PHP  
 PHP_5_6
downloads | QA | documentation | faq | getting help | mailing lists | reporting bugs | php.net sites | links | my php.net 
 

Valgrind Report for ext/interbase/tests/bug45575.phpt ('Bug #45575 (Segfault with invalid non-string as event handler callback)')

Script

1: <?php
2:
3:
require("interbase.inc");
4:
5:
$db ibase_connect($test_base);
6:
7: function 
foobar($var) { var_dump($var); return true; }
8:
9:
ibase_set_event_handler($dbnull'TEST1');
10:
ibase_set_event_handler($db1'TEST1');
11:
ibase_set_event_handler('foobar''TEST1');
12:
13:
?>
14:

Report

==25481== Invalid read of size 8
==25481==    at 0x83FF41: _php_ibase_event_block (ibase_events.c:106)
==25481==    by 0x841A09: zif_ibase_set_event_handler (ibase_events.c:354)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481==  Address 0x153f59f0 is 0 bytes after a block of size 32 alloc'd
==25481==    at 0x4C2824A: malloc (vg_replace_malloc.c:296)
==25481==    by 0xE6A1C8: _emalloc (zend_alloc.c:2427)
==25481==    by 0x8415D4: zif_ibase_set_event_handler (ibase_events.c:343)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481== 
==25481== Invalid read of size 8
==25481==    at 0x83FF95: _php_ibase_event_block (ibase_events.c:106)
==25481==    by 0x841A09: zif_ibase_set_event_handler (ibase_events.c:354)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481==  Address 0x153f59c8 is 8 bytes before a block of size 32 alloc'd
==25481==    at 0x4C2824A: malloc (vg_replace_malloc.c:296)
==25481==    by 0xE6A1C8: _emalloc (zend_alloc.c:2427)
==25481==    by 0x8415D4: zif_ibase_set_event_handler (ibase_events.c:343)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481== 
==25481== Invalid read of size 8
==25481==    at 0x83FFA3: _php_ibase_event_block (ibase_events.c:106)
==25481==    by 0x841A09: zif_ibase_set_event_handler (ibase_events.c:354)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481==  Address 0x153f59c0 is 16 bytes before a block of size 32 alloc'd
==25481==    at 0x4C2824A: malloc (vg_replace_malloc.c:296)
==25481==    by 0xE6A1C8: _emalloc (zend_alloc.c:2427)
==25481==    by 0x8415D4: zif_ibase_set_event_handler (ibase_events.c:343)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481== 
==25481== Invalid read of size 8
==25481==    at 0x83FFB1: _php_ibase_event_block (ibase_events.c:106)
==25481==    by 0x841A09: zif_ibase_set_event_handler (ibase_events.c:354)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481==  Address 0x153f59b8 is 24 bytes before a block of size 32 alloc'd
==25481==    at 0x4C2824A: malloc (vg_replace_malloc.c:296)
==25481==    by 0xE6A1C8: _emalloc (zend_alloc.c:2427)
==25481==    by 0x8415D4: zif_ibase_set_event_handler (ibase_events.c:343)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481== 
==25481== Invalid read of size 8
==25481==    at 0x83FFBF: _php_ibase_event_block (ibase_events.c:106)
==25481==    by 0x841A09: zif_ibase_set_event_handler (ibase_events.c:354)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481==  Address 0x153f59b0 is 32 bytes before a block of size 32 in arena "client"
==25481== 
==25481== Invalid read of size 8
==25481==    at 0x83FFCD: _php_ibase_event_block (ibase_events.c:106)
==25481==    by 0x841A09: zif_ibase_set_event_handler (ibase_events.c:354)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481==  Address 0x153f59a8 is 24 bytes after a block of size 16 in arena "client"
==25481== 
==25481== Invalid read of size 8
==25481==    at 0x83FFDB: _php_ibase_event_block (ibase_events.c:106)
==25481==    by 0x841A09: zif_ibase_set_event_handler (ibase_events.c:354)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481==  Address 0x153f59a0 is 16 bytes after a block of size 16 in arena "client"
==25481== 
==25481== Invalid read of size 8
==25481==    at 0x83FFE9: _php_ibase_event_block (ibase_events.c:106)
==25481==    by 0x841A09: zif_ibase_set_event_handler (ibase_events.c:354)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481==  Address 0x153f5998 is 16 bytes after a block of size 8 alloc'd
==25481==    at 0x4C2824A: malloc (vg_replace_malloc.c:296)
==25481==    by 0xE6A1C8: _emalloc (zend_alloc.c:2427)
==25481==    by 0xE6A4C2: _safe_emalloc (zend_alloc.c:2583)
==25481==    by 0x8415AA: zif_ibase_set_event_handler (ibase_events.c:341)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481== 
==25481== Invalid read of size 8
==25481==    at 0x83FFF7: _php_ibase_event_block (ibase_events.c:106)
==25481==    by 0x841A09: zif_ibase_set_event_handler (ibase_events.c:354)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481==  Address 0x153f5990 is 8 bytes after a block of size 8 alloc'd
==25481==    at 0x4C2824A: malloc (vg_replace_malloc.c:296)
==25481==    by 0xE6A1C8: _emalloc (zend_alloc.c:2427)
==25481==    by 0xE6A4C2: _safe_emalloc (zend_alloc.c:2583)
==25481==    by 0x8415AA: zif_ibase_set_event_handler (ibase_events.c:341)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481== 
==25481== Invalid read of size 8
==25481==    at 0x84000C: _php_ibase_event_block (ibase_events.c:106)
==25481==    by 0x841A09: zif_ibase_set_event_handler (ibase_events.c:354)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481==  Address 0x153f5988 is 0 bytes after a block of size 8 alloc'd
==25481==    at 0x4C2824A: malloc (vg_replace_malloc.c:296)
==25481==    by 0xE6A1C8: _emalloc (zend_alloc.c:2427)
==25481==    by 0xE6A4C2: _safe_emalloc (zend_alloc.c:2583)
==25481==    by 0x8415AA: zif_ibase_set_event_handler (ibase_events.c:341)
==25481==    by 0xF2DDB0: zend_do_fcall_common_helper_SPEC (zend_vm_execute.h:558)
==25481==    by 0xF39946: ZEND_DO_FCALL_SPEC_CONST_HANDLER (zend_vm_execute.h:2602)
==25481==    by 0xF2B836: execute_ex (zend_vm_execute.h:363)
==25481==    by 0xF2C3D9: zend_execute (zend_vm_execute.h:388)
==25481==    by 0xEC055F: zend_execute_scripts (zend.c:1341)
==25481==    by 0xDDE0EB: php_execute_script (main.c:2597)
==25481==    by 0x1078AB6: do_cli (php_cli.c:994)
==25481==    by 0x107A263: main (php_cli.c:1378)
==25481== 

 

Generated at Mon, 31 Aug 2015 13:36:01 +0000 (3 days ago)

Copyright © 2005-2015 The PHP Group
All rights reserved.