View Issue Details

IDProjectCategoryView StatusLast Update
0000823unrealircdpublic2003-11-20 19:46
Reporterprince Assigned Tosyzop  
PrioritynormalSeveritycrashReproducibilityhave not tried
Status closedResolutionfixed 
Product Version3.2-beta15 
Summary0000823: IRCd coredumps - unsure why perhaps this will tell you.
DescriptionCore was generated by `ircd'.
Program terminated with signal 11, Segmentation fault.
Reading symbols from /usr/lib/libssl.so.2...done.
Reading symbols from /usr/lib/libcrypto.so.2...done.
Reading symbols from /usr/lib/libcrypt.so.2...done.
Reading symbols from /usr/lib/libz.so.2...done.
Reading symbols from /usr/lib/libc_r.so.4...done.
Reading symbols from /home/zirc/Unreal3.2/src/modules/commands.so...done.
Reading symbols from /usr/libexec/ld-elf.so.1...done.
#0 ircvsprintf (
    str=0x8119e40 ":avalon.hub.us.zirc.org NOTICE dj4aces :*** OperOverride -- services.zirc.org (.tx.us.zirc.org: [email protected] ()\r\n", format=0xbfbfd636 "@%s) MODE %s %s %s", vl=0xbfbfda0c "#")
    at ircsprintf.c:289
289 if ((*str = *p1))
(gdb)
Steps To ReproduceTaken none.
Additional InformationIf any additional information is needed post a bugnote and I'll get right on it.
3rd party modules

Activities

codemastr

2003-04-07 22:01

reporter   ~0002167

Sorry for taking so long... do you have any idea how this gets caused? IE, did it just happen once, does it happen frequently? Also in that core file, after gdb loads type:

bt

That will make it output a bit more information.

prince

2003-04-08 03:41

reporter   ~0002177

(gdb) bt
#0 ircvsprintf (
    str=0x8119e40 ":avalon.hub.us.zirc.org NOTICE dj4aces :*** OperOverride -- services.zirc.org (.tx.us.zirc.org: [email protected] ()\r\n", format=0xbfbfd636 "@%s) MODE %s %s %s", vl=0xbfbfda0c "#")
    at ircsprintf.c:289
#1 0x80893c9 in vsendto_one (to=0x8257800,
    pattern=0xbfbfd5f4 ":avalon.hub.us.zirc.org NOTICE dj4aces :*** OperOverride -- %s (%s@%s) MODE %s %s %s",
    vl=0xbfbfda04 ")Ð\031\b\030") at send.c:239
#2 0x808a69d in sendto_snomask (snomask=64, pattern=0x808eea0 "*** OperOverride -- %s (%s@%s) MODE %s %s %s")
    at send.c:1239
#3 0x805595d in set_mode (chptr=0x8262b00, cptr=0x819d000, parc=2, parv=0x813a584, pcount=0xbfbfdb24,
    pvar=0xbfbfef90, bounce=0) at channel.c:2307
#4 0x805c3d2 in m_sjoin (cptr=0x819d000, sptr=0x819d000, parc=6, parv=0x8112600) at channel.c:4977
#5 0x8066806 in parse (cptr=0x819d000, buffer=0x819d0e4 ":services.zirc.org SJOIN", bufend=0x819d126 "")
    at parse.c:444
#6 0x80654b4 in dopacket (cptr=0x819d000,
    buffer=0x8112fa0 ":services.zirc.org SJOIN 1047698107 #st_mikes +o BrandonFerguson :\r\negacy.net/void/ccwelcome.jpg) Winston rules!\r\nIFY \037password\037\002. Otherwise, please choose a different nickname.\r\n:services.zirc.org S"..., length=68) at packet.c:137
#7 0x806b797 in read_packet (cptr=0x819d000, rfd=0xbfbffaa4) at s_bsd.c:1430
0000008 0x806c022 in read_message (delay=0, listp=0x813b1a0) at s_bsd.c:1905
#9 0x8062fcd in main (argc=1, argv=0xbfbffbd8) at ircd.c:1335
(gdb)


If you need anything else, please ask :) And no, I've got absolutely no idea what caused it, I wasn't online when it occured. However it looks somewhat like an oper used mode override but *shrug* as I said I wasn't online..

prince

2003-04-08 03:47

reporter   ~0002178

Oh, and yes, it has only happened once so far.

syzop

2003-04-10 13:02

administrator   ~0002204

This mantis thing is fucking things up ;P.

syzop

2003-04-10 13:09

administrator   ~0002205

Last edited: 2003-04-10 13:11

Can you open the core file in gdb again and do:
frame 3
p *cptr

Looks to me like a service is using opermode... huh? (and cptr->user is null then...)

Huh.. now 1 minute later, I'm even more confused, but do it anyway ;)

edited on: 04-10-03 13:11

prince

2003-04-10 16:29

reporter   ~0002224

(gdb) frame 3
#3 0x805595d in set_mode (chptr=0x8262b00, cptr=0x819d000, parc=2, parv=0x813a584, pcount=0xbfbfdb24,
    pvar=0xbfbfef90, bounce=0) at channel.c:2307
2307 sendto_snomask(SNO_EYES, "*** OperOverride -- %s (%s@%s) MODE %s %s %s",
(gdb) p *cptr
$1 = {next = 0x813abc0, prev = 0x818f500, hnext = 0x813abc0, user = 0x0, serv = 0x8183380, lastnick = 1047632659,
  flags = -2147155840, umodes = 0, from = 0x819d000, fd = 6, hopcount = 1 '\001',
  name = "services.zirc.org", '\000' <repeats 46 times>, username = "unknown\000\000\000",
  info = "Services for ZiRC", '\000' <repeats 33 times>, srvptr = 0x813abc0, status = 0, count = 0, oflag = 0,
  since = 1047911409, firsttime = 1047632659, lasttime = 1047911409, last = 1047907449, nexttarget = 0,
  nextnick = 0, targets = '\000' <repeats 19 times>,
  buffer = ":services.zirc.org SJOIN\0001047698107\000#st_mikes\000+o\000BrandonFerguson\000:\000legacy.net/void/ccwelcome.jpg) Winston rules!\000TIFY \037password\037\002. Otherwise, please choose a different nickname.\000read.php?s=&threadid="..., lastsq = 0, sendQ = {length = 0, offset = 0, head = 0x0, tail = 0x0}, recvQ = {length = 0,
    offset = 0, head = 0x0, tail = 0x0}, proto = 1855, sendM = 176129, sendK = 10720, receiveM = 151846, zip = 0x0,
  ssl = 0x0, lastrecvM = 0, priority = 0, receiveK = 12560, sendB = 599, receiveB = 254, listener = 0x813abc0,
  class = 0x81c2240, authfd = -1, slot = 2, ip = {s_addr = 1631317823}, port = 1162, hostp = 0x0, watches = 0,
  watch = 0x0, sockhost = "63.239.59.97", '\000' <repeats 51 times>, passwd = 0x0, error_str = 0x0}

syzop

2003-04-10 18:02

administrator   ~0002225

I think I found it. Now fixed in CVS (.1712).
Crash:
- opermode
- server uses SJOIN with +o etc
No crash:
- opermode
- ANY user uses MODE (which is pretty likely on a big network :P)
- server uses SJOIN with +o etc

This is all in theory, but I'm pretty sure about it ;).

Issue History

Date Modified Username Field Change
2003-04-10 13:02 syzop Note Added: 0002204
2003-04-10 13:09 syzop Note Added: 0002205
2003-04-10 13:11 syzop Note Edited: 0002205
2003-04-10 16:29 prince Note Added: 0002224
2003-04-10 18:02 syzop Note Added: 0002225
2003-04-10 18:04 syzop Status new => resolved
2003-04-10 18:04 syzop Resolution open => fixed
2003-04-10 18:04 syzop Assigned To => syzop
2003-11-20 19:46 syzop Status resolved => closed