The Samba-Bugzilla – Attachment 6726 Details for
Bug 8334
smb2: smbd logs Invalid SMB packet: first request: 0x0008 and crashes
Home
|
New
|
Browse
|
Search
|
[?]
|
Reports
|
Requests
|
Help
|
New Account
|
Log In
[x]
|
Forgot Password
Login:
[x]
backtrace full
backtrace.txt (text/plain), 6.56 KB, created by
Christian Ambach
on 2011-07-28 16:39:27 UTC
(
hide
)
Description:
backtrace full
Filename:
MIME Type:
Creator:
Christian Ambach
Created:
2011-07-28 16:39:27 UTC
Size:
6.56 KB
patch
obsolete
>#0 0x00007fb85c3199a5 in raise () from /lib64/libc.so.6 >No symbol table info available. >#1 0x00007fb85c31b185 in abort () from /lib64/libc.so.6 >No symbol table info available. >#2 0x00007fb85f2f67a1 in dump_core () at lib/fault.c:391 > called = true > __FUNCTION__ = "dump_core" >#3 0x00007fb85f305bb9 in smb_panic (why=<value optimized out>) at lib/util.c:1132 > cmd = <value optimized out> > result = <value optimized out> > __FUNCTION__ = "smb_panic" >#4 0x00007fb85f2f6c24 in fault_report (sig=11) at lib/fault.c:53 > counter = 1 >#5 sig_fault (sig=11) at lib/fault.c:76 >No locals. >#6 <signal handler called> >No symbol table info available. >#7 sub_remove (idp=0x7fb85fbce6c0, id=43246) at ../lib/util/idtree.c:258 > p = 0x2f37302f31313032 > pa = {0x0, 0x7fb85fbce6c0, 0x7fb85fbb4060, 0x7fb85cc9bd93, 0xa, 0x7fb85fbcb990, 0x7fb85f78645e, 0x7fb85fbcb940} > paa = 0x7fff21789aa8 > n = 14 >#8 _idr_remove (idp=0x7fb85fbce6c0, id=43246) at ../lib/util/idtree.c:305 > p = <value optimized out> >#9 idr_remove (idp=0x7fb85fbce6c0, id=43246) at ../lib/util/idtree.c:404 > ret = <value optimized out> > __FUNCTION__ = "idr_remove" >#10 0x00007fb85f073939 in smbd_smb2_session_destructor (session=0x7fb85fbcb990) at smbd/smb2_sesssetup.c:141 >No locals. >#11 0x00007fb85cc9bfe5 in _talloc_free_internal (ptr=0x7fb85fbcb990, location=0x7fb85f78645e "smbd/server_exit.c:160") at ../lib/talloc/talloc.c:826 > d = 0x7fb85f0738f0 <smbd_smb2_session_destructor> > tc = 0x7fb85fbcb940 >#12 0x00007fb85cc9bd93 in _talloc_free_children_internal (ptr=0x7fb85fbb5580, location=0x7fb85f78645e "smbd/server_exit.c:160") at ../lib/talloc/talloc.c:1268 > child = 0x7fb85fbcb990 > new_parent = <value optimized out> > old_parent = 0x7fb85fbb5470 >#13 _talloc_free_internal (ptr=0x7fb85fbb5580, location=0x7fb85f78645e "smbd/server_exit.c:160") at ../lib/talloc/talloc.c:845 > tc = 0x7fb85fbb5530 >#14 0x00007fb85f57a10d in exit_server_common (how=SERVER_EXIT_NORMAL, reason=0x7fb85f5c2b00 "NT_STATUS_INVALID_PARAMETER") at smbd/server_exit.c:160 > had_open_conn = false > sconn = 0x0 > __FUNCTION__ = "exit_server_common" >#15 0x00007fb85f57a3ce in exit_server_cleanly (explanation=0xe7140a1d <Address 0xe7140a1d out of bounds>) at smbd/server_exit.c:205 >No locals. >#16 0x00007fb85f071dfb in smbd_server_connection_terminate_ex (sconn=<value optimized out>, reason=0x7fb85f5c2b00 "NT_STATUS_INVALID_PARAMETER", > location=0x7fb85f5a9309 "smbd/smb2_server.c:2308") at smbd/smb2_server.c:583 > __FUNCTION__ = "smbd_server_connection_terminate_ex" >#17 0x00007fb85f05debe in process_smb (sconn=0x7fb85fbb5580, inbuf=0x7fb85fbf5650 "", nread=117, unread_bytes=0, seqnum=<value optimized out>, encrypted=false, > deferred_pcd=0x0) at smbd/process.c:1675 > msg_type = 0 > __FUNCTION__ = "process_smb" >#18 0x00007fb85f05e095 in smbd_server_connection_read_handler (conn=0x7fb85fbb5580, fd=15) at smbd/process.c:2307 > inbuf = 0x7fb85fbf5650 "" > inbuf_len = 117 > unread_bytes = 0 > encrypted = <value optimized out> > mem_ctx = 0x7fb85fbf55f0 > status = <value optimized out> > seqnum = 0 > from_client = false > __FUNCTION__ = "smbd_server_connection_read_handler" >#19 0x00007fb85f314d8b in run_events_poll (ev=0x7fb85fbb54c0, pollrtn=<value optimized out>, pfds=0x7fb85fbde9d0, num_pfds=5) at lib/events.c:282 > pfd = <value optimized out> > flags = <value optimized out> > state = <value optimized out> > pollfd_idx = 0x7fb85fbe26e0 > fde = 0x7fb85fbc5690 > now = {tv_sec = 1311868317, tv_usec = 259815} > __FUNCTION__ = "run_events_poll" >#20 0x00007fb85f05bc0d in smbd_server_connection_loop_once (sconn=0x7fb85fbb5580) at smbd/process.c:1016 > timeout = 32321 > num_pfds = 5 > ret = 2 > retry = <value optimized out> >#21 smbd_process (sconn=0x7fb85fbb5580) at smbd/process.c:3148 > status = <value optimized out> > frame = 0x7fb85fbf55f0 > ss = {ss_family = 2, __ss_align = 0, > __ss_padding = "`@\273_\270\177\000\000\260\247\274_\270\177\000\000`@\273_\270\177\000\000\031\276\311\\\270\177\000\000`\020\274_\270\177", '\000' <repeats 19 times>, "\026\274_\270\177\000\000\001\000\000\000\000\000\000\000\063\000\000\000\000\000\000\000`p\275_\270\177\000\000\300g\273_\270\177\000\000\001\000\000\000\000\000\000\000\251\222._\270\177\000"} > sa = 0x7fff21789f30 > sa_socklen = <value optimized out> > local_address = 0x7fb85fbc1320 > remote_address = 0x7fb85fbc12b0 > remaddr = <value optimized out> > ret = <value optimized out> > __FUNCTION__ = "smbd_process" >#22 0x00007fb85f57871f in smbd_accept_connection (ev=<value optimized out>, fde=<value optimized out>, flags=<value optimized out>, > private_data=<value optimized out>) at smbd/server.c:505 > status = <value optimized out> > s = 0x0 > addr = {ss_family = 2, __ss_align = 0, > __ss_padding = "\300g\273_\270\177\000\000\272\327\067\\\270\177\000\000Ð x!\377\177\000\000QZ-_\270\177\000\000\a\003o_\270\177\000\000\020\020\274_\270\17-7\000\000;\000\000\000\000\000\000\000XA\017\000\000\000\000\000i\205\061N\000\000\000\000\330g\273_\270\177\000\000\300g\273_\270\177\000\000jQ1_\270\177\000\000H~\273_\270\177\000\000\300T\273_\270\177\000"} > in_addrlen = 16 > fd = <value optimized out> > pid = 0 > unique_id = 10616618321240766375 > __FUNCTION__ = "smbd_accept_connection" >#23 0x00007fb85f314d8b in run_events_poll (ev=0x7fb85fbb54c0, pollrtn=<value optimized out>, pfds=0x7fb85fbb67c0, num_pfds=4) at lib/events.c:282 > pfd = <value optimized out> > flags = <value optimized out> > state = <value optimized out> > pollfd_idx = 0x7fb85fbd7060 > fde = 0x7fb85fbc10e0 > now = {tv_sec = 1311868289, tv_usec = 570895} > __FUNCTION__ = "run_events_poll" >#24 0x00007fb85f31526f in s3_event_loop_once (ev=0x7fb85fbb54c0, location=<value optimized out>) at lib/events.c:345 > state = 0x7fb85fbb7e40 > timeout = 60000 > num_pfds = 4 > ret = 1 >#25 0x00007fb85f3155f0 in _tevent_loop_once (ev=0x7fb85fbb54c0, location=0x7fb85f785b14 "smbd/server.c:838") at ../lib/tevent/tevent.c:494 > ret = <value optimized out> > nesting_stack_ptr = 0x0 >#26 0x00007fb85f579acb in smbd_parent_loop (argc=<value optimized out>, argv=0x7fb85fbdab00) at smbd/server.c:838 > ret = <value optimized out> > frame = 0x7fb85fbb7fd0 >#27 main (argc=<value optimized out>, argv=0x7fb85fbdab00) at smbd/server.c:1320 >
You cannot view the attachment while viewing its details because your browser does not support IFRAMEs.
View the attachment on a separate page
.
View Attachment As Raw
Actions:
View
Attachments on
bug 8334
: 6726 |
6729
|
6844
|
6850