Bug #14161 Updated: segfault after strange code

From: Date: Fri, 14 Dec 2001 18:27:56 +0000
Subject: Bug #14161 Updated: segfault after strange code
References: 1  Groups: php.dev 
Request: Send a blank email to php-dev+get-73786@lists.php.net to get a copy of this message
ID: 14161 Updated by: yohgaki Reported By: hegyvari@ardents.hu Old Status: Open Status: Feedback Bug Type: Scripting Engine problem Operating System: Redhat 6.2 PHP Version: 4.0.6 New Comment: It does not crash with 4.1.0 CVS. Is there something special to make PHP crash? Could you try 4.1.0? Previous Comments: ------------------------------------------------------------------------ [2001-11-21 10:18:32] hegyvari@ardents.hu It works here, is that dot at the end of php3 really there? The configuration is PHP4.0.6 compiled with: './configure' '--with-oci8' '--with-apache=/coca/install/apache_1.3.22/' '--enable-sigchild' '--enable-track-vars' '--with-mysql' '--with-pgsql=/usr/local/pgsql' ------------------------------------------------------------------------ [2001-11-21 10:18:28] mfischer@php.net Reproduced with 4.0.6 (crash) and reported memory leak with current CVS: mfischer@debian:~/src/php/bugtest$ php -f 14161.php end../zend_execute.c(1962) : Freeing 0x082FC3E4 (3 bytes), script=14161.php zend_variables.c(106) : Actual location (location was relayed) Last leak repeated 6 times Reclassifying this as a ZE problem. ------------------------------------------------------------------------ [2001-11-21 10:12:40] mj@php.net FYI: I get "access denied" when accessing http://mail.ardents.hu:701/info.php3. ------------------------------------------------------------------------ [2001-11-21 10:10:52] hegyvari@ardents.hu Forgot to mention, that the code finishes, that is the "end" string appears in the browser. You have to check the apache error log to see the segfault. Of course if this type of code is in a function, the script will die inside the function. ------------------------------------------------------------------------ [2001-11-21 10:08:28] hegyvari@ardents.hu <? $str='1,2,3,4,5,6,7,8,9'; echo $str[0][NO]; echo $str[0][NO]; echo $str[0][NO]; echo $str[0][NO]; echo $str[0][NO]; echo $str[0][NO]; echo $str[0][NO]; echo "end."; ?> check http://mail.ardents.hu:701/info.php3 for a phpinfo(); This piece of code causes Apache to segfault. It is a distilled version, the original error was a typo inside a complex function, hidden inside a loop. It took more than a day to find. PHP4.0.5 produced the same result. ------------------------------------------------------------------------ Edit this bug report at http://bugs.php.net/?id=14161&edit=1

« previous php.dev (#73786) next »