php.net |  support |  documentation |  report a bug |  advanced search |  search howto |  statistics |  random bug |  login
Bug #68847 Linux oms30 3.2.0-4-amd64 #1 SMP Debian 3.2.65-1 x86_64 GNU/Linux
Submitted: 2015-01-16 16:52 UTC Modified: 2015-01-25 04:22 UTC
Votes:2
Avg. Score:4.0 ± 0.0
Reproduced:2 of 2 (100.0%)
Same Version:1 (50.0%)
Same OS:1 (50.0%)
From: av at nwtel dot ru Assigned:
Status: No Feedback Package: Reproducible crash
PHP Version: 5.4.36 OS: Linux oms30 3.2.0-4-amd64 #1 SMP
Private report: No CVE-ID: None
Have you experienced this issue?
Rate the importance of this bug to you:

 [2015-01-16 16:52 UTC] av at nwtel dot ru
Description:
------------
https://drive.google.com/a/nwtel.ru/file/d/0B2aSOHXQZKLCWkF4MGktY1dNTmc/view?usp=sharing

At link above you may found our coredump for this kind error: "[Fri Jan 16 09:38:03 2015] php5-fpm[19621]: segfault at 0 ip 00000000005388e6 sp 00007fffa9569230 error 4 in php5-fpm[400000+75a000]"

Some tech info

# php -v
PHP 5.4.36-0+deb7u3 (cli) (built: Jan  9 2015 08:07:06)
Copyright (c) 1997-2014 The PHP Group
Zend Engine v2.4.0, Copyright (c) 1998-2014 Zend Technologies
    with the ionCube PHP Loader v4.6.1, Copyright (c) 2002-2014, by ionCube Ltd.


# gdb /usr/sbin/php5-fpm /tmp/core-php5-fpm.19621
GNU gdb (GDB) 7.4.1-debian
Copyright (C) 2012 Free Software Foundation, Inc.
License GPLv3+: GNU GPL version 3 or later <http://gnu.org/licenses/gpl.html>
This is free software: you are free to change and redistribute it.
There is NO WARRANTY, to the extent permitted by law.  Type "show copying"
and "show warranty" for details.
This GDB was configured as "x86_64-linux-gnu".
For bug reporting instructions, please see:
<http://www.gnu.org/software/gdb/bugs/>...
Reading symbols from /usr/sbin/php5-fpm...Reading symbols from /usr/lib/debug/usr/sbin/php5-fpm...done.
done.
[New LWP 19621]

warning: Can't read pathname for load map: Input/output error.
[Thread debugging using libthread_db enabled]
Using host libthread_db library "/lib/x86_64-linux-gnu/libthread_db.so.1".
Core was generated by `php-fpm: pool www                                         '.
Program terminated with signal 11, Segmentation fault.
#0  0x00000000005388e6 in zim_reflection_parameter_getDefaultValue (ht=2, return_value=0x0, return_value_ptr=0x359e8a8, this_ptr=0x359e918, return_value_used=1) at /tmp/buildd/php5-5.4.36/ext/reflection/php_reflection.c:2594
2594            *return_value = *precv->op2.zv;
(gdb) bt
#0  0x00000000005388e6 in zim_reflection_parameter_getDefaultValue (ht=2, return_value=0x0, return_value_ptr=0x359e8a8, this_ptr=0x359e918, return_value_used=1) at /tmp/buildd/php5-5.4.36/ext/reflection/php_reflection.c:2594
#1  0x000000000074e4f1 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff509752ea8) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:643
#2  0x0000000000707ea7 in execute (op_array=0x425f678) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#3  0x00000000006982e0 in zend_call_function (fci=0x7fffa95694f0, fci_cache=0x0) at /tmp/buildd/php5-5.4.36/Zend/zend_execute_API.c:956
#4  0x00000000005cb694 in zif_call_user_func (ht=2, return_value=0x3567cc8, return_value_ptr=0x359e8a8, this_ptr=0x1, return_value_used=1) at /tmp/buildd/php5-5.4.36/ext/standard/basic_functions.c:4729
#5  0x000000000074e4f1 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff509752540) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:643
#6  0x0000000000707ea7 in execute (op_array=0x42502d8) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#7  0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff509751e08) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#8  0x0000000000707ea7 in execute (op_array=0x4248d48) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#9  0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff5097519e8) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#10 0x0000000000707ea7 in execute (op_array=0x423df70) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#11 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff50974e240) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#12 0x0000000000707ea7 in execute (op_array=0x420e6c8) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#13 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff50974d600) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#14 0x0000000000707ea7 in execute (op_array=0x34fe9b8) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#15 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff50974d320) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#16 0x0000000000707ea7 in execute (op_array=0x34ff210) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#17 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff50974d108) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#18 0x0000000000707ea7 in execute (op_array=0x3506820) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#19 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff50974cac8) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#20 0x0000000000707ea7 in execute (op_array=0x432c440) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#21 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff50974be08) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#22 0x0000000000707ea7 in execute (op_array=0x40942e0) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#23 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff50974bca0) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#24 0x0000000000707ea7 in execute (op_array=0x430ac50) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#25 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff50974b200) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#26 0x0000000000707ea7 in execute (op_array=0x340a640) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#27 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff50974afd0) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#28 0x0000000000707ea7 in execute (op_array=0x340bfe8) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#29 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff50974a940) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#30 0x0000000000707ea7 in execute (op_array=0x343f570) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#31 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff509749f70) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#32 0x0000000000707ea7 in execute (op_array=0x343fba8) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#33 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff509749b70) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#34 0x0000000000707ea7 in execute (op_array=0x3407260) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#35 0x00000000006982e0 in zend_call_function (fci=0x7fffa956a6d0, fci_cache=0x0) at /tmp/buildd/php5-5.4.36/Zend/zend_execute_API.c:956
#36 0x00000000005cb694 in zif_call_user_func (ht=2, return_value=0x3318638, return_value_ptr=0x359e8a8, this_ptr=0x1, return_value_used=1) at /tmp/buildd/php5-5.4.36/ext/standard/basic_functions.c:4729
#37 0x000000000074e4f1 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff5097499b8) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:643
#38 0x0000000000707ea7 in execute (op_array=0x33d7e58) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#39 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff509749698) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#40 0x0000000000707ea7 in execute (op_array=0x33ca2b8) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#41 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff509748bd0) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#42 0x0000000000707ea7 in execute (op_array=0x331a9d8) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#43 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff509748a28) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#44 0x0000000000707ea7 in execute (op_array=0x331b140) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#45 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff5097485f8) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#46 0x0000000000707ea7 in execute (op_array=0x3e9f290) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#47 0x000000000074eb14 in zend_do_fcall_common_helper_SPEC (execute_data=0x7ff5097483d8) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:673
#48 0x0000000000707ea7 in execute (op_array=0x3e9e4a0) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
#49 0x00007ff5057f8f6f in ?? () from /usr/lib/php5/20100525/ioncube_loader_lin_5.4.so
#50 0x00007ff5057f2a4b in ?? () from /usr/lib/php5/20100525/ioncube_loader_lin_5.4.so
#51 0x00007ff5057f5739 in ?? () from /usr/lib/php5/20100525/ioncube_loader_lin_5.4.so
#52 0x00000000006a6d4c in zend_execute_scripts (type=158861328, retval=0x300000008, file_count=32757) at /tmp/buildd/php5-5.4.36/Zend/zend.c:1329
#53 0x00000000006466c3 in php_execute_script (primary_file=0x3ff0) at /tmp/buildd/php5-5.4.36/main/main.c:2502
#54 0x000000000043258a in main (argc=0, argv=0xe1fc60) at /tmp/buildd/php5-5.4.36/sapi/fpm/fpm/fpm_main.c:1938
(gdb) frame 2
#2  0x0000000000707ea7 in execute (op_array=0x425f678) at /tmp/buildd/php5-5.4.36/Zend/zend_vm_execute.h:410
410                     if ((ret = OPLINE->handler(execute_data TSRMLS_CC)) > 0) {
(gdb)








Patches

Add a Patch

Pull Requests

Add a Pull Request

History

AllCommentsChangesGit/SVN commitsRelated reports
 [2015-01-16 19:29 UTC] aharvey@php.net
-Status: Open +Status: Feedback -Package: phpdbg +Package: Reproducible crash
 [2015-01-16 19:29 UTC] aharvey@php.net
Does the segfault still occur without ionCube? If so, can you provide a PHP script that reliably crashes PHP?
 [2015-01-25 04:22 UTC] php-bugs at lists dot php dot net
No feedback was provided. The bug is being suspended because
we assume that you are no longer experiencing the problem.
If this is not the case and you are able to provide the
information that was requested earlier, please do so and
change the status of the bug back to "Re-Opened". Thank you.
 
PHP Copyright © 2001-2024 The PHP Group
All rights reserved.
Last updated: Fri Apr 26 19:01:29 2024 UTC