Bug #68294 [Opn]: file_exists SIGSEGV for FPM

From: Date: Tue, 28 Oct 2014 03:35:27 +0000
Subject: Bug #68294 [Opn]: file_exists SIGSEGV for FPM
References: 1  Groups: php.bugs 
Request: Send a blank email to php-bugs+get-188332@lists.php.net to get a copy of this message
Edit report at https://bugs.php.net/bug.php?id=68294&edit=1 ID: 68294 Updated by: laruence@php.net Reported by: sillyxone at gmail dot com Summary: file_exists SIGSEGV for FPM Status: Open Type: Bug Package: Reproducible crash Operating System: Linux PHP Version: 5.5.18 Block user comment: N Private report: N New Comment: hmmm; ZEND_API void execute_ex(zend_execute_data *execute_data TSRMLS_DC) { DCL_OPLINE zend_bool original_in_execution; 344: original_in_execution = EG(in_execution); ---------------------------------------- the 344th line of zend_vm_execute.h is listed above, I can not image of how it segs Previous Comments: ------------------------------------------------------------------------ [2014-10-24 13:49:09] sillyxone at gmail dot com I spoke too early. After experimenting some more: - the same call to file_exists() crashes even when run PHP as Apache Handler (version 5.5.18, 5.4.33) - doesn't crash for PHP version 5.3.29 (either as Apache Handler or FPM). I'm sticking to PHP 5.3.29 FPM + Nginx for now. I can only perform core dump on my Ubuntu development machine, thus can only debug 5.5.18. The test server running AMI is now stable with PHP 5.3.29 so I won't play with it. ------------------------------------------------------------------------ [2014-10-23 21:10:46] sillyxone at gmail dot com Description: ------------ Drupal 7 with AmazonS3 module installed, and configured to connect correctly to S3. FPM version 5.5.18 and 5.4.33 crashed with SIGSEGV (happened on Ubuntu and AMI) when accessing Drupal's /admin/config/media/image-styles/edit/thumbnail. Apache with mod_php works fine. Traced it down to a line calling "file_exists('s3:// ...')". It doesn't crash if S3 module is not configured (e.g. no secret or no key). Otherwise Drupal works normally (I haven't ran into other problem yet). Still crash with Zend Opcache and APC removed. I'm not familiar with the troubleshooting process, but willing to help debug. Let me know what information I can provide. Test script: --------------- AmazonS3 module: https://www.drupal.org/project/amazons3 In Drupal, it's the first called to file_exists() in function theme_image_style_preview() of file modules/image/image.admin.inc The first few lines of core dump: #0 0xb5ee1043 in execute_ex (execute_data=execute_data@entry=0xb9adf0e0) at /build/buildd/php5-5.5.18+dfsg/Zend/zend_vm_execute.h:344 #1 0xb5ea3b3d in dtrace_execute_ex (execute_data=0xb9adf0e0) at /build/buildd/php5-5.5.18+dfsg/Zend/zend_dtrace.c:73 #2 0xb5f6b8e5 in zend_execute (op_array=0xb992f96c) at /build/buildd/php5-5.5.18+dfsg/Zend/zend_vm_execute.h:388 #3 0xb5ea61a4 in zend_call_function (fci=fci@entry=0xbf7a11ec, fci_cache=fci_cache@entry=0xbf7a11d8) at /build/buildd/php5-5.5.18+dfsg/Zend/zend_execute_API.c:937 #4 0xb5ecd341 in zend_call_method (object_pp=object_pp@entry=0xbf7a1290, obj_ce=<optimized out>, obj_ce@entry=0xb9925fd4, fn_proxy=fn_proxy@entry=0xb992609c, function_name=function_name@entry=0xb62c5020 "__tostring", function_name_len=function_name_len@entry=10, retval_ptr_ptr=retval_ptr_ptr@entry=0xbf7a126c, param_count=param_count@entry=0, arg1=arg1@entry=0x0, arg2=arg2@entry=0x0) at /build/buildd/php5-5.5.18+dfsg/Zend/zend_interfaces.c:97 #5 0xb5eda047 in zend_std_cast_object_tostring (readobj=readobj@entry=0xb9907808, writeobj=writeobj@entry=0xbf7a1300, type=type@entry=6) at /build/buildd/php5-5.5.18+dfsg/Zend/zend_object_handlers.c:1533 #6 0xb5eb5574 in zend_make_printable_zval (expr=expr@entry=0xb9907808, expr_copy=expr_copy@entry=0xbf7a1300, use_copy=use_copy@entry=0xbf7a12fc) at /build/buildd/php5-5.5.18+dfsg/Zend/zend.c:258 #7 0xb5f1ca5c in ZEND_CAST_SPEC_CV_HANDLER (execute_data=0xb9adf06c) at /build/buildd/php5-5.5.18+dfsg/Zend/zend_vm_execute.h:30840 ------------------------------------------------------------------------ -- Edit this bug report at https://bugs.php.net/bug.php?id=68294&edit=1

« previous php.bugs (#188332) next »