php.net |  support |  documentation |  report a bug |  advanced search |  search howto |  statistics |  random bug |  login
Bug #18301 crash in ./zend_execute.c:1598
Submitted: 2002-07-12 06:23 UTC Modified: 2002-08-13 22:22 UTC
From: pailloncy at ifrance dot com Assigned:
Status: Closed Package: Reproducible crash
PHP Version: 4.3.0-dev OS: Solaris 2.5.1
Private report: No CVE-ID: None
 [2002-07-12 06:23 UTC] pailloncy at ifrance dot com
One of my script crashs all the time whatever the config I 
use.
I set up php to log, display any error (except warning) : 
nothing is log.
I update to the most recent software (apache, php, mysql) : 
always crash.
I try to disable most of the apache module : always crash.

So I download gdb (GNU gdb 5.2) and I run apache in 
non-fork mode, and here is the report:



OS Version :
# uname -a
SunOS gdr-isis 5.5.1 Generic_103640-35 sun4m sparc 
SUNW,SPARCstation-20



version :
apache_1.3.26
php-4.2.1
mysql-3.23.51



php info :
PHP Version 4.2.1
System	SunOS gdr-isis 5.5.1 Generic_103640-35 sun4m sparc 
SUNW,SPARCstation-20
Build Date	Jul 10 2002 14:02:44
Configure Command	'./configure' '--prefix=/tdsi2/php4' 
'--enable-calendar' '--enable-inline-optimization' 
'--with-apxs=/tdsi2/apache/bin/apxs' '--enable-trans-sid' 
'--enable-track-vars' '--with-pgsql=/tdsi2/pgsql' 
'--with-zlib' '--with-mysql=/tdsi2/mysql' 
'--enable-memory-limit' '--enable-mbstring' '--enable-wddx' 
'--enable-debug' '--with-mnogosearch=/tdsi2/mnogosearch'
Server API	Apache
Virtual Directory Support	disabled
Configuration File (php.ini) Path	/tdsi2/php4/lib/php.ini
Debug Build	yes
Thread Safety	disabled
This program makes use of the Zend Scripting Language 
Engine:
Zend Engine v1.2.0, Copyright (c) 1998-2002 Zend 
Technologies



apache/logs/error_log :
[Fri Jul 12 11:01:36 2002] [notice] Apache/1.3.26 (Unix) 
mod_gzip/1.3.19.1a AuthMySQL/2.20 mod_perl/1.26 configured 
-- resuming normal operations
[Fri Jul 12 11:01:36 2002] [notice] Accept mutex: fcntl 
(Default: fcntl)
[Fri Jul 12 11:01:43 2002] [notice] child pid 3419 exit 
signal Segmentation Fault (11)



gdb output :
(gdb) run -X -F -f/tdsi2/apache/conf/httpd.conf
Starting program: /tdsi2/apache/bin/httpd -X -F 
-f/tdsi2/apache/conf/httpd.conf
[New LWP 1]
[New LWP 2]

Program received signal SIGSEGV, Segmentation fault.
0xef5824b4 in _mp_move () from /usr/lib/libmp.so.1
(gdb) backtrace
#0  0xef5824b4 in _mp_move () from /usr/lib/libmp.so.1
#1  0xef5822dc in pow () from /usr/lib/libmp.so.1
#2  0xee7e01ec in zif_round (ht=1, return_value=0x35d678, 
this_ptr=0x0, 
    return_value_used=1) at math.c:141
#3  0xee6b9820 in execute (op_array=0x1f8880) at 
./zend_execute.c:1598
#4  0xee6d2768 in zend_execute_scripts (type=8, retval=0x0, 
file_count=3) at zend.c:810
#5  0xee6eecd0 in php_execute_script 
(primary_file=0xeffff810) at main.c:1381
#6  0xee6e6e08 in apache_php_module_main (r=0x3558b0, 
display_source_mode=0)
    at sapi_apache.c:90
#7  0xee6e83e4 in send_php (r=0x3558b0, 
display_source_mode=0, 
    filename=0x356428 
"/web/nddesalut.org/site/ecrire/naviguer.php3") at 
mod_php4.c:575
#8  0xee6e8468 in send_parsed_php (r=0x3558b0) at 
mod_php4.c:590
#9  0x0001d490 in ap_invoke_handler ()
#10 0x0003176c in process_request_internal ()
#11 0x00031b0c in ap_process_request ()
#12 0x00028324 in child_main ()
#13 0x00028588 in make_child ()
#14 0x00028c78 in standalone_main ()
#15 0x00029648 in main ()
(gdb) 



Patches

Pull Requests

History

AllCommentsChangesGit/SVN commitsRelated reports
 [2002-07-12 06:54 UTC] sander@php.net
Can you provide a simple sample script that reproduces this problem?
 [2002-07-13 06:59 UTC] pailloncy at ifrance dot com
In the widely use phpMyadmin the following files crash :
- in the version 2.2.0 : db_details.php
- in the version 2.3.0rc2 : db_details_structure.php, 
tbl_properties_structure.php

and may be some other files.
 [2002-07-13 22:55 UTC] sniper@php.net
Try this snapshot:

http://snaps.php.net/php4-latest.tar.gz

 [2002-07-14 07:28 UTC] pailloncy at ifrance dot com
Test of http://snaps.php.net/php4-latest.tar.gz

#@&" of __eprintf in libgcc that is not configured, and 
apache refuse to start with error :
--------------------------------------------------
Syntax error on line 176 of /tdsi2/apache/conf/httpd.conf:
Cannot load /tdsi2/apache/libexec/libphp4.so into server: 
ld.so.1: /tdsi2/apache/bin/httpd: fatal: relocation error: 
file /tdsi2/apache/libexec/libphp4.so: symbol __eprintf: 
referenced symbol not found
/tdsi2/apache/bin/apachectl start: httpd could not be 
started
--------------------------------------------------

Add -lgcc to EXTRALIB is ok.

Otherwise, again 'child seg fault' : no fix.
 [2002-07-14 07:48 UTC] sniper@php.net
Can you provide a gdb backtrace of the crash when using 
the latest snapshot? 
 [2002-07-15 06:43 UTC] pailloncy at ifrance dot com
Test of http://snaps.php.net/php4-latest.tar.gz

#@&" of __eprintf in libgcc that is not configured, and 
apache refuse to start with error :
--------------------------------------------------
Syntax error on line 176 of /tdsi2/apache/conf/httpd.conf:
Cannot load /tdsi2/apache/libexec/libphp4.so into server: 
ld.so.1: /tdsi2/apache/bin/httpd: fatal: relocation error: 
file /tdsi2/apache/libexec/libphp4.so: symbol __eprintf: 
referenced symbol not found
/tdsi2/apache/bin/apachectl start: httpd could not be 
started
--------------------------------------------------

Add -lgcc to EXTRALIB is ok.

Otherwise, again 'child seg fault' : no fix.
 [2002-07-15 06:48 UTC] sniper@php.net
Thank you for this bug report. To properly diagnose the problem, we
need a backtrace to see what is happening behind the scenes. To
find out how to generate a backtrace, please read
http://bugs.php.net/bugs-generating-backtrace.php

Once you have generated a backtrace, please submit it to this bug
report and change the status back to "Open". Thank you for helping
us make PHP better.


 [2002-07-15 07:02 UTC] pailloncy at ifrance dot com
Sorry to have submit twice, the same info.
I hit reload on an old page.

Now, the backtrace:
#0  0xef5824b4 in _mp_move () from /usr/lib/libmp.so.1
#1  0xef5822dc in pow () from /usr/lib/libmp.so.1
#2  0xee7a1678 in zif_pow (ht=2, return_value=0x43a4b0, 
this_ptr=0x0, 
    return_value_used=1)
    at 
/tmpdsk/install/php/php4-200207140000/ext/standard/math.c:4
44
#3  0xee8a7cfc in execute (op_array=0x3b2a28)
    at 
/tmpdsk/install/php/php4-200207140000/Zend/zend_execute.c:1
587
#4  0xee8a7ffc in execute (op_array=0x379f60)
    at 
/tmpdsk/install/php/php4-200207140000/Zend/zend_execute.c:1
627
#5  0xee88d8e4 in zend_execute_scripts (type=8, retval=0x0, 
file_count=3)
    at 
/tmpdsk/install/php/php4-200207140000/Zend/zend.c:810
#6  0xee8382ac in php_execute_script 
(primary_file=0xeffff810)
    at 
/tmpdsk/install/php/php4-200207140000/main/main.c:1390
#7  0xee8ae9e4 in apache_php_module_main (r=0x3598b0, 
display_source_mode=0)
    at 
/tmpdsk/install/php/php4-200207140000/sapi/apache/sapi_apac
he.c:55
#8  0xee8b0004 in send_php (r=0x3598b0, 
display_source_mode=0, 
    filename=0x35a648 
"/web/www-isis.enst.fr/site/Admin/phpMyAdmin230rc2/db_detai
ls_structure.php")
    at 
/tmpdsk/install/php/php4-200207140000/sapi/apache/mod_php4.
c:550
#9  0xee8b0088 in send_parsed_php (r=0x3598b0)
    at 
/tmpdsk/install/php/php4-200207140000/sapi/apache/mod_php4.
c:565
#10 0x0001d490 in ap_invoke_handler ()
#11 0x0003176c in process_request_internal ()
#12 0x00031b0c in ap_process_request ()
#13 0x00028324 in child_main ()
#14 0x00028588 in make_child ()
#15 0x00028c78 in standalone_main ()
#16 0x00029648 in main ()
 [2002-07-15 20:17 UTC] sniper@php.net
This crash happens with some pow() code..try search
this specific script for the lines which use pow()
and try come up with a short script which causes the crash.

 [2002-07-16 05:32 UTC] pailloncy at ifrance dot com
<?php
error_log ("crash : pow(10, 1)",0);
echo "pow(10, 1) = ".pow(10, 1);
?>
 [2002-08-13 22:20 UTC] kalowsky@php.net
Thank you for taking the time to report a problem with PHP.
Unfortunately you are not using a current version of PHP -- 
the problem might already be fixed. Please download a new
PHP version from http://www.php.net/downloads.php

If you are able to reproduce the bug with one of the latest
versions of PHP, please change the PHP version on this bug report
to the version you tested and change the status back to "Open".
Again, thank you for your continued support of PHP.


 [2002-08-13 22:22 UTC] kalowsky@php.net
This bug has been fixed in CVS. You can grab a snapshot of the
CVS version at http://snaps.php.net/. In case this was a documentation 
problem, the fix will show up soon at http://www.php.net/manual/.
In case this was a PHP.net website problem, the change will show
up on the PHP.net site and on the mirror sites.
Thank you for the report, and for helping us make PHP better.

Ugh I got confused on bugs here sorry.  
 
PHP Copyright © 2001-2026 The PHP Group
All rights reserved.
Last updated: Tue Oct 06 21:00:01 2026 UTC