Bug #72090 [Opn->Fbk]: AddressSanitizer: SEGV on unknown address 0x00000000 gdImageFlipVertical
| From: | cmb@php.net | Date: | Sat, 23 Jul 2016 18:18:14 +0000 |
| Subject: | Bug #72090 [Opn->Fbk]: AddressSanitizer: SEGV on unknown address 0x00000000 gdImageFlipVertical | ||
| References: | 1 | Groups: | php.bugs |
| Request: | Send a blank email to php-bugs+get-202537@lists.php.net to get a copy of this message | ||
Edit report at https://bugs.php.net/bug.php?id=72090&edit=1
ID: 72090
Updated by: cmb@php.net
Reported by: fernando at null-life dot com
Summary: AddressSanitizer: SEGV on unknown address 0x00000000
gdImageFlipVertical
-Status: Open
+Status: Feedback
Type: Bug
Package: GD related
Operating System: Linux
PHP Version: 5.6.20
-Assigned To:
+Assigned To: cmb
Block user comment: N
Private report: N
New Comment:
> SEGV on unknown address 0x00000000
Sounds like a null pointer access, but I can't reproduce that, and
valgrind also doesn't complain.
Which libgd do you use? (see phpinfo)
Previous Comments:
------------------------------------------------------------------------
[2016-04-24 01:02:45] fernando at null-life dot com
Description:
------------
Run with ASAN
Test script:
---------------
<?php
$var1 = imagecreatetruecolor ( 10, 10);
imagegd($var1);
imageflip($var1,2);
Expected result:
----------------
Not crash
Actual result:
--------------
ASAN:SIGSEGV
=================================================================
==1805==ERROR: AddressSanitizer: SEGV on unknown address 0x00000000 (pc 0xb2a4147f bp 0xbf832b60 sp
0xbf832b24 T0)
#0 0xb2a4147e in gdImageFlipVertical (/usr/lib/i386-linux-gnu/libgd.so.3+0xf47e)
#1 0xb2ac02e8 in zif_imageflip /home/fmunozs/phpgit/php56/ext/gd/gd.c:4944
#2 0x9a7c718 in zend_do_fcall_common_helper_SPEC
/home/fmunozs/phpgit/php56/Zend/zend_vm_execute.h:558
#3 0x9640316 in execute_ex /home/fmunozs/phpgit/php56/Zend/zend_vm_execute.h:363
#4 0x9a6c9c8 in zend_execute /home/fmunozs/phpgit/php56/Zend/zend_vm_execute.h:388
#5 0x9470b59 in zend_execute_scripts /home/fmunozs/phpgit/php56/Zend/zend.c:1341
#6 0x91acc6b in php_execute_script /home/fmunozs/phpgit/php56/main/main.c:2613
#7 0x9a8648a in do_cli /home/fmunozs/phpgit/php56/sapi/cli/php_cli.c:994
#8 0x808a502 in main /home/fmunozs/phpgit/php56/sapi/cli/php_cli.c:1378
#9 0xb6e2f645 in __libc_start_main (/lib/i386-linux-gnu/libc.so.6+0x18645)
#10 0x808aaba (/home/fmunozs/phpgit/php56/sapi/cli/php+0x808aaba)
------------------------------------------------------------------------
--
Edit this bug report at https://bugs.php.net/bug.php?id=72090&edit=1