Re: Mem corruption due to race? (Was: [BUG] : crash (perhaps gpg related))



Am 09.12.03 18:35 schrieb(en) manu:
> You just have to rapidly select a OpenPGP signed message and another one  
> back and forth (you just have to be quick enough, hmm I guess nicing  
> balsa can help a bit here). Then it will segfault with a short trace

I can confirm that there is a problem with a double-free when handling  
OpenPGP (RFC2440) messages. I could reproduce it when running balsa with  
nice -10 and compiling gcc 3.3.2 in parallel...

[albrecht@antares balsa-rfc3156]$ MALLOC_CHECK_=1 nice -10 src/balsa
[...]
free(): invalid pointer 0x10c22e58!

I'll try to track that down asap. Sorry for the chaos!!!

Cheers, Albrecht.

-- 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 Albrecht Dreß  -  Johanna-Kirchner-Straße 13  -  D-53123 Bonn (Germany)
       Phone (+49) 228 6199571  -  mailto:albrecht.dress@arcor.de
_________________________________________________________________________

PGP signature



[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]