#23299 [Opn]: Intermittant but reproducable corruption and crash
| From: | bginter at ndevtech dot net | Date: | Tue, 22 Apr 2003 18:12:31 +0000 |
| Subject: | #23299 [Opn]: Intermittant but reproducable corruption and crash | ||
| References: | 1 | Groups: | php.bugs |
| Request: | Send a blank email to php-bugs+get-38080@lists.php.net to get a copy of this message | ||
ID: 23299
User updated by: bginter at ndevtech dot net
Reported By: bginter at ndevtech dot net
Status: Open
Bug Type: Reproducible crash
Operating System: Linux 2.4.20
PHP Version: 4.3.1, STABLE-200304220130
New Comment:
Here are a few more that look like they may help. These are from
STABLE-200304220130.
Program received signal SIGSEGV, Segmentation fault.
0x404053e0 in _zval_ptr_dtor (zval_ptr=0x8849390,
__zend_filename=0x404deb20
"/usr/local/src/php-4.3.1/Zend/zend_variables.c", __zend_lineno=167)
at /usr/local/src/php-4.3.1/Zend/zend_execute_API.c:287
287 (*zval_ptr)->refcount--;
(gdb) bt
#0 0x404053e0 in _zval_ptr_dtor (zval_ptr=0x8849390,
__zend_filename=0x404deb20
"/usr/local/src/php-4.3.1/Zend/zend_variables.c", __zend_lineno=167)
at /usr/local/src/php-4.3.1/Zend/zend_execute_API.c:287
#1 0x4040f93d in _zval_ptr_dtor_wrapper (zval_ptr=0x8849390) at
/usr/local/src/php-4.3.1/Zend/zend_variables.c:167
#2 0x4041740a in zend_hash_destroy (ht=0x89635ac) at
/usr/local/src/php-4.3.1/Zend/zend_hash.c:543
#3 0x4040f5b3 in _zval_dtor (zvalue=0x893da24,
__zend_filename=0x404de480
"/usr/local/src/php-4.3.1/Zend/zend_execute_API.c", __zend_lineno=289)
at /usr/local/src/php-4.3.1/Zend/zend_variables.c:60
#4 0x4040540c in _zval_ptr_dtor (zval_ptr=0x8991b68,
__zend_filename=0x404deb20
"/usr/local/src/php-4.3.1/Zend/zend_variables.c", __zend_lineno=167)
at /usr/local/src/php-4.3.1/Zend/zend_execute_API.c:289
#5 0x4040f93d in _zval_ptr_dtor_wrapper (zval_ptr=0x8991b68) at
/usr/local/src/php-4.3.1/Zend/zend_variables.c:167
#6 0x4041740a in zend_hash_destroy (ht=0x819d36c) at
/usr/local/src/php-4.3.1/Zend/zend_hash.c:543
#7 0x4040f569 in _zval_dtor (zvalue=0x8930f0c,
__zend_filename=0x404de480
"/usr/local/src/php-4.3.1/Zend/zend_execute_API.c", __zend_lineno=289)
at /usr/local/src/php-4.3.1/Zend/zend_variables.c:51
#8 0x4040540c in _zval_ptr_dtor (zval_ptr=0x893f610,
__zend_filename=0x404deb20
"/usr/local/src/php-4.3.1/Zend/zend_variables.c", __zend_lineno=167)
at /usr/local/src/php-4.3.1/Zend/zend_execute_API.c:289
#9 0x4040f93d in _zval_ptr_dtor_wrapper (zval_ptr=0x893f610) at
/usr/local/src/php-4.3.1/Zend/zend_variables.c:167
#10 0x4041740a in zend_hash_destroy (ht=0x8941e6c) at
/usr/local/src/php-4.3.1/Zend/zend_hash.c:543
#11 0x4040f5b3 in _zval_dtor (zvalue=0x86adc34,
__zend_filename=0x404de480
"/usr/local/src/php-4.3.1/Zend/zend_execute_API.c", __zend_lineno=289)
at /usr/local/src/php-4.3.1/Zend/zend_variables.c:60
#12 0x4040540c in _zval_ptr_dtor (zval_ptr=0x870a5f8,
__zend_filename=0x404deb20
"/usr/local/src/php-4.3.1/Zend/zend_variables.c", __zend_lineno=167)
at /usr/local/src/php-4.3.1/Zend/zend_execute_API.c:289
#13 0x4040f93d in _zval_ptr_dtor_wrapper (zval_ptr=0x870a5f8) at
/usr/local/src/php-4.3.1/Zend/zend_variables.c:167
#14 0x4041740a in zend_hash_destroy (ht=0x870dd3c) at
/usr/local/src/php-4.3.1/Zend/zend_hash.c:543
#15 0x4040f5b3 in _zval_dtor (zvalue=0x8854d8c,
__zend_filename=0x404de480
"/usr/local/src/php-4.3.1/Zend/zend_execute_API.c", __zend_lineno=289)
at /usr/local/src/php-4.3.1/Zend/zend_variables.c:60
#16 0x4040540c in _zval_ptr_dtor (zval_ptr=0x82c1f10,
__zend_filename=0x404deb20
"/usr/local/src/php-4.3.1/Zend/zend_variables.c", __zend_lineno=167)
at /usr/local/src/php-4.3.1/Zend/zend_execute_API.c:289
#17 0x4040f93d in _zval_ptr_dtor_wrapper (zval_ptr=0x82c1f10) at
/usr/local/src/php-4.3.1/Zend/zend_variables.c:167
#18 0x4041757a in zend_hash_clean (ht=0x8350d0c) at
/usr/local/src/php-4.3.1/Zend/zend_hash.c:569
#19 0x404249c6 in execute (op_array=0x86951ac) at
/usr/local/src/php-4.3.1/Zend/zend_execute.c:1656
#20 0x40411584 in zend_execute_scripts (type=8, retval=0x0,
file_count=3) at /usr/local/src/php-4.3.1/Zend/zend.c:864
#21 0x403d66c3 in php_execute_script (primary_file=0xbffff8c8) at
/usr/local/src/php-4.3.1/main/main.c:1573
#22 0x40429ad0 in apache_php_module_main (r=0x815867c,
display_source_mode=0) at
/usr/local/src/php-4.3.1/sapi/apache/sapi_apache.c:55
#23 0x4042aa70 in send_php (r=0x815867c, display_source_mode=0,
filename=0x815a894
"/usr/local/apache/lariat/lariat2/admin/debtor/transaction_controller.php")
at /usr/local/src/php-4.3.1/sapi/apache/mod_php4.c:556
#24 0x4042aaef in send_parsed_php (r=0x815867c) at
/usr/local/src/php-4.3.1/sapi/apache/mod_php4.c:571
#25 0x080554e9 in ap_invoke_handler ()
#26 0x0806b5df in process_request_internal ()
#27 0x0806b646 in ap_process_request ()
#28 0x08061e06 in child_main ()
#29 0x08061fe5 in make_child ()
#30 0x0806215c in startup_children ()
#31 0x080627ed in standalone_main ()
#32 0x0806307c in main ()
#33 0x4009214f in __libc_start_main () from /lib/libc.so.6
Program received signal SIGSEGV, Segmentation fault.
0x4041bb36 in _zend_is_inconsistent (ht=0x8fcc8400, file=0x404e7400
"/usr/local/src/php4-STABLE-200304220130/Zend/zend_hash.c", line=534)
at /usr/local/src/php4-STABLE-200304220130/Zend/zend_hash.c:84
84 if (ht->inconsistent==HT_OK) {
(gdb) bt
#0 0x4041bb36 in _zend_is_inconsistent (ht=0x8fcc8400, file=0x404e7400
"/usr/local/src/php4-STABLE-200304220130/Zend/zend_hash.c", line=534)
at /usr/local/src/php4-STABLE-200304220130/Zend/zend_hash.c:84
#1 0x4041d3ce in zend_hash_destroy (ht=0x8fcc8400) at
/usr/local/src/php4-STABLE-200304220130/Zend/zend_hash.c:534
#2 0x40415479 in _zval_dtor (zvalue=0x89b141c,
__zend_filename=0x404e6340
"/usr/local/src/php4-STABLE-200304220130/Zend/zend_execute_API.c",
__zend_lineno=291)
at
/usr/local/src/php4-STABLE-200304220130/Zend/zend_variables.c:51
#3 0x4040b30c in _zval_ptr_dtor (zval_ptr=0x8814738,
__zend_filename=0x404e8200
"/usr/local/src/php4-STABLE-200304220130/Zend/zend_execute.h",
__zend_lineno=96)
at
/usr/local/src/php4-STABLE-200304220130/Zend/zend_execute_API.c:291
#4 0x4042de8b in zend_ptr_stack_clear_multiple () at
/usr/local/src/php4-STABLE-200304220130/Zend/zend_execute.h:96
#5 0x4042abbc in execute (op_array=0x8555f64) at
/usr/local/src/php4-STABLE-200304220130/Zend/zend_execute.c:1685
#6 0x4042a854 in execute (op_array=0x84e0374) at
/usr/local/src/php4-STABLE-200304220130/Zend/zend_execute.c:1650
#7 0x4042a854 in execute (op_array=0x881cb4c) at
/usr/local/src/php4-STABLE-200304220130/Zend/zend_execute.c:1650
#8 0x40417494 in zend_execute_scripts (type=8, retval=0x0,
file_count=3) at
/usr/local/src/php4-STABLE-200304220130/Zend/zend.c:864
#9 0x403dba2e in php_execute_script (primary_file=0xbffff8c8) at
/usr/local/src/php4-STABLE-200304220130/main/main.c:1637
#10 0x4042fb80 in apache_php_module_main (r=0x8158da4,
display_source_mode=0) at
/usr/local/src/php4-STABLE-200304220130/sapi/apache/sapi_apache.c:55
#11 0x40430c30 in send_php (r=0x8158da4, display_source_mode=0,
filename=0x815afbc
"/usr/local/apache/lariat/lariat2/admin/debtor/transaction_controller.php")
at
/usr/local/src/php4-STABLE-200304220130/sapi/apache/mod_php4.c:617
#12 0x40430caf in send_parsed_php (r=0x8158da4) at
/usr/local/src/php4-STABLE-200304220130/sapi/apache/mod_php4.c:632
#13 0x080554e9 in ap_invoke_handler ()
#14 0x0806b5df in process_request_internal ()
#15 0x0806b646 in ap_process_request ()
#16 0x08061e06 in child_main ()
#17 0x08061fe5 in make_child ()
#18 0x0806215c in startup_children ()
#19 0x080627ed in standalone_main ()
#20 0x0806307c in main ()
#21 0x4009214f in __libc_start_main () from /lib/libc.so.6
Program received signal SIGSEGV, Segmentation fault.
0x404026a3 in shutdown_memory_manager (silent=1, clean_cache=0) at
/usr/local/src/php4-STABLE-200304220130/Zend/zend_alloc.c:514
514 if (!iterator->cached
(gdb) bt
#0 0x404026a3 in shutdown_memory_manager (silent=1, clean_cache=0) at
/usr/local/src/php4-STABLE-200304220130/Zend/zend_alloc.c:514
#1 0x403da291 in php_request_shutdown (dummy=0x0) at
/usr/local/src/php4-STABLE-200304220130/main/main.c:991
#2 0x4042fbf8 in apache_php_module_main (r=0x8158da4,
display_source_mode=0) at
/usr/local/src/php4-STABLE-200304220130/sapi/apache/sapi_apache.c:61
#3 0x40430c30 in send_php (r=0x8158da4, display_source_mode=0,
filename=0x815afbc
"/usr/local/apache/lariat/lariat2/admin/debtor/transaction_controller.php")
at
/usr/local/src/php4-STABLE-200304220130/sapi/apache/mod_php4.c:617
#4 0x40430caf in send_parsed_php (r=0x8158da4) at
/usr/local/src/php4-STABLE-200304220130/sapi/apache/mod_php4.c:632
#5 0x080554e9 in ap_invoke_handler ()
#6 0x0806b5df in process_request_internal ()
#7 0x0806b646 in ap_process_request ()
#8 0x08061e06 in child_main ()
#9 0x08061fe5 in make_child ()
#10 0x0806215c in startup_children ()
#11 0x080627ed in standalone_main ()
#12 0x0806307c in main ()
#13 0x4009214f in __libc_start_main () from /lib/libc.so.6
Thank you.
Previous Comments:
------------------------------------------------------------------------
[2003-04-22 12:50:47] bginter at ndevtech dot net
I have disabled --enable-versioning.
This new trace is against PHP 4.3.1:
Program received signal SIGSEGV, Segmentation fault.
0x4040f604 in zval_add_ref (p=0x8872d20) at
/usr/local/src/php-4.3.1/Zend/zend_variables.c:85
85 (*p)->refcount++;
(gdb) bt
#0 0x4040f604 in zval_add_ref (p=0x8872d20) at
/usr/local/src/php-4.3.1/Zend/zend_variables.c:85
#1 0x40417e38 in zend_hash_copy (target=0x8872fb4, source=0x8853b3c,
pCopyConstructor=0x4040f5fc <zval_add_ref>, tmp=0xbffeead4, size=4)
at /usr/local/src/php-4.3.1/Zend/zend_hash.c:789
#2 0x4040f851 in _zval_copy_ctor (zvalue=0x88750bc,
__zend_filename=0x404e02e0
"/usr/local/src/php-4.3.1/Zend/zend_execute.c", __zend_lineno=1785)
at /usr/local/src/php-4.3.1/Zend/zend_variables.c:137
#3 0x40425201 in execute (op_array=0x8268ccc) at
/usr/local/src/php-4.3.1/Zend/zend_execute.c:1785
#4 0x40424814 in execute (op_array=0x8263714) at
/usr/local/src/php-4.3.1/Zend/zend_execute.c:1640
#5 0x40424814 in execute (op_array=0x891ebc4) at
/usr/local/src/php-4.3.1/Zend/zend_execute.c:1640
#6 0x40411584 in zend_execute_scripts (type=8, retval=0x0,
file_count=3) at /usr/local/src/php-4.3.1/Zend/zend.c:864
#7 0x403d66c3 in php_execute_script (primary_file=0xbffff8c8) at
/usr/local/src/php-4.3.1/main/main.c:1573
#8 0x40429ad0 in apache_php_module_main (r=0x815867c,
display_source_mode=0) at
/usr/local/src/php-4.3.1/sapi/apache/sapi_apache.c:55
#9 0x4042aa70 in send_php (r=0x815867c, display_source_mode=0,
filename=0x815a894
"/usr/local/apache/lariat/lariat2/admin/debtor/transaction_controller.php")
at /usr/local/src/php-4.3.1/sapi/apache/mod_php4.c:556
#10 0x4042aaef in send_parsed_php (r=0x815867c) at
/usr/local/src/php-4.3.1/sapi/apache/mod_php4.c:571
#11 0x080554e9 in ap_invoke_handler ()
#12 0x0806b5df in process_request_internal ()
#13 0x0806b646 in ap_process_request ()
#14 0x08061e06 in child_main ()
#15 0x08061fe5 in make_child ()
#16 0x0806215c in startup_children ()
#17 0x080627ed in standalone_main ()
#18 0x0806307c in main ()
#19 0x4009214f in __libc_start_main () from /lib/libc.so.6
(gdb) frame 3
#3 0x40425201 in execute (op_array=0x8268ccc) at
/usr/local/src/php-4.3.1/Zend/zend_execute.c:1785
1785 zval_copy_ctor(varptr);
(gdb) print (char
*)(executor_globals.function_state_ptr->function)->common.function_name
$1 = 0x826379c "slice_transaction_debt"
(gdb) print (char *)executor_globals.active_op_array->function_name
$2 = 0x826379c "slice_transaction_debt"
(gdb) print (char *)executor_globals.active_op_array->filename
$3 = 0x8323074
"/usr/local/apache/lariat/lariat2/classes/transaction.class.php"
------------------------------------------------------------------------
[2003-04-22 03:07:30] rasmus@php.net
Could you rebuild without --enable-versioning?
------------------------------------------------------------------------
[2003-04-22 03:01:33] bginter at ndevtech dot net
Ahh, I should have thought of that. I have disabled the Zend Optimizer
and while I still usually get the same type of backtraces I've already
sent, here is a new one:
Program received signal SIGSEGV, Segmentation fault.
0x400e7bdd in free () from /lib/libc.so.6
(gdb) bt
#0 0x400e7bdd in free () from /lib/libc.so.6
#1 0x400e7aa3 in free () from /lib/libc.so.6
#2 0x40509eb5 in PQclear () from /usr/local/pgsql-7.3/lib/libpq.so.2
#3 0x40305634 in object.11 () from
/usr/local/apache/libexec/libphp4.so
#4 0x403b416d in object.11 () from
/usr/local/apache/libexec/libphp4.so
#5 0x403b2cd2 in object.11 () from
/usr/local/apache/libexec/libphp4.so
#6 0x403b3f0b in object.11 () from
/usr/local/apache/libexec/libphp4.so
#7 0x403ad802 in object.11 () from
/usr/local/apache/libexec/libphp4.so
#8 0x403a5e59 in object.11 () from
/usr/local/apache/libexec/libphp4.so
#9 0x403b2d9e in object.11 () from
/usr/local/apache/libexec/libphp4.so
#10 0x403ad7eb in object.11 () from
/usr/local/apache/libexec/libphp4.so
#11 0x403bdd07 in object.11 () from
/usr/local/apache/libexec/libphp4.so
#12 0x403c07ca in object.11 () from
/usr/local/apache/libexec/libphp4.so
#13 0x403c07ca in object.11 () from
/usr/local/apache/libexec/libphp4.so
#14 0x403c07ca in object.11 () from
/usr/local/apache/libexec/libphp4.so
#15 0x403c07ca in object.11 () from
/usr/local/apache/libexec/libphp4.so
#16 0x403c4ebb in object.11 () from
/usr/local/apache/libexec/libphp4.so
#17 0x403aed5e in object.11 () from
/usr/local/apache/libexec/libphp4.so
#18 0x4038755a in object.11 () from
/usr/local/apache/libexec/libphp4.so
#19 0x403c714e in object.11 () from
/usr/local/apache/libexec/libphp4.so
#20 0x403c7c7e in object.11 () from
/usr/local/apache/libexec/libphp4.so
#21 0x403c7ce2 in object.11 () from
/usr/local/apache/libexec/libphp4.so
#22 0x080554e9 in ap_invoke_handler ()
#23 0x0806b5df in process_request_internal ()
#24 0x0806b646 in ap_process_request ()
#25 0x08061e06 in child_main ()
#26 0x08061fe5 in make_child ()
#27 0x0806215c in startup_children ()
#28 0x080627ed in standalone_main ()
#29 0x0806307c in main ()
#30 0x4009214f in __libc_start_main () from /lib/libc.so.6
I still get the other traces too and during gdb startup, I get these
lines:
(no debugging symbols found)...(no debugging symbols
found)...(no debugging symbols found)...(no debugging symbols
found)...(no debugging symbols found)...(no debugging symbols
found)...
Do all the other programs/libraries have to be compiled with debugging
for these backtraces to be of use to you? I'm guessing those warnings
are for apache and other libraries.
Thanks.
------------------------------------------------------------------------
[2003-04-22 02:38:10] rasmus@php.net
Turn off ZendOptimizer please and try it again.
------------------------------------------------------------------------
[2003-04-22 02:07:46] bginter at ndevtech dot net
I have been generating these backtraces by running gdb and typing 'bt'
just like you suggested. Please excuse my ignorance with gdb and let
me know if I should try a different approach.
I have so far not been able to get httpd to dump a core file even
though ulimit -c is unlimited and there are write permissions on the
directory for the httpd user. Perhaps I'm missing something obvious?
I was able to get this trace a few minutes ago but several other traces
have all contained the same limited object.11 gibberish I sent earlier:
(gdb) bt
#0 0x40143277 in writev () from /lib/libc.so.6
#1 0x08053cd7 in writev_it_all ()
#2 0x0805410b in large_write ()
#3 0x080541d7 in ap_bwrite ()
#4 0x08068291 in ap_rwrite ()
#5 0x403c724b in object.11 () from
/usr/local/apache/libexec/libphp4.so
#6 0x40394813 in object.11 () from
/usr/local/apache/libexec/libphp4.so
#7 0x4039396a in object.11 () from
/usr/local/apache/libexec/libphp4.so
#8 0x403861a9 in object.11 () from
/usr/local/apache/libexec/libphp4.so
#9 0x403addcb in object.11 () from
/usr/local/apache/libexec/libphp4.so
#10 0x403add65 in object.11 () from
/usr/local/apache/libexec/libphp4.so
#11 0x403ad980 in object.11 () from
/usr/local/apache/libexec/libphp4.so
#12 0x40614686 in zend_assign_to_variable_reference () from
/usr/local/ZendOptimizer/lib/ZendOptimizer.so
#13 0x4061f6e6 in zend_assign_to_variable_reference () from
/usr/local/ZendOptimizer/lib/ZendOptimizer.so
#14 0x4061f6e6 in zend_assign_to_variable_reference () from
/usr/local/ZendOptimizer/lib/ZendOptimizer.so
#15 0x40622a02 in zend_oe () from
/usr/local/ZendOptimizer/lib/ZendOptimizer.so
#16 0x4038755a in object.11 () from
/usr/local/apache/libexec/libphp4.so
#17 0x403c714e in object.11 () from
/usr/local/apache/libexec/libphp4.so
#18 0x403c7c7e in object.11 () from
/usr/local/apache/libexec/libphp4.so
#19 0x403c7ce2 in object.11 () from
/usr/local/apache/libexec/libphp4.so
#20 0x080554e9 in ap_invoke_handler ()
#21 0x0806b5df in process_request_internal ()
#22 0x0806b646 in ap_process_request ()
#23 0x08061e06 in child_main ()
#24 0x08061fe5 in make_child ()
#25 0x0806215c in startup_children ()
#26 0x080627ed in standalone_main ()
#27 0x0806307c in main ()
#28 0x4009214f in __libc_start_main () from /lib/libc.so.6
Please let me know how I can help further. Thank you for your efforts!
------------------------------------------------------------------------
The remainder of the comments for this report are too long. To view
the rest of the comments, please view the bug report online at
http://bugs.php.net/23299
--
Edit this bug report at http://bugs.php.net/?id=23299&edit=1