PHP  
 PHP_5_4
downloads | QA | documentation | faq | getting help | mailing lists | reporting bugs | php.net sites | links | my php.net 
 

Valgrind Report for ext/interbase/tests/bug45575.phpt ('Bug #45575 (Segfault with invalid non-string as event handler callback)')

Script

1: <?php
2:
3:
require("interbase.inc");
4:
5:
$db ibase_connect($test_base);
6:
7: function 
foobar($var) { var_dump($var); return true; }
8:
9:
ibase_set_event_handler($dbnull'TEST1');
10:
ibase_set_event_handler($db1'TEST1');
11:
ibase_set_event_handler('foobar''TEST1');
12:
13:
?>
14:

Report

==31930== Invalid read of size 8
==31930==    at 0x77E790: _php_ibase_event_block (ibase_events.c:106)
==31930==    by 0x7801F2: zif_ibase_set_event_handler (ibase_events.c:354)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930==  Address 0x14e405c0 is 0 bytes after a block of size 32 alloc'd
==31930==    at 0x4C27AFA: malloc (vg_replace_malloc.c:291)
==31930==    by 0xD37F95: _emalloc (zend_alloc.c:2423)
==31930==    by 0x77FDBD: zif_ibase_set_event_handler (ibase_events.c:343)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930== 
==31930== Invalid read of size 8
==31930==    at 0x77E7E4: _php_ibase_event_block (ibase_events.c:106)
==31930==    by 0x7801F2: zif_ibase_set_event_handler (ibase_events.c:354)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930==  Address 0x14e40598 is 8 bytes before a block of size 32 alloc'd
==31930==    at 0x4C27AFA: malloc (vg_replace_malloc.c:291)
==31930==    by 0xD37F95: _emalloc (zend_alloc.c:2423)
==31930==    by 0x77FDBD: zif_ibase_set_event_handler (ibase_events.c:343)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930== 
==31930== Invalid read of size 8
==31930==    at 0x77E7F2: _php_ibase_event_block (ibase_events.c:106)
==31930==    by 0x7801F2: zif_ibase_set_event_handler (ibase_events.c:354)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930==  Address 0x14e40590 is 16 bytes before a block of size 32 alloc'd
==31930==    at 0x4C27AFA: malloc (vg_replace_malloc.c:291)
==31930==    by 0xD37F95: _emalloc (zend_alloc.c:2423)
==31930==    by 0x77FDBD: zif_ibase_set_event_handler (ibase_events.c:343)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930== 
==31930== Invalid read of size 8
==31930==    at 0x77E800: _php_ibase_event_block (ibase_events.c:106)
==31930==    by 0x7801F2: zif_ibase_set_event_handler (ibase_events.c:354)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930==  Address 0x14e40588 is 24 bytes before a block of size 32 alloc'd
==31930==    at 0x4C27AFA: malloc (vg_replace_malloc.c:291)
==31930==    by 0xD37F95: _emalloc (zend_alloc.c:2423)
==31930==    by 0x77FDBD: zif_ibase_set_event_handler (ibase_events.c:343)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930== 
==31930== Invalid read of size 8
==31930==    at 0x77E80E: _php_ibase_event_block (ibase_events.c:106)
==31930==    by 0x7801F2: zif_ibase_set_event_handler (ibase_events.c:354)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930==  Address 0x14e40580 is not stack'd, malloc'd or (recently) free'd
==31930== 
==31930== Invalid read of size 8
==31930==    at 0x77E81C: _php_ibase_event_block (ibase_events.c:106)
==31930==    by 0x7801F2: zif_ibase_set_event_handler (ibase_events.c:354)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930==  Address 0x14e40578 is not stack'd, malloc'd or (recently) free'd
==31930== 
==31930== Invalid read of size 8
==31930==    at 0x77E82A: _php_ibase_event_block (ibase_events.c:106)
==31930==    by 0x7801F2: zif_ibase_set_event_handler (ibase_events.c:354)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930==  Address 0x14e40570 is not stack'd, malloc'd or (recently) free'd
==31930== 
==31930== Invalid read of size 8
==31930==    at 0x77E838: _php_ibase_event_block (ibase_events.c:106)
==31930==    by 0x7801F2: zif_ibase_set_event_handler (ibase_events.c:354)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930==  Address 0x14e40568 is 16 bytes after a block of size 8 alloc'd
==31930==    at 0x4C27AFA: malloc (vg_replace_malloc.c:291)
==31930==    by 0xD37F95: _emalloc (zend_alloc.c:2423)
==31930==    by 0xD3828D: _safe_emalloc (zend_alloc.c:2539)
==31930==    by 0x77FD93: zif_ibase_set_event_handler (ibase_events.c:341)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930== 
==31930== Invalid read of size 8
==31930==    at 0x77E846: _php_ibase_event_block (ibase_events.c:106)
==31930==    by 0x7801F2: zif_ibase_set_event_handler (ibase_events.c:354)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930==  Address 0x14e40560 is 8 bytes after a block of size 8 alloc'd
==31930==    at 0x4C27AFA: malloc (vg_replace_malloc.c:291)
==31930==    by 0xD37F95: _emalloc (zend_alloc.c:2423)
==31930==    by 0xD3828D: _safe_emalloc (zend_alloc.c:2539)
==31930==    by 0x77FD93: zif_ibase_set_event_handler (ibase_events.c:341)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930== 
==31930== Invalid read of size 8
==31930==    at 0x77E85B: _php_ibase_event_block (ibase_events.c:106)
==31930==    by 0x7801F2: zif_ibase_set_event_handler (ibase_events.c:354)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930==  Address 0x14e40558 is 0 bytes after a block of size 8 alloc'd
==31930==    at 0x4C27AFA: malloc (vg_replace_malloc.c:291)
==31930==    by 0xD37F95: _emalloc (zend_alloc.c:2423)
==31930==    by 0xD3828D: _safe_emalloc (zend_alloc.c:2539)
==31930==    by 0x77FD93: zif_ibase_set_event_handler (ibase_events.c:341)
==31930==    by 0xDE343B: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:643)
==31930==    by 0xDED5DB: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2233)
==31930==    by 0xDE1597: execute (zend_vm_execute.h:410)
==31930==    by 0xD85544: zend_execute_scripts (zend.c:1315)
==31930==    by 0xCB7791: php_execute_script (main.c:2502)
==31930==    by 0xF53688: do_cli (php_cli.c:989)
==31930==    by 0xF54CC5: main (php_cli.c:1365)
==31930== 

 

Generated at Fri, 24 Oct 2014 05:22:02 +0000 (47 hours ago)

Copyright © 2005-2014 The PHP Group
All rights reserved.