Bug 863514 - *** glibc detected *** /usr/sbin/iptraf-ng: double free or corruption (!prev): 0x000000000086df40 ***
Summary: *** glibc detected *** /usr/sbin/iptraf-ng: double free or corruption (!prev)...
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Fedora
Classification: Fedora
Component: iptraf-ng
Version: 17
Hardware: Unspecified
OS: Unspecified
unspecified
unspecified
Target Milestone: ---
Assignee: Nikola Pajkovsky
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2012-10-05 17:12 UTC by Eduardo Habkost
Modified: 2014-02-02 22:16 UTC (History)
2 users (show)

Fixed In Version: iptraf-ng-1.1.4-1.fc18
Clone Of:
Environment:
Last Closed: 2013-08-01 20:09:23 UTC
Type: Bug
Embargoed:


Attachments (Terms of Use)

Description Eduardo Habkost 2012-10-05 17:12:39 UTC
Description of problem:

Running iptraf-ng, I get:


*** glibc detected *** /usr/sbin/iptraf-ng: double free or corruption (!prev): 0x000000000086df40 ***
======= Backtrace: =========
/lib64/libc.so.6[0x31fd47bfee]
/usr/sbin/iptraf-ng[0x4045a7]
/usr/sbin/iptraf-ng[0x4108ac]
/usr/sbin/iptraf-ng[0x4031cf]
/lib64/libc.so.6(__libc_start_main+0xf5)[0x31fd421735]
/usr/sbin/iptraf-ng[0x4031fd]
======= Memory map: ========
00400000-0042a000 r-xp 00000000 fd:01 151250                             /usr/sbin/iptraf-ng
00629000-0062a000 r--p 00029000 fd:01 151250                             /usr/sbin/iptraf-ng
0062a000-0062b000 rw-p 0002a000 fd:01 151250                             /usr/sbin/iptraf-ng
0062b000-0062d000 rw-p 00000000 00:00 0 
0082a000-0082c000 rw-p 0002a000 fd:01 151250                             /usr/sbin/iptraf-ng
0082c000-0088f000 rw-p 00000000 00:00 0                                  [heap]
31fd000000-31fd020000 r-xp 00000000 fd:01 132658                         /usr/lib64/ld-2.15.so
31fd21f000-31fd220000 r--p 0001f000 fd:01 132658                         /usr/lib64/ld-2.15.so
31fd220000-31fd221000 rw-p 00020000 fd:01 132658                         /usr/lib64/ld-2.15.so
31fd221000-31fd222000 rw-p 00000000 00:00 0 
31fd400000-31fd5ac000 r-xp 00000000 fd:01 132659                         /usr/lib64/libc-2.15.so
31fd5ac000-31fd7ac000 ---p 001ac000 fd:01 132659                         /usr/lib64/libc-2.15.so
31fd7ac000-31fd7b0000 r--p 001ac000 fd:01 132659                         /usr/lib64/libc-2.15.so
31fd7b0000-31fd7b2000 rw-p 001b0000 fd:01 132659                         /usr/lib64/libc-2.15.so
31fd7b2000-31fd7b7000 rw-p 00000000 00:00 0 
31fd800000-31fd803000 r-xp 00000000 fd:01 134092                         /usr/lib64/libpanel.so.5.9
31fd803000-31fda02000 ---p 00003000 fd:01 134092                         /usr/lib64/libpanel.so.5.9
31fda02000-31fda03000 r--p 00002000 fd:01 134092                         /usr/lib64/libpanel.so.5.9
31fda03000-31fda04000 rw-p 00003000 fd:01 134092                         /usr/lib64/libpanel.so.5.9
31fe000000-31fe003000 r-xp 00000000 fd:01 132673                         /usr/lib64/libdl-2.15.so
31fe003000-31fe202000 ---p 00003000 fd:01 132673                         /usr/lib64/libdl-2.15.so
31fe202000-31fe203000 r--p 00002000 fd:01 132673                         /usr/lib64/libdl-2.15.so
31fe203000-31fe204000 rw-p 00003000 fd:01 132673                         /usr/lib64/libdl-2.15.so
31ff400000-31ff415000 r-xp 00000000 fd:01 132680                         /usr/lib64/libgcc_s-4.7.0-20120507.so.1
31ff415000-31ff614000 ---p 00015000 fd:01 132680                         /usr/lib64/libgcc_s-4.7.0-20120507.so.1
31ff614000-31ff615000 rw-p 00014000 fd:01 132680                         /usr/lib64/libgcc_s-4.7.0-20120507.so.1
320f400000-320f425000 r-xp 00000000 fd:01 132684                         /usr/lib64/libtinfo.so.5.9
320f425000-320f624000 ---p 00025000 fd:01 132684                         /usr/lib64/libtinfo.so.5.9
320f624000-320f628000 r--p 00024000 fd:01 132684                         /usr/lib64/libtinfo.so.5.9
320f628000-320f629000 rw-p 00028000 fd:01 132684                         /usr/lib64/libtinfo.so.5.9
3213c00000-3213c23000 r-xp 00000000 fd:01 135678                         /usr/lib64/libncurses.so.5.9
3213c23000-3213e22000 ---p 00023000 fd:01 135678                         /usr/lib64/libncurses.so.5.9
3213e22000-3213e23000 r--p 00022000 fd:01 135678                         /usr/lib64/libncurses.so.5.9
3213e23000-3213e24000 rw-p 00023000 fd:01 135678                         /usr/lib64/libncurses.so.5.9
7ffff7fcd000-7ffff7fd1000 rw-p 00000000 00:00 0 
7ffff7ffc000-7ffff7ffe000 rw-p 00000000 00:00 0 
7ffff7ffe000-7ffff7fff000 r-xp 00000000 00:00 0                          [vdso]
7ffffffde000-7ffffffff000 rw-p 00000000 00:00 0                          [stack]
ffffffffff600000-ffffffffff601000 r-xp 00000000 00:00 0                  [vsyscall]

Program received signal SIGABRT, Aborted.
0x00000031fd435925 in __GI_raise (sig=sig@entry=6) at ../nptl/sysdeps/unix/sysv/linux/raise.c:64
64	  return INLINE_SYSCALL (tgkill, 3, pid, selftid, sig);
(gdb) bt full
#0  0x00000031fd435925 in __GI_raise (sig=sig@entry=6) at ../nptl/sysdeps/unix/sysv/linux/raise.c:64
        resultvar = 0
        pid = 23195
        selftid = 23195
#1  0x00000031fd4370d8 in __GI_abort () at abort.c:91
        save_stage = 2
        act = {__sigaction_handler = {sa_handler = 0x7fffffffd54a, sa_sigaction = 0x7fffffffd54a}, sa_mask = {__val = {6, 214703764803, 2, 140737488344414, 2, 214703758116, 1, 214703764799, 3, 
              140737488344390, 10, 214703764803, 2, 140737488345200, 7, 140737488346960}}, sa_flags = 102, sa_restorer = 0x7}
        sigs = {__val = {32, 0 <repeats 15 times>}}
#2  0x00000031fd474e6b in __libc_message (do_abort=do_abort@entry=2, fmt=fmt@entry=0x31fd578908 "*** glibc detected *** %s: %s: 0x%s ***\n") at ../sysdeps/unix/sysv/linux/libc_fatal.c:198
        ap = {{gp_offset = 40, fp_offset = 48, overflow_arg_area = 0x7fffffffdf60, reg_save_area = 0x7fffffffde70}}
        ap_copy = {{gp_offset = 16, fp_offset = 48, overflow_arg_area = 0x7fffffffdf60, reg_save_area = 0x7fffffffde70}}
        fd = 7
        on_2 = <optimized out>
        list = <optimized out>
        nlist = <optimized out>
        cp = <optimized out>
        written = <optimized out>
#3  0x00000031fd47bfee in malloc_printerr (ptr=0x86df40, str=0x31fd5789c8 "double free or corruption (!prev)", action=3) at malloc.c:5027
        buf = "000000000086df40"
        cp = <optimized out>
#4  _int_free (av=0x31fd7b0720, p=0x86df30, have_lock=0) at malloc.c:3948
        size = <optimized out>
        fb = <optimized out>
        nextchunk = <optimized out>
        nextsize = <optimized out>
        nextinuse = <optimized out>
        prevsize = <optimized out>
        bck = <optimized out>
        fwd = <optimized out>
        errstr = <optimized out>
        locked = <optimized out>
#5  0x00000000004045a7 in tx_operatemenu (menu=menu@entry=0x7fffffffe100, position=position@entry=0x7fffffffe080, aborted=aborted@entry=0x7fffffffe088) at tui/menurt.c:209
        itemptr = 0x86d150
        row = 1
        exitloop = 0
        ch = <optimized out>
        keyptr = <optimized out>
#6  0x00000000004108ac in program_interface (options=options@entry=0x7fffffffe260, opt=opt@entry=0, optarg=optarg@entry=0x7fffffffe280 "\360\342\377\377\377\177", facilitytime=<optimized out>)
    at iptraf.c:199
        menu = {itemlist = 0x86d150, selecteditem = 0x82c500, lastitem = 0x86d790, itemcount = 11, postn = 0, x1 = 35, y1 = 13, x2 = 82, y2 = 17, menu_maxx = 33, menuwin = 0x86c160, 
          menupanel = 0x86e700, descwin = 0x86d840, descpanel = 0x86df10, borderattr = 768, normalattr = 2100736, highattr = 2097920, barnormalattr = 2100992, barhighattr = 2099968, 
          descriptionattr = 512, shortcuts = "MSDBL^F^O^X\000\377\177\000\000\307\000\000\000\000\000\000\000 "}
        break_menu = {itemlist = 0x320f416050, selecteditem = 0x31fd435aa5, lastitem = 0x0, itemcount = -134424768, postn = 32767, x1 = 8569856, y1 = 0, x2 = 8568912, y2 = 0, menu_maxx = 4329748, 
          menuwin = 0x82c500, menupanel = 0x320f628d10, descwin = 0x4031d4, descpanel = 0x7fffffffe3e0, borderattr = 0, normalattr = 0, highattr = 0, barnormalattr = 0, barhighattr = 331426958, 
          descriptionattr = 50, shortcuts = "\025\022B\000\000\000\000\000\060\000\000\000\000\000\000\000\350\343\377\377\377\177\000\000d"}
        row = 1
        break_row = 1
---Type <return> to continue, or q <return> to quit---
        aborted = 0
        break_aborted = 7
        ofilter = {filename = '\000' <repeats 39 times>, filtercode = 0, fl = {head = 0x0, tail = 0x0, lastpos = 0}, arp = 0, rarp = 0, nonip = 0, padding = 0}
        fltfiles = 0x0
        ifname = "\000\000\000\000\000\000\000\000O^\301\023\062\000\000"
        ifptr = <optimized out>
        ports = 0x0
#7  0x00000000004031cf in main (argc=<optimized out>, argv=0x7fffffffe3e8) at iptraf.c:567
        options = {color = 1, logging = 0, revlook = 0, servnames = 0, promisc = 0, actmode = 0, mac = 0, v6inv4asv6 = 1, dummy = 0, timeout = 15, logspan = 3600, updrate = 0, closedint = 0}
        keyparm = "\360\342\377\377\377\177\000\000\t\000\000"
        status = <optimized out>
        ofilter = {filename = '\000' <repeats 39 times>, filtercode = 0, fl = {head = 0x0, tail = 0x0, lastpos = 0}, arp = 0, rarp = 0, nonip = 0, padding = 0}
        fltfiles = 0x7fffffffe2a0
        ports = <optimized out>
(gdb) 
(gdb) 


Version-Release number of selected component (if applicable):
iptraf-ng-1.1.1-1.fc17.x86_64

Steps to Reproduce:
1. Run iptraf-ng as root
2. Press any key

It seems to be reproducible only if $COLUMNS is 199

'COLUMNS=200 iptraf-ng' doesn't crash.
'COLUMNS=198 iptraf-ng' doesn't crash, either.

Comment 1 Fedora End Of Life 2013-07-04 01:24:08 UTC
This message is a reminder that Fedora 17 is nearing its end of life.
Approximately 4 (four) weeks from now Fedora will stop maintaining
and issuing updates for Fedora 17. It is Fedora's policy to close all
bug reports from releases that are no longer maintained. At that time
this bug will be closed as WONTFIX if it remains open with a Fedora 
'version' of '17'.

Package Maintainer: If you wish for this bug to remain open because you
plan to fix it in a currently maintained version, simply change the 'version' 
to a later Fedora version prior to Fedora 17's end of life.

Bug Reporter:  Thank you for reporting this issue and we are sorry that 
we may not be able to fix it before Fedora 17 is end of life. If you 
would still like  to see this bug fixed and are able to reproduce it 
against a later version  of Fedora, you are encouraged  change the 
'version' to a later Fedora version prior to Fedora 17's end of life.

Although we aim to fix as many bugs as possible during every release's 
lifetime, sometimes those efforts are overtaken by events. Often a 
more recent Fedora release includes newer upstream software that fixes 
bugs or makes them obsolete.

Comment 2 Fedora Update System 2013-07-23 15:26:41 UTC
iptraf-ng-1.1.4-1.fc19 has been submitted as an update for Fedora 19.
https://admin.fedoraproject.org/updates/iptraf-ng-1.1.4-1.fc19

Comment 3 Fedora Update System 2013-07-23 15:27:07 UTC
iptraf-ng-1.1.4-1.el6 has been submitted as an update for Fedora EPEL 6.
https://admin.fedoraproject.org/updates/iptraf-ng-1.1.4-1.el6

Comment 4 Fedora Update System 2013-07-23 15:27:49 UTC
iptraf-ng-1.1.4-1.el5 has been submitted as an update for Fedora EPEL 5.
https://admin.fedoraproject.org/updates/iptraf-ng-1.1.4-1.el5

Comment 5 Fedora Update System 2013-07-23 15:28:24 UTC
iptraf-ng-1.1.4-1.fc18 has been submitted as an update for Fedora 18.
https://admin.fedoraproject.org/updates/iptraf-ng-1.1.4-1.fc18

Comment 6 Fedora Update System 2013-07-23 19:40:30 UTC
Package iptraf-ng-1.1.4-1.el5:
* should fix your issue,
* was pushed to the Fedora EPEL 5 testing repository,
* should be available at your local mirror within two days.
Update it with:
# su -c 'yum update --enablerepo=epel-testing iptraf-ng-1.1.4-1.el5'
as soon as you are able to.
Please go to the following url:
https://admin.fedoraproject.org/updates/FEDORA-EPEL-2013-10955/iptraf-ng-1.1.4-1.el5
then log in and leave karma (feedback).

Comment 7 Fedora End Of Life 2013-08-01 20:09:26 UTC
Fedora 17 changed to end-of-life (EOL) status on 2013-07-30. Fedora 17 is 
no longer maintained, which means that it will not receive any further 
security or bug fix updates. As a result we are closing this bug.

If you can reproduce this bug against a currently maintained version of 
Fedora please feel free to reopen this bug against that version.

Thank you for reporting this bug and we are sorry it could not be fixed.

Comment 8 Nikola Pajkovsky 2013-08-01 21:27:19 UTC
Eduardo, do you want build with fix or did you pick newer version?

Comment 9 Fedora Update System 2013-08-02 03:34:23 UTC
iptraf-ng-1.1.4-1.fc19 has been pushed to the Fedora 19 stable repository.  If problems still persist, please make note of it in this bug report.

Comment 10 Fedora Update System 2013-08-02 03:35:58 UTC
iptraf-ng-1.1.4-1.fc18 has been pushed to the Fedora 18 stable repository.  If problems still persist, please make note of it in this bug report.

Comment 11 Fedora Update System 2013-09-02 12:04:16 UTC
iptraf-ng-1.1.4-2.fc18 has been submitted as an update for Fedora 18.
https://admin.fedoraproject.org/updates/iptraf-ng-1.1.4-2.fc18

Comment 12 Fedora Update System 2013-09-02 12:04:55 UTC
iptraf-ng-1.1.4-2.fc19 has been submitted as an update for Fedora 19.
https://admin.fedoraproject.org/updates/iptraf-ng-1.1.4-2.fc19

Comment 13 Fedora Update System 2013-09-02 12:05:30 UTC
iptraf-ng-1.1.4-2.el5 has been submitted as an update for Fedora EPEL 5.
https://admin.fedoraproject.org/updates/iptraf-ng-1.1.4-2.el5

Comment 14 Fedora Update System 2013-09-02 12:06:03 UTC
iptraf-ng-1.1.4-2.el6 has been submitted as an update for Fedora EPEL 6.
https://admin.fedoraproject.org/updates/iptraf-ng-1.1.4-2.el6

Comment 15 Fedora Update System 2013-09-11 01:51:05 UTC
iptraf-ng-1.1.4-2.fc19 has been pushed to the Fedora 19 stable repository.  If problems still persist, please make note of it in this bug report.

Comment 16 Fedora Update System 2013-09-11 01:53:25 UTC
iptraf-ng-1.1.4-2.fc18 has been pushed to the Fedora 18 stable repository.  If problems still persist, please make note of it in this bug report.

Comment 17 Fedora Update System 2013-09-17 17:26:37 UTC
iptraf-ng-1.1.4-2.el5 has been pushed to the Fedora EPEL 5 stable repository.  If problems still persist, please make note of it in this bug report.

Comment 18 Fedora Update System 2013-09-17 17:27:11 UTC
iptraf-ng-1.1.4-2.el6 has been pushed to the Fedora EPEL 6 stable repository.  If problems still persist, please make note of it in this bug report.


Note You need to log in before you can comment on or make changes to this bug.