Bug 1187182

Summary: [abrt] evince: cairo_surface_set_device_scale(): evince killed by SIGSEGV
Product: [Fedora] Fedora Reporter: lambda.xy.x
Component: evinceAssignee: Marek Kašík <mkasik>
Status: CLOSED ERRATA QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: 21CC: abkahrs, blaffablaffa, craig, mcatanzaro+wrong-account-do-not-cc, mkasik, Wilhelm.Buchmueller
Target Milestone: ---   
Target Release: ---   
Hardware: x86_64   
OS: Unspecified   
URL: https://retrace.fedoraproject.org/faf/reports/bthash/f9c5a64678d92a21f21ec6a23397c8b706ddd905
Whiteboard: abrt_hash:a45270da811e5b6ff6e910087d700edebdc3be07
Fixed In Version: evince-3.14.2-2.fc21 Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2015-03-25 14:38:09 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Attachments:
Description Flags
File: backtrace
none
File: cgroup
none
File: core_backtrace
none
File: dso_list
none
File: environ
none
File: exploitable
none
File: limits
none
File: maps
none
File: open_fds
none
File: proc_pid_status
none
File: var_log_messages none

Description lambda.xy.x 2015-01-29 13:41:12 UTC
Description of problem:
I had multiple files open, the current one was a ps.gz. The crash happened during a task switch from another program to evince.

Version-Release number of selected component:
evince-3.14.1-8.fc21

Additional info:
reporter:       libreport-2.3.0
backtrace_rating: 4
cmdline:        evince /home/marty/.cache/.fr-wescf3/subst-derniere.ps
crash_function: cairo_surface_set_device_scale
executable:     /usr/bin/evince
kernel:         3.18.3-201.fc21.x86_64
runlevel:       N 5
type:           CCpp
uid:            1000

Truncated backtrace:
Thread no. 1 (8 frames)
 #0 cairo_surface_set_device_scale at /lib64/libcairo.so.2
 #1 set_device_scale_on_surface at ev-pixbuf-cache.c:273
 #2 copy_job_to_job_info at ev-pixbuf-cache.c:288
 #3 job_finished_cb at ev-pixbuf-cache.c:340
 #4 _g_closure_invoke_va at gclosure.c:831
 #7 emit_finished at ev-jobs.c:180
 #11 g_main_context_iteration at gmain.c:3842
 #12 g_application_run at gapplication.c:2282

Comment 1 lambda.xy.x 2015-01-29 13:41:15 UTC
Created attachment 985591 [details]
File: backtrace

Comment 2 lambda.xy.x 2015-01-29 13:41:16 UTC
Created attachment 985592 [details]
File: cgroup

Comment 3 lambda.xy.x 2015-01-29 13:41:17 UTC
Created attachment 985593 [details]
File: core_backtrace

Comment 4 lambda.xy.x 2015-01-29 13:41:18 UTC
Created attachment 985594 [details]
File: dso_list

Comment 5 lambda.xy.x 2015-01-29 13:41:19 UTC
Created attachment 985595 [details]
File: environ

Comment 6 lambda.xy.x 2015-01-29 13:41:20 UTC
Created attachment 985596 [details]
File: exploitable

Comment 7 lambda.xy.x 2015-01-29 13:41:21 UTC
Created attachment 985597 [details]
File: limits

Comment 8 lambda.xy.x 2015-01-29 13:41:22 UTC
Created attachment 985598 [details]
File: maps

Comment 9 lambda.xy.x 2015-01-29 13:41:23 UTC
Created attachment 985599 [details]
File: open_fds

Comment 10 lambda.xy.x 2015-01-29 13:41:24 UTC
Created attachment 985600 [details]
File: proc_pid_status

Comment 11 lambda.xy.x 2015-01-29 13:41:25 UTC
Created attachment 985601 [details]
File: var_log_messages

Comment 12 Marek Kašík 2015-02-11 11:25:53 UTC
This crash happens because of unhandled failure of rendering job. This usually happen when viewing a corrupted file (it loads but it doesn't render). I've prepared a patch for this and attached it here: https://bugzilla.gnome.org/show_bug.cgi?id=744049.
I'll wait for upstream's decision before pushing it to fedora.

Comment 13 Marek Kašík 2015-02-11 11:27:03 UTC
*** Bug 1190174 has been marked as a duplicate of this bug. ***

Comment 14 Marek Kašík 2015-02-11 11:27:22 UTC
*** Bug 1185589 has been marked as a duplicate of this bug. ***

Comment 15 Marek Kašík 2015-03-23 14:46:48 UTC
I went ahead and pushed all the patches to F21.

Comment 16 Marek Kašík 2015-03-27 09:39:03 UTC
*** Bug 1206388 has been marked as a duplicate of this bug. ***