8695: call_dissector_through_handle (packet.c:650) ==12652== by 0x69B8695: call_dissector_work (packet.c:725) ==12652== by 0x69B774C: call_dissector_only (packet.c:2954) ==12652== by 0x69B774C: call_dissector_with_data (packet.c:2967) ==12652== by 0x6F7EFFB: dissect_nordic_ble (packet-nordic_ble.c:313) ==12652== by 0x69B8695: call_dissector_through_handle (packet.c:650) ==12652== by 0x69B8695: call_dissector_work (packet.c:725) ==12652== by 0x69B774C: call_dissector_only (packet.c:2954) ==12652== by 0x69B774C: call_dissector_with_data (packet.c:2967) ==12652== by 0x6CAA1E2: dissect_exported_pdu (packet-exported_pdu.c:285) ==12652== ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 118: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 133: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 182: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 208: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 219: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 249: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 276: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 288: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 312: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 319: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 330: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 338: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 366: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 376: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 387: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 395: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 417: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 421: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 425: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 434: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 438: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 439: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 441: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 444: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 449: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 453: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 472: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 473: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 513: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 514: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 526: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 528: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 549: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 558: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 622: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 658: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 661: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 675: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 684: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 690: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 720: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 728: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 734: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 757: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 765: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 766: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 820: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 823: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 882: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 900: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ** (process:12652): WARNING **: Dissector bug, protocol BT LE LL, in packet 906: packet-btle.c:840: failed assertion "btle_frame_info != ((void*)0)" ==12652== ==12652== HEAP SUMMARY: ==12652== in use at exit: 6,088,366 bytes in 9,754 blocks ==12652== total heap usage: 285,645 allocs, 275,891 frees, 37,941,291 bytes allocated ==12652== ==12652== LEAK SUMMARY: ==12652== definitely lost: 1,380 bytes in 87 blocks ==12652== indirectly lost: 0 bytes in 0 blocks ==12652== possibly lost: 0 bytes in 0 blocks ==12652== still reachable: 6,086,986 bytes in 9,667 blocks ==12652== suppressed: 0 bytes in 0 blocks ==12652== Rerun with --leak-check=full to see details of leaked memory ==12652== ==12652== For counts of detected and suppressed errors, rerun with: -v ==12652== Use --track-origins=yes to see where uninitialised values come from ==12652== ERROR SUMMARY: 63 errors from 4 contexts (suppressed: 0 from 0) [ no debug trace ]
You are receiving this mail because:
- You are watching all bug changes.
- Follow-Ups:
- [Wireshark-bugs] [Bug 13255] Buildbot crash output: fuzz-2016-12-17-22458.pcap
- From: bugzilla-daemon
- [Wireshark-bugs] [Bug 13255] Buildbot crash output: fuzz-2016-12-17-22458.pcap
- Prev by Date: [Wireshark-bugs] [Bug 5061] Infiniband EoIB dissection (patch)
- Next by Date: [Wireshark-bugs] [Bug 13250] Buildbot crash output: fuzz-2016-12-14-32314.pcap
- Previous by thread: [Wireshark-bugs] [Bug 5061] Infiniband EoIB dissection (patch)
- Next by thread: [Wireshark-bugs] [Bug 13255] Buildbot crash output: fuzz-2016-12-17-22458.pcap
- Index(es):