The Samba-Bugzilla – Attachment 10086 Details for
Bug 10702
crash / talloc: access after free updating secrets.ldb
Home
|
New
|
Browse
|
Search
|
[?]
|
Reports
|
Requests
|
Help
|
New Account
|
Log In
[x]
|
Forgot Password
Login:
[x]
bt full
gdb.txt (text/plain), 4.42 KB, created by
Samuel Cabrero
on 2014-07-08 14:41:58 UTC
(
hide
)
Description:
bt full
Filename:
MIME Type:
Creator:
Samuel Cabrero
Created:
2014-07-08 14:41:58 UTC
Size:
4.42 KB
patch
obsolete
>#0 0x00007ffff71e5f79 in __GI_raise (sig=sig@entry=6) at ../nptl/sysdeps/unix/sysv/linux/raise.c:56 > resultvar = 0 > pid = 11574 > selftid = 11574 >#1 0x00007ffff71e9388 in __GI_abort () at abort.c:89 > save_stage = 2 > act = {__sigaction_handler = {sa_handler = 0x7ffff5a26de9 <sig_fault>, sa_sigaction = 0x7ffff5a26de9 <sig_fault>}, sa_mask = {__val = {32, 93824994660320, 93824994867408, 7163370350449812225, > 93824994867472, 0, 0, 0, 0, 1830839040, 93824994867408, 0, 0, 0, 0, 18446744069414584320}}, sa_flags = 335544320, sa_restorer = 0x7ffff71e5ff0 <__restore_rt>} > sigs = {__val = {32, 0 <repeats 15 times>}} >#2 0x00007ffff5a270e9 in smb_panic_default (why=0x7ffff757b620 "Bad talloc magic value - access after free") at ../lib/util/fault.c:149 > __FUNCTION__ = "smb_panic_default" >#3 0x00007ffff5a27127 in smb_panic (why=0x7ffff757b620 "Bad talloc magic value - access after free") at ../lib/util/fault.c:162 >No locals. >#4 0x00007ffff75771d2 in talloc_abort (reason=0x7ffff757b620 "Bad talloc magic value - access after free") at ../lib/talloc/talloc.c:341 >No locals. >#5 0x00007ffff757724e in talloc_abort_access_after_free () at ../lib/talloc/talloc.c:357 >No locals. >#6 0x00007ffff75772cb in talloc_chunk_from_ptr (ptr=0x5555557d71f0) at ../lib/talloc/talloc.c:378 > pp = 0x5555557d71f0 "talloc: access after free error - first free may be at ../source4/auth/kerberos/srv_keytab.c:318\n" > tc = 0x5555557d7190 >#7 0x00007ffff75787c6 in _talloc_steal_loc (new_ctx=0x5555557d4ac0, ptr=0x5555557d71f0, location=0x7fffed6bddf8 "../source4/auth/kerberos/srv_keytab.c:526") at ../lib/talloc/talloc.c:1072 > tc = 0x5555557d7930 >#8 0x00007fffed6b6d0e in smb_krb5_update_keytab (parent_ctx=0x5555557d4ac0, context=0x5555557d3930, keytab_name=0x5555557da690 "FILE:./private//etc/mail.keytab", samAccountName=0x5555557da040 "mail-z35", > realm=0x5555557d74c0 "KERNEVIL.LAN", SPNs=0x5555557da140, num_SPNs=6, saltPrincipal=0x0, new_secret=0x5555557dc830 "foobar", old_secret=0x0, kvno=1, supp_enctypes=31, delete_all_kvno=false, > _keytab=0x0, error_string=0x7fffffffe0f8) at ../source4/auth/kerberos/srv_keytab.c:526 > __talloc_steal_ret = 0x5555557dbc60 "/etc/mail.keytab" > keytab = 0x5555557d5690 > ret = 2 > found_previous = false > tmp_ctx = 0x5555557d6220 > principals = 0x5555557d6ae0 > __FUNCTION__ = "smb_krb5_update_keytab" >#9 0x00007fffe3c5b686 in update_kt_prepare_commit (module=0x5555557b04f0) at ../source4/dsdb/samdb/ldb_modules/update_keytab.c:432 > error_string = 0x5555557d71f0 "talloc: access after free error - first free may be at ../source4/auth/kerberos/srv_keytab.c:318\n" > realm = 0x5555557d74c0 "KERNEVIL.LAN" > SPNs = 0x5555557da140 > i = 6 > upper_realm = 0x5555557d3af0 "KERNEVIL.LAN" > spn_el = 0x5555557dbe60 > num_SPNs = 6 > ldb = 0x555555760ee0 > data = 0x555555780290 > p = 0x5555557d5c30 > smb_krb5_context = 0x5555557d2e60 > krb5_ret = 0 > tmp_ctx = 0x5555557d4ac0 >#10 0x00007ffff79aab72 in ldb_transaction_prepare_commit (ldb=0x555555760ee0) at ../lib/ldb/common/ldb.c:409 > module = 0x5555557b04f0 > status = 21845 >#11 0x00007ffff79aace1 in ldb_transaction_commit (ldb=0x555555760ee0) at ../lib/ldb/common/ldb.c:441 > module = 0x7ffff7ffe1c8 > status = 0 >#12 0x0000555555555b8e in merge_edits (ldb=0x555555760ee0, msgs1=0x5555557bcb40, count1=5, msgs2=0x5555557c1ca0, count2=5) at ../lib/ldb/tools/ldbedit.c:179 > i = 5 > msg = 0x5555557c5b70 > ret = 0 > adds = 0 > modifies = 1 > deletes = 0 > req_ctrls = 0x0 >#13 0x0000555555555fb5 in do_edit (ldb=0x555555760ee0, msgs1=0x5555557bcb40, count1=5, editor=0x7ffff7781a39 "vi") at ../lib/ldb/tools/ldbedit.c:303 > fd = 7 > ret = 0 > f = 0x5555557802a0 > file_template = "/tmp/ldbedit.TKFQQh" > cmd = 0x5555557b2430 "" > ldif = 0x0 > msgs2 = 0x5555557c1ca0 > count2 = 5 >#14 0x0000555555556294 in main (argc=3, argv=0x7fffffffe438) at ../lib/ldb/tools/ldbedit.c:368 > ldb = 0x555555760ee0 > result = 0x5555557b2680 > basedn = 0x0 > ret = 0 > expression = 0x555555556570 "(|(objectClass=*)(distinguishedName=*))" > attrs = 0x0 > mem_ctx = 0x555555758070 > req_ctrls = 0x0 >A debugging session is active. > > Inferior 1 [process 11574] will be killed. > >Quit anyway? (y or n)
You cannot view the attachment while viewing its details because your browser does not support IFRAMEs.
View the attachment on a separate page
.
View Attachment As Raw
Actions:
View
Attachments on
bug 10702
: 10086 |
10087