Bug #68921 [Fbk->Opn]: segfault

From: Date: Tue, 03 Mar 2015 21:06:22 +0000
Subject: Bug #68921 [Fbk->Opn]: segfault
References: 1  Groups: php.bugs 
Request: Send a blank email to php-bugs+get-191109@lists.php.net to get a copy of this message
Edit report at https://bugs.php.net/bug.php?id=68921&edit=1

 ID:                 68921
 User updated by:    public at grik dot net
 Reported by:        public at grik dot net
 Summary:            segfault
-Status:             Feedback
+Status:             Open
 Type:               Bug
 Package:            Reproducible crash
 Operating System:   Cent OS 6
 PHP Version:        5.6.6
 Block user comment: N
 Private report:     N

 New Comment:

The problem is related to always_populate_raw_post_data option

When I edited php.ini and set always_populate_raw_post_data = -1 the segfault  does not repeat.
Setting "always_populate_raw_post_data = off" as php.ini offers does not help, though.

Here is an php-fpm -i output when segfault occurs:
http://pastebin.com/z4uvtErx


here's the valgrind log 
http://pastebin.com/RdNJZRX5

While I was making the valgrind log I saw errors:

[root@hotelfm hotelfm.ru]# valgrind --tool=memcheck --num-callers=30 --log-file=php.log
/usr/local/sbin/php-fpm -F -e
[03-Mar-2015 20:48:29] WARNING: [pool www] child 21793 said into stderr: "NOTICE: PHP message:
PHP Deprecated:  Automatically populating $HTTP_RAW_POST_DATA is deprecated and will be removed in a
future version. To avoid this warning set 'always_populate_raw_post_data' to
'-1' in php.ini and use the php://input stream instead. in Unknown on line 0"
[03-Mar-2015 20:48:29] WARNING: [pool www] child 21793 said into stderr: "Unknown(0) :
Deprecated - Automatically populating $HTTP_RAW_POST_DATA is deprecated and will be removed in a
future version. To avoid this warning set 'always_populate_raw_post_data' to
'-1' in php.ini and use the php://input stream instead."
[03-Mar-2015 20:48:29] WARNING: [pool www] child 21793 said into stderr: ""
[03-Mar-2015 20:48:29] WARNING: [pool www] child 21793 said into stderr: "NOTICE: PHP message:
PHP Warning:  Cannot modify header information - headers already sent in Unknown on line 0"
[03-Mar-2015 20:48:29] WARNING: [pool www] child 21793 said into stderr: "Unknown(0) : Warning
- Cannot modify header information - headers already sent"
[03-Mar-2015 20:48:29] WARNING: [pool www] child 21793 said into stderr: ""
[03-Mar-2015 20:48:30] WARNING: [pool www] child 21793 exited on signal 11 (SIGSEGV) after 18.506098
seconds from start


Previous Comments:
------------------------------------------------------------------------
[2015-03-03 20:23:31] aharvey@php.net

I can't reproduce this with 5.6.6 or the current PHP-5.6. Can you pastebin your phpinfo()
somewhere, please?

------------------------------------------------------------------------
[2015-03-03 17:39:28] public at grik dot net

I updated php to 5.6.6 and reproduce the crash.
No 3rd party extensions.

------------------------------------------------------------------------
[2015-03-03 17:02:06] public at grik dot net

Trying to reopen the ticket

------------------------------------------------------------------------
[2015-03-03 16:59:38] public at grik dot net

segfault is reproduced when an empty Content-Type header and when no data is provided with POST
request,
the content of the script does not matter, php file can be empty

$ curl -d '' -H 'Content-Type:' http://testsite.local/t.php
<html>
<head><title>502 Bad Gateway</title></head>
<body bgcolor="white">
<center><h1>502 Bad Gateway</h1></center>

$ sudo tail  /var/log/messages
Mar  3 16:53:30 hotelfm kernel: php-fpm[15374]: segfault at 0 ip 0844e25d sp bfb09f80 error 4 in
php-fpm[8048000+ace000]

------------------------------------------------------------------------
[2015-02-08 04:22:15] php-bugs at lists dot php dot net

No feedback was provided. The bug is being suspended because
we assume that you are no longer experiencing the problem.
If this is not the case and you are able to provide the
information that was requested earlier, please do so and
change the status of the bug back to "Re-Opened". Thank you.

------------------------------------------------------------------------


The remainder of the comments for this report are too long. To view
the rest of the comments, please view the bug report online at

    https://bugs.php.net/bug.php?id=68921


--
Edit this bug report at https://bugs.php.net/bug.php?id=68921&edit=1


Thread (18 messages)

« previous php.bugs (#191109) next »