PHP  
 PHP_5_6
downloads | QA | documentation | faq | getting help | mailing lists | reporting bugs | php.net sites | links | my php.net 
 

Valgrind Report for Zend/tests/bug64896.phpt ('Bug #64896 (Segfault with gc_collect_cycles using unserialize on certain objects)')

Script

1: <?php
2: $bar 
NULL;
3: class 
bad
4:
{
5:     private 
$_private = array();
6:
7:     public function 
__construct()
8:     {
9:         
$this->_private[] = 'php';
10:     }
11:
12:     public function 
__destruct()
13:     {
14:         global 
$bar;
15:         
$bar $this;
16:     }
17: }
18:
19:
$foo = new stdclass;
20:
$foo->foo $foo;
21:
$foo->bad = new bad;
22:
23:
gc_disable();
24:
25:
unserialize(serialize($foo));
26:
gc_collect_cycles();
27:
var_dump($bar); 
28:
/*  will output:
29: object(bad)#4 (1) {
30:   ["_private":"bad":private]=>
31:   &UNKNOWN:0
32: }
33: */
34:
?>
35:

Report

==15609== Invalid read of size 1
==15609==    at 0xCB7936: php_var_dump (var.c:99)
==15609==    by 0xCB78AA: php_object_property_dump (var.c:82)
==15609==    by 0xEF3B0C: zend_hash_apply_with_arguments (zend_hash.c:701)
==15609==    by 0xCB81B7: php_var_dump (var.c:146)
==15609==    by 0xCB84E4: zif_var_dump (var.c:183)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609==    by 0xF429F3: execute_ex (zend_vm_execute.h:363)
==15609==    by 0xF435CC: zend_execute (zend_vm_execute.h:388)
==15609==    by 0xED85AB: zend_execute_scripts (zend.c:1341)
==15609==    by 0xDF8342: php_execute_script (main.c:2613)
==15609==    by 0x1089EDC: do_cli (php_cli.c:998)
==15609==  Address 0x15426244 is 20 bytes inside a block of size 32 free'd
==15609==    at 0x4C28BD4: free (vg_replace_malloc.c:529)
==15609==    by 0xE82635: _efree (zend_alloc.c:2437)
==15609==    by 0xF1A4AC: gc_collect_cycles (zend_gc.c:846)
==15609==    by 0xEF8EEA: zif_gc_collect_cycles (zend_builtin_functions.c:361)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609==    by 0xF429F3: execute_ex (zend_vm_execute.h:363)
==15609==    by 0xF435CC: zend_execute (zend_vm_execute.h:388)
==15609==    by 0xED85AB: zend_execute_scripts (zend.c:1341)
==15609==    by 0xDF8342: php_execute_script (main.c:2613)
==15609==    by 0x1089EDC: do_cli (php_cli.c:998)
==15609==    by 0x108B7C1: main (php_cli.c:1382)
==15609==  Block was alloc'd at
==15609==    at 0x4C291FA: malloc (vg_replace_malloc.c:298)
==15609==    by 0xE7DC06: __zend_malloc (zend_alloc.h:97)
==15609==    by 0xE82594: _emalloc (zend_alloc.c:2427)
==15609==    by 0xCE668E: process_nested_data (var_unserializer.re:367)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCE66EC: process_nested_data (var_unserializer.re:369)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCC83CF: zif_unserialize (var.c:964)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609== 
==15609== Invalid read of size 1
==15609==    at 0xCB7A16: zval_isref_p (zend.h:415)
==15609==    by 0xCB7A16: php_var_dump (var.c:104)
==15609==    by 0xCB78AA: php_object_property_dump (var.c:82)
==15609==    by 0xEF3B0C: zend_hash_apply_with_arguments (zend_hash.c:701)
==15609==    by 0xCB81B7: php_var_dump (var.c:146)
==15609==    by 0xCB84E4: zif_var_dump (var.c:183)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609==    by 0xF429F3: execute_ex (zend_vm_execute.h:363)
==15609==    by 0xF435CC: zend_execute (zend_vm_execute.h:388)
==15609==    by 0xED85AB: zend_execute_scripts (zend.c:1341)
==15609==    by 0xDF8342: php_execute_script (main.c:2613)
==15609==    by 0x1089EDC: do_cli (php_cli.c:998)
==15609==  Address 0x15426245 is 21 bytes inside a block of size 32 free'd
==15609==    at 0x4C28BD4: free (vg_replace_malloc.c:529)
==15609==    by 0xE82635: _efree (zend_alloc.c:2437)
==15609==    by 0xF1A4AC: gc_collect_cycles (zend_gc.c:846)
==15609==    by 0xEF8EEA: zif_gc_collect_cycles (zend_builtin_functions.c:361)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609==    by 0xF429F3: execute_ex (zend_vm_execute.h:363)
==15609==    by 0xF435CC: zend_execute (zend_vm_execute.h:388)
==15609==    by 0xED85AB: zend_execute_scripts (zend.c:1341)
==15609==    by 0xDF8342: php_execute_script (main.c:2613)
==15609==    by 0x1089EDC: do_cli (php_cli.c:998)
==15609==    by 0x108B7C1: main (php_cli.c:1382)
==15609==  Block was alloc'd at
==15609==    at 0x4C291FA: malloc (vg_replace_malloc.c:298)
==15609==    by 0xE7DC06: __zend_malloc (zend_alloc.h:97)
==15609==    by 0xE82594: _emalloc (zend_alloc.c:2427)
==15609==    by 0xCE668E: process_nested_data (var_unserializer.re:367)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCE66EC: process_nested_data (var_unserializer.re:369)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCC83CF: zif_unserialize (var.c:964)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609== 
==15609== Invalid read of size 4
==15609==    at 0xEB3875: zval_delref_p (zend.h:411)
==15609==    by 0xEB3875: i_zval_ptr_dtor (zend_execute.h:76)
==15609==    by 0xEB3875: _zval_ptr_dtor (zend_execute_API.c:424)
==15609==    by 0xEF3168: zend_hash_destroy (zend_hash.c:548)
==15609==    by 0xF27BD5: zend_object_std_dtor (zend_objects.c:44)
==15609==    by 0xF28328: zend_objects_free_object_storage (zend_objects.c:137)
==15609==    by 0xF373C8: zend_objects_store_del_ref_by_handle_ex (zend_objects_API.c:226)
==15609==    by 0xF36F62: zend_objects_store_del_ref (zend_objects_API.c:178)
==15609==    by 0xED3157: _zval_dtor_func (zend_variables.c:57)
==15609==    by 0xEB3917: _zval_dtor (zend_variables.h:35)
==15609==    by 0xEB3917: i_zval_ptr_dtor (zend_execute.h:79)
==15609==    by 0xEB3917: _zval_ptr_dtor (zend_execute_API.c:424)
==15609==    by 0xEF09D5: i_zend_hash_bucket_delete (zend_hash.c:182)
==15609==    by 0xEF09D5: zend_hash_bucket_delete (zend_hash.c:192)
==15609==    by 0xEF3D0D: zend_hash_reverse_apply (zend_hash.c:733)
==15609==    by 0xEB2A24: shutdown_destructors (zend_execute_API.c:214)
==15609==    by 0xED696F: zend_call_destructors (zend.c:944)
==15609==  Address 0x15426240 is 16 bytes inside a block of size 32 free'd
==15609==    at 0x4C28BD4: free (vg_replace_malloc.c:529)
==15609==    by 0xE82635: _efree (zend_alloc.c:2437)
==15609==    by 0xF1A4AC: gc_collect_cycles (zend_gc.c:846)
==15609==    by 0xEF8EEA: zif_gc_collect_cycles (zend_builtin_functions.c:361)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609==    by 0xF429F3: execute_ex (zend_vm_execute.h:363)
==15609==    by 0xF435CC: zend_execute (zend_vm_execute.h:388)
==15609==    by 0xED85AB: zend_execute_scripts (zend.c:1341)
==15609==    by 0xDF8342: php_execute_script (main.c:2613)
==15609==    by 0x1089EDC: do_cli (php_cli.c:998)
==15609==    by 0x108B7C1: main (php_cli.c:1382)
==15609==  Block was alloc'd at
==15609==    at 0x4C291FA: malloc (vg_replace_malloc.c:298)
==15609==    by 0xE7DC06: __zend_malloc (zend_alloc.h:97)
==15609==    by 0xE82594: _emalloc (zend_alloc.c:2427)
==15609==    by 0xCE668E: process_nested_data (var_unserializer.re:367)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCE66EC: process_nested_data (var_unserializer.re:369)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCC83CF: zif_unserialize (var.c:964)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609== 
==15609== Invalid write of size 4
==15609==    at 0xEB387F: zval_delref_p (zend.h:411)
==15609==    by 0xEB387F: i_zval_ptr_dtor (zend_execute.h:76)
==15609==    by 0xEB387F: _zval_ptr_dtor (zend_execute_API.c:424)
==15609==    by 0xEF3168: zend_hash_destroy (zend_hash.c:548)
==15609==    by 0xF27BD5: zend_object_std_dtor (zend_objects.c:44)
==15609==    by 0xF28328: zend_objects_free_object_storage (zend_objects.c:137)
==15609==    by 0xF373C8: zend_objects_store_del_ref_by_handle_ex (zend_objects_API.c:226)
==15609==    by 0xF36F62: zend_objects_store_del_ref (zend_objects_API.c:178)
==15609==    by 0xED3157: _zval_dtor_func (zend_variables.c:57)
==15609==    by 0xEB3917: _zval_dtor (zend_variables.h:35)
==15609==    by 0xEB3917: i_zval_ptr_dtor (zend_execute.h:79)
==15609==    by 0xEB3917: _zval_ptr_dtor (zend_execute_API.c:424)
==15609==    by 0xEF09D5: i_zend_hash_bucket_delete (zend_hash.c:182)
==15609==    by 0xEF09D5: zend_hash_bucket_delete (zend_hash.c:192)
==15609==    by 0xEF3D0D: zend_hash_reverse_apply (zend_hash.c:733)
==15609==    by 0xEB2A24: shutdown_destructors (zend_execute_API.c:214)
==15609==    by 0xED696F: zend_call_destructors (zend.c:944)
==15609==  Address 0x15426240 is 16 bytes inside a block of size 32 free'd
==15609==    at 0x4C28BD4: free (vg_replace_malloc.c:529)
==15609==    by 0xE82635: _efree (zend_alloc.c:2437)
==15609==    by 0xF1A4AC: gc_collect_cycles (zend_gc.c:846)
==15609==    by 0xEF8EEA: zif_gc_collect_cycles (zend_builtin_functions.c:361)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609==    by 0xF429F3: execute_ex (zend_vm_execute.h:363)
==15609==    by 0xF435CC: zend_execute (zend_vm_execute.h:388)
==15609==    by 0xED85AB: zend_execute_scripts (zend.c:1341)
==15609==    by 0xDF8342: php_execute_script (main.c:2613)
==15609==    by 0x1089EDC: do_cli (php_cli.c:998)
==15609==    by 0x108B7C1: main (php_cli.c:1382)
==15609==  Block was alloc'd at
==15609==    at 0x4C291FA: malloc (vg_replace_malloc.c:298)
==15609==    by 0xE7DC06: __zend_malloc (zend_alloc.h:97)
==15609==    by 0xE82594: _emalloc (zend_alloc.c:2427)
==15609==    by 0xCE668E: process_nested_data (var_unserializer.re:367)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCE66EC: process_nested_data (var_unserializer.re:369)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCC83CF: zif_unserialize (var.c:964)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609== 
==15609== Invalid read of size 4
==15609==    at 0xEB3886: zval_delref_p (zend.h:411)
==15609==    by 0xEB3886: i_zval_ptr_dtor (zend_execute.h:76)
==15609==    by 0xEB3886: _zval_ptr_dtor (zend_execute_API.c:424)
==15609==    by 0xEF3168: zend_hash_destroy (zend_hash.c:548)
==15609==    by 0xF27BD5: zend_object_std_dtor (zend_objects.c:44)
==15609==    by 0xF28328: zend_objects_free_object_storage (zend_objects.c:137)
==15609==    by 0xF373C8: zend_objects_store_del_ref_by_handle_ex (zend_objects_API.c:226)
==15609==    by 0xF36F62: zend_objects_store_del_ref (zend_objects_API.c:178)
==15609==    by 0xED3157: _zval_dtor_func (zend_variables.c:57)
==15609==    by 0xEB3917: _zval_dtor (zend_variables.h:35)
==15609==    by 0xEB3917: i_zval_ptr_dtor (zend_execute.h:79)
==15609==    by 0xEB3917: _zval_ptr_dtor (zend_execute_API.c:424)
==15609==    by 0xEF09D5: i_zend_hash_bucket_delete (zend_hash.c:182)
==15609==    by 0xEF09D5: zend_hash_bucket_delete (zend_hash.c:192)
==15609==    by 0xEF3D0D: zend_hash_reverse_apply (zend_hash.c:733)
==15609==    by 0xEB2A24: shutdown_destructors (zend_execute_API.c:214)
==15609==    by 0xED696F: zend_call_destructors (zend.c:944)
==15609==  Address 0x15426240 is 16 bytes inside a block of size 32 free'd
==15609==    at 0x4C28BD4: free (vg_replace_malloc.c:529)
==15609==    by 0xE82635: _efree (zend_alloc.c:2437)
==15609==    by 0xF1A4AC: gc_collect_cycles (zend_gc.c:846)
==15609==    by 0xEF8EEA: zif_gc_collect_cycles (zend_builtin_functions.c:361)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609==    by 0xF429F3: execute_ex (zend_vm_execute.h:363)
==15609==    by 0xF435CC: zend_execute (zend_vm_execute.h:388)
==15609==    by 0xED85AB: zend_execute_scripts (zend.c:1341)
==15609==    by 0xDF8342: php_execute_script (main.c:2613)
==15609==    by 0x1089EDC: do_cli (php_cli.c:998)
==15609==    by 0x108B7C1: main (php_cli.c:1382)
==15609==  Block was alloc'd at
==15609==    at 0x4C291FA: malloc (vg_replace_malloc.c:298)
==15609==    by 0xE7DC06: __zend_malloc (zend_alloc.h:97)
==15609==    by 0xE82594: _emalloc (zend_alloc.c:2427)
==15609==    by 0xCE668E: process_nested_data (var_unserializer.re:367)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCE66EC: process_nested_data (var_unserializer.re:369)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCC83CF: zif_unserialize (var.c:964)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609== 
==15609== Invalid read of size 4
==15609==    at 0xEB3959: zval_refcount_p (zend.h:399)
==15609==    by 0xEB3959: i_zval_ptr_dtor (zend_execute.h:82)
==15609==    by 0xEB3959: _zval_ptr_dtor (zend_execute_API.c:424)
==15609==    by 0xEF3168: zend_hash_destroy (zend_hash.c:548)
==15609==    by 0xF27BD5: zend_object_std_dtor (zend_objects.c:44)
==15609==    by 0xF28328: zend_objects_free_object_storage (zend_objects.c:137)
==15609==    by 0xF373C8: zend_objects_store_del_ref_by_handle_ex (zend_objects_API.c:226)
==15609==    by 0xF36F62: zend_objects_store_del_ref (zend_objects_API.c:178)
==15609==    by 0xED3157: _zval_dtor_func (zend_variables.c:57)
==15609==    by 0xEB3917: _zval_dtor (zend_variables.h:35)
==15609==    by 0xEB3917: i_zval_ptr_dtor (zend_execute.h:79)
==15609==    by 0xEB3917: _zval_ptr_dtor (zend_execute_API.c:424)
==15609==    by 0xEF09D5: i_zend_hash_bucket_delete (zend_hash.c:182)
==15609==    by 0xEF09D5: zend_hash_bucket_delete (zend_hash.c:192)
==15609==    by 0xEF3D0D: zend_hash_reverse_apply (zend_hash.c:733)
==15609==    by 0xEB2A24: shutdown_destructors (zend_execute_API.c:214)
==15609==    by 0xED696F: zend_call_destructors (zend.c:944)
==15609==  Address 0x15426240 is 16 bytes inside a block of size 32 free'd
==15609==    at 0x4C28BD4: free (vg_replace_malloc.c:529)
==15609==    by 0xE82635: _efree (zend_alloc.c:2437)
==15609==    by 0xF1A4AC: gc_collect_cycles (zend_gc.c:846)
==15609==    by 0xEF8EEA: zif_gc_collect_cycles (zend_builtin_functions.c:361)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609==    by 0xF429F3: execute_ex (zend_vm_execute.h:363)
==15609==    by 0xF435CC: zend_execute (zend_vm_execute.h:388)
==15609==    by 0xED85AB: zend_execute_scripts (zend.c:1341)
==15609==    by 0xDF8342: php_execute_script (main.c:2613)
==15609==    by 0x1089EDC: do_cli (php_cli.c:998)
==15609==    by 0x108B7C1: main (php_cli.c:1382)
==15609==  Block was alloc'd at
==15609==    at 0x4C291FA: malloc (vg_replace_malloc.c:298)
==15609==    by 0xE7DC06: __zend_malloc (zend_alloc.h:97)
==15609==    by 0xE82594: _emalloc (zend_alloc.c:2427)
==15609==    by 0xCE668E: process_nested_data (var_unserializer.re:367)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCE66EC: process_nested_data (var_unserializer.re:369)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCC83CF: zif_unserialize (var.c:964)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609== 
==15609== Invalid write of size 1
==15609==    at 0xEB397F: zval_unset_isref_p (zend.h:423)
==15609==    by 0xEB397F: i_zval_ptr_dtor (zend_execute.h:83)
==15609==    by 0xEB397F: _zval_ptr_dtor (zend_execute_API.c:424)
==15609==    by 0xEF3168: zend_hash_destroy (zend_hash.c:548)
==15609==    by 0xF27BD5: zend_object_std_dtor (zend_objects.c:44)
==15609==    by 0xF28328: zend_objects_free_object_storage (zend_objects.c:137)
==15609==    by 0xF373C8: zend_objects_store_del_ref_by_handle_ex (zend_objects_API.c:226)
==15609==    by 0xF36F62: zend_objects_store_del_ref (zend_objects_API.c:178)
==15609==    by 0xED3157: _zval_dtor_func (zend_variables.c:57)
==15609==    by 0xEB3917: _zval_dtor (zend_variables.h:35)
==15609==    by 0xEB3917: i_zval_ptr_dtor (zend_execute.h:79)
==15609==    by 0xEB3917: _zval_ptr_dtor (zend_execute_API.c:424)
==15609==    by 0xEF09D5: i_zend_hash_bucket_delete (zend_hash.c:182)
==15609==    by 0xEF09D5: zend_hash_bucket_delete (zend_hash.c:192)
==15609==    by 0xEF3D0D: zend_hash_reverse_apply (zend_hash.c:733)
==15609==    by 0xEB2A24: shutdown_destructors (zend_execute_API.c:214)
==15609==    by 0xED696F: zend_call_destructors (zend.c:944)
==15609==  Address 0x15426245 is 21 bytes inside a block of size 32 free'd
==15609==    at 0x4C28BD4: free (vg_replace_malloc.c:529)
==15609==    by 0xE82635: _efree (zend_alloc.c:2437)
==15609==    by 0xF1A4AC: gc_collect_cycles (zend_gc.c:846)
==15609==    by 0xEF8EEA: zif_gc_collect_cycles (zend_builtin_functions.c:361)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609==    by 0xF429F3: execute_ex (zend_vm_execute.h:363)
==15609==    by 0xF435CC: zend_execute (zend_vm_execute.h:388)
==15609==    by 0xED85AB: zend_execute_scripts (zend.c:1341)
==15609==    by 0xDF8342: php_execute_script (main.c:2613)
==15609==    by 0x1089EDC: do_cli (php_cli.c:998)
==15609==    by 0x108B7C1: main (php_cli.c:1382)
==15609==  Block was alloc'd at
==15609==    at 0x4C291FA: malloc (vg_replace_malloc.c:298)
==15609==    by 0xE7DC06: __zend_malloc (zend_alloc.h:97)
==15609==    by 0xE82594: _emalloc (zend_alloc.c:2427)
==15609==    by 0xCE668E: process_nested_data (var_unserializer.re:367)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCE66EC: process_nested_data (var_unserializer.re:369)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCC83CF: zif_unserialize (var.c:964)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609== 
==15609== Invalid read of size 1
==15609==    at 0xEB39A1: gc_zval_check_possible_root (zend_gc.h:182)
==15609==    by 0xEB39A1: i_zval_ptr_dtor (zend_execute.h:86)
==15609==    by 0xEB39A1: _zval_ptr_dtor (zend_execute_API.c:424)
==15609==    by 0xEF3168: zend_hash_destroy (zend_hash.c:548)
==15609==    by 0xF27BD5: zend_object_std_dtor (zend_objects.c:44)
==15609==    by 0xF28328: zend_objects_free_object_storage (zend_objects.c:137)
==15609==    by 0xF373C8: zend_objects_store_del_ref_by_handle_ex (zend_objects_API.c:226)
==15609==    by 0xF36F62: zend_objects_store_del_ref (zend_objects_API.c:178)
==15609==    by 0xED3157: _zval_dtor_func (zend_variables.c:57)
==15609==    by 0xEB3917: _zval_dtor (zend_variables.h:35)
==15609==    by 0xEB3917: i_zval_ptr_dtor (zend_execute.h:79)
==15609==    by 0xEB3917: _zval_ptr_dtor (zend_execute_API.c:424)
==15609==    by 0xEF09D5: i_zend_hash_bucket_delete (zend_hash.c:182)
==15609==    by 0xEF09D5: zend_hash_bucket_delete (zend_hash.c:192)
==15609==    by 0xEF3D0D: zend_hash_reverse_apply (zend_hash.c:733)
==15609==    by 0xEB2A24: shutdown_destructors (zend_execute_API.c:214)
==15609==    by 0xED696F: zend_call_destructors (zend.c:944)
==15609==  Address 0x15426244 is 20 bytes inside a block of size 32 free'd
==15609==    at 0x4C28BD4: free (vg_replace_malloc.c:529)
==15609==    by 0xE82635: _efree (zend_alloc.c:2437)
==15609==    by 0xF1A4AC: gc_collect_cycles (zend_gc.c:846)
==15609==    by 0xEF8EEA: zif_gc_collect_cycles (zend_builtin_functions.c:361)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609==    by 0xF429F3: execute_ex (zend_vm_execute.h:363)
==15609==    by 0xF435CC: zend_execute (zend_vm_execute.h:388)
==15609==    by 0xED85AB: zend_execute_scripts (zend.c:1341)
==15609==    by 0xDF8342: php_execute_script (main.c:2613)
==15609==    by 0x1089EDC: do_cli (php_cli.c:998)
==15609==    by 0x108B7C1: main (php_cli.c:1382)
==15609==  Block was alloc'd at
==15609==    at 0x4C291FA: malloc (vg_replace_malloc.c:298)
==15609==    by 0xE7DC06: __zend_malloc (zend_alloc.h:97)
==15609==    by 0xE82594: _emalloc (zend_alloc.c:2427)
==15609==    by 0xCE668E: process_nested_data (var_unserializer.re:367)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCE66EC: process_nested_data (var_unserializer.re:369)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCC83CF: zif_unserialize (var.c:964)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609== 
==15609== Invalid read of size 1
==15609==    at 0xEB39BF: gc_zval_check_possible_root (zend_gc.h:182)
==15609==    by 0xEB39BF: i_zval_ptr_dtor (zend_execute.h:86)
==15609==    by 0xEB39BF: _zval_ptr_dtor (zend_execute_API.c:424)
==15609==    by 0xEF3168: zend_hash_destroy (zend_hash.c:548)
==15609==    by 0xF27BD5: zend_object_std_dtor (zend_objects.c:44)
==15609==    by 0xF28328: zend_objects_free_object_storage (zend_objects.c:137)
==15609==    by 0xF373C8: zend_objects_store_del_ref_by_handle_ex (zend_objects_API.c:226)
==15609==    by 0xF36F62: zend_objects_store_del_ref (zend_objects_API.c:178)
==15609==    by 0xED3157: _zval_dtor_func (zend_variables.c:57)
==15609==    by 0xEB3917: _zval_dtor (zend_variables.h:35)
==15609==    by 0xEB3917: i_zval_ptr_dtor (zend_execute.h:79)
==15609==    by 0xEB3917: _zval_ptr_dtor (zend_execute_API.c:424)
==15609==    by 0xEF09D5: i_zend_hash_bucket_delete (zend_hash.c:182)
==15609==    by 0xEF09D5: zend_hash_bucket_delete (zend_hash.c:192)
==15609==    by 0xEF3D0D: zend_hash_reverse_apply (zend_hash.c:733)
==15609==    by 0xEB2A24: shutdown_destructors (zend_execute_API.c:214)
==15609==    by 0xED696F: zend_call_destructors (zend.c:944)
==15609==  Address 0x15426244 is 20 bytes inside a block of size 32 free'd
==15609==    at 0x4C28BD4: free (vg_replace_malloc.c:529)
==15609==    by 0xE82635: _efree (zend_alloc.c:2437)
==15609==    by 0xF1A4AC: gc_collect_cycles (zend_gc.c:846)
==15609==    by 0xEF8EEA: zif_gc_collect_cycles (zend_builtin_functions.c:361)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609==    by 0xF429F3: execute_ex (zend_vm_execute.h:363)
==15609==    by 0xF435CC: zend_execute (zend_vm_execute.h:388)
==15609==    by 0xED85AB: zend_execute_scripts (zend.c:1341)
==15609==    by 0xDF8342: php_execute_script (main.c:2613)
==15609==    by 0x1089EDC: do_cli (php_cli.c:998)
==15609==    by 0x108B7C1: main (php_cli.c:1382)
==15609==  Block was alloc'd at
==15609==    at 0x4C291FA: malloc (vg_replace_malloc.c:298)
==15609==    by 0xE7DC06: __zend_malloc (zend_alloc.h:97)
==15609==    by 0xE82594: _emalloc (zend_alloc.c:2427)
==15609==    by 0xCE668E: process_nested_data (var_unserializer.re:367)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCE66EC: process_nested_data (var_unserializer.re:369)
==15609==    by 0xCE6FF1: object_common2 (var_unserializer.re:480)
==15609==    by 0xCE864E: php_var_unserialize (var_unserializer.re:899)
==15609==    by 0xCC83CF: zif_unserialize (var.c:964)
==15609==    by 0xF44EC5: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==15609==    by 0xF50688: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==15609== 

 

Generated at Mon, 16 Jul 2018 23:50:59 +0000 (2 days ago)

Copyright © 2005-2018 The PHP Group
All rights reserved.