Note: This bug is displayed in read-only format because the product is no longer active in Red Hat Bugzilla.
For bugs related to Red Hat Enterprise Linux 5 product line. The current stable release is 5.10. For Red Hat Enterprise Linux 6 and above, please visit Red Hat JIRA https://issues.redhat.com/secure/CreateIssue!default.jspa?pid=12332745 to report new issues.

Bug 652557

Summary: Tests 253 and 255 FAIL: stack smashing detected
Product: Red Hat Enterprise Linux 5 Reporter: Miroslav Vadkerti <mvadkert>
Component: curlAssignee: Kamil Dudka <kdudka>
Status: CLOSED ERRATA QA Contact: Dalibor Pospíšil <dapospis>
Severity: high Docs Contact:
Priority: high    
Version: 5.6CC: dapospis, ovasik
Target Milestone: rcKeywords: Patch
Target Release: ---   
Hardware: i386   
OS: Unspecified   
Whiteboard:
Fixed In Version: curl-7.15.5-14.el5 Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2012-02-21 06:15:01 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Attachments:
Description Flags
proposed fix none

Description Miroslav Vadkerti 2010-11-12 08:15:06 UTC
Description of problem:
Test 253 comming from upstream test suite fails:
../src/curl --output log/curl253.out  --include -v --trace-time -g "ftp://[::1]:8996/" -P - >>log/stdout253 2>>log/stderr253
*** stack smashing detected ***: /tmp/tmp.GWXLh29666/BUILD/curl-7.15.5/src/.libs/lt-curl terminated
sh: line 1:  4816 Aborted                 ../src/curl --output log/curl253.out --include -v --trace-time -g "ftp://[::1]:8996/" -P - >> log/stdout253 2>> log/stderr253

Please note that I use MALLOC_PERTURB_:
echo "export MALLOC_PERTURB_=$(($RANDOM % 255 + 1))" >> /etc/profile

Version-Release number of selected component (if applicable):
curl-7.15.5-9.el5

How reproducible:
100%

Steps to Reproduce:
1. run testsuite
  
Actual results:
stack smashing

Expected results:
no stack smashing

Additional info:

Comment 2 Kamil Dudka 2010-11-15 18:56:44 UTC
Created attachment 460606 [details]
proposed fix

upstream commit: https://github.com/bagder/curl/commit/8ec1bfe

Comment 3 RHEL Program Management 2011-05-31 14:10:34 UTC
This request was evaluated by Red Hat Product Management for
inclusion in the current release of Red Hat Enterprise Linux.
Because the affected component is not scheduled to be updated in the
current release, Red Hat is unfortunately unable to address this
request at this time. Red Hat invites you to ask your support
representative to propose this request, if appropriate and relevant,
in the next release of Red Hat Enterprise Linux.

Comment 8 Kamil Dudka 2011-09-09 12:45:21 UTC
I got the crash above with 32bit libcurl in mock.  With the patched version of libcurl, it does not happen any more.  On x86_64, I was not successful in reproducing the crash with any version.

Comment 12 errata-xmlrpc 2012-02-21 06:15:01 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

http://rhn.redhat.com/errata/RHBA-2012-0241.html