php.net |  support |  documentation |  report a bug |  advanced search |  search howto |  statistics |  random bug |  login
Bug #72871 stack overflow in zend_execute.c (?)
Submitted: 2016-08-17 19:51 UTC Modified: 2016-08-17 20:56 UTC
From: brian dot carpenter at gmail dot com Assigned:
Status: Duplicate Package: Reproducible crash
PHP Version: 5.6.24 OS: Debian 8
Private report: No CVE-ID: None
View Add Comment Developer Edit
Welcome! If you don't have a Git account, you can't do anything here.
You can add a comment by following this link or if you reported this bug, you can edit this bug over here.
(description)
Block user comment
Status: Assign to:
Package:
Bug Type:
Summary:
From: brian dot carpenter at gmail dot com
New email:
PHP Version: OS:

 

 [2016-08-17 19:51 UTC] brian dot carpenter at gmail dot com
Description:
------------
Fuzzing PHP 5.6.24 (x64) with American Fuzzy Lop, ASAN and libdislocator.so.

Test script:
---------------
<?php
class A{public static function __callStatic($e,$a){self::i();}}$b=A;$b::h()?>

Expected result:
----------------
No crash.

Actual result:
--------------
geeknik@debian:~/php-tmp/crashers/070816$ ./php stack_overflow_zend_mm_add_to_free
ASAN:SIGSEGV
=================================================================
==14395==ERROR: AddressSanitizer: stack-overflow on address 0x7ffe25de6fc8 (pc 0x0000004d4eea bp 0x7ffe25de7830 sp 0x7ffe25de6fd0 T0)
    #0 0x4d4ee9 in __asan_memset (/home/geeknik/php-5.6.24/sapi/cli/php+0x4d4ee9)
    #1 0x16a4c3b in i_create_execute_data_from_op_array /home/geeknik/php-5.6.24/Zend/zend_execute.c:1679:2
    #2 0x16a4c3b in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388
    #3 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #4 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #5 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #6 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #7 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #8 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #9 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #10 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #11 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #12 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #13 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #14 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #15 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #16 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #17 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #18 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #19 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #20 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #21 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #22 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #23 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #24 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #25 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #26 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #27 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #28 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #29 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #30 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #31 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #32 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #33 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #34 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #35 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #36 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #37 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #38 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #39 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #40 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #41 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #42 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #43 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #44 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #45 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #46 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #47 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #48 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #49 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #50 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #51 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #52 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #53 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #54 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #55 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #56 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #57 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #58 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #59 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #60 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #61 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #62 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #63 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #64 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #65 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #66 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #67 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #68 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #69 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #70 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #71 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #72 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #73 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #74 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #75 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #76 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #77 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #78 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #79 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #80 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #81 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #82 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #83 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #84 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #85 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #86 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #87 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #88 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #89 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #90 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #91 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #92 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #93 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #94 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #95 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #96 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #97 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #98 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #99 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #100 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #101 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #102 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #103 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #104 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #105 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #106 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #107 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #108 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #109 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #110 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #111 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #112 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #113 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #114 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #115 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #116 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #117 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #118 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #119 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #120 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #121 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #122 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #123 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #124 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #125 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #126 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #127 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #128 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #129 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #130 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #131 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #132 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #133 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #134 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #135 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #136 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #137 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #138 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #139 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #140 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #141 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #142 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #143 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #144 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #145 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #146 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #147 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #148 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #149 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #150 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #151 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #152 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #153 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #154 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #155 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #156 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #157 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #158 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #159 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #160 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #161 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #162 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #163 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #164 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #165 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #166 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #167 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #168 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #169 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #170 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #171 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #172 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #173 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #174 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #175 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #176 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #177 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #178 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #179 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #180 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #181 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #182 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #183 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #184 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #185 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #186 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #187 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #188 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #189 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #190 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #191 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #192 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #193 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #194 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #195 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #196 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #197 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #198 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #199 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #200 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #201 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #202 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #203 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #204 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #205 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #206 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #207 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #208 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #209 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #210 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #211 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #212 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #213 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #214 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #215 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #216 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #217 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #218 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #219 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #220 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #221 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #222 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #223 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #224 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #225 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #226 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #227 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #228 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #229 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #230 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #231 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #232 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #233 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #234 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #235 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #236 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #237 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #238 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #239 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #240 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #241 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #242 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #243 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #244 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #245 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9
    #246 0x16a332e in execute_ex /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:363:14
    #247 0x16a52da in zend_execute /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:388:2
    #248 0x15624f3 in zend_call_function /home/geeknik/php-5.6.24/Zend/zend_execute_API.c:829:4
    #249 0x16298ce in zend_call_method /home/geeknik/php-5.6.24/Zend/zend_interfaces.c:97:12
    #250 0x1689048 in zend_std_callstatic_user_call /home/geeknik/php-5.6.24/Zend/zend_object_handlers.c:1145:2
    #251 0x184edb0 in zend_do_fcall_common_helper_SPEC /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:558:5
    #252 0x173139f in ZEND_DO_FCALL_BY_NAME_SPEC_HANDLER /home/geeknik/php-5.6.24/Zend/zend_vm_execute.h:693:9

SUMMARY: AddressSanitizer: stack-overflow ??:0 __asan_memset
==14395==ABORTING

Patches

Add a Patch

Pull Requests

Add a Pull Request

History

AllCommentsChangesGit/SVN commitsRelated reports
 [2016-08-17 20:08 UTC] stas@php.net
-Type: Security +Type: Bug
 [2016-08-17 20:56 UTC] nikic@php.net
-Status: Open +Status: Duplicate
 [2016-08-17 20:56 UTC] nikic@php.net
Standard infinite recursion stack overflow. See e.g. bug #64196 for __clone(), though there's probably a bunch for various magic methods.
 [2016-08-17 21:12 UTC] brian dot carpenter at gmail dot com
Bug #72191 should probably be duped against bug #64196 as well.
 
PHP Copyright © 2001-2021 The PHP Group
All rights reserved.
Last updated: Sat Dec 04 13:03:34 2021 UTC