Alsa-Devel Archive on lore.kernel.org
 help / color / mirror / Atom feed
From: Takashi Iwai <tiwai@suse.de>
To: Valentin Corfu <corfuvalentin@gmail.com>
Cc: alsa-devel@alsa-project.org
Subject: Re: Segmentation Fault in snd_pcm_rate_hw_free()
Date: Tue, 04 Aug 2015 16:53:05 +0200	[thread overview]
Message-ID: <s5hwpxbnm0e.wl-tiwai@suse.de> (raw)
In-Reply-To: <55C0C75E.8090501@gmail.com>

On Tue, 04 Aug 2015 16:08:30 +0200,
Valentin Corfu wrote:
> 
> Hello ALSA developers,
> 
> I observed one segmentation fault in snd_pcm_rate_hw_free() function, 
> with the following BT:
> 
> (gdb) up
> #1  0xb7554cc1 in raise (sig=6) at 
> ../nptl/sysdeps/unix/sysv/linux/raise.c:64
> 64        return INLINE_SYSCALL (tgkill, 3, pid, selftid, sig);
> (gdb)
> #2  0xb75580ee in abort () at abort.c:92
> 92            raise (SIGABRT);
> (gdb)
> #3  0xb758a7dd in __libc_message (do_abort=2,
>      fmt=0xb766053c "*** glibc detected *** %s: %s: 0x%s ***\n")
>      at ../sysdeps/unix/sysv/linux/libc_fatal.c:189
> 189           abort ();
> (gdb)
> #4  0xb7594a71 in malloc_printerr (action=<value optimized out>,
>      str=<value optimized out>, ptr=0x969ae98) at malloc.c:6283
> 6283          __libc_message (action & 2,
> (gdb)
> #5  0xb759636b in _int_free (av=<value optimized out>, p=0x969ae90)
>      at malloc.c:4795
> 4795          malloc_printerr (check_action, errstr, chunk2mem(p));
> (gdb)
> #6  0xb75994bd in __libc_free (mem=0x969ae98) at malloc.c:3738
> 3738      _int_free(ar_ptr, p);
> (gdb)
> #7  0xb76f3a81 in snd_pcm_rate_hw_free (pcm=0x9685d78) at pcm_rate.c:341
> 341                     free(rate->pareas[0].addr);

Could you check the content of rate->pareas[0] via gdb?

> (gdb)
> #8  0xb76d045b in snd_pcm_hw_free (pcm=0x9685d78) at pcm.c:858
> 858             err = pcm->ops->hw_free(pcm->op_arg);
> (gdb)
> #9  0xb76f826e in snd_pcm_plug_hw_free (pcm=0x96856b0) at pcm_plug.c:1046
> 1046            int err = snd_pcm_hw_free(slave);
> (gdb)
> #10 0xb76d045b in snd_pcm_hw_free (pcm=0x96856b0) at pcm.c:858
> 858             err = pcm->ops->hw_free(pcm->op_arg);
> (gdb)
> #11 0x080492ad in main ()
> 
> 
> Could you please give me some hints how to solve this issue?
> 
> I can provide you more info or the test application, if needed.
> I can see the issue every time, and I also checked with latest version 
> of alsa-lib but I got the same results.

I don't know of such an error, so far.
It smells like some memory corruption to me.

If a test case is a simple code, tracking the bug would be easy...


Takashi

  reply	other threads:[~2015-08-04 14:53 UTC|newest]

Thread overview: 9+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2015-08-04 14:08 Segmentation Fault in snd_pcm_rate_hw_free() Valentin Corfu
2015-08-04 14:53 ` Takashi Iwai [this message]
2015-08-04 15:02   ` Valentin Corfu
2015-08-04 15:15     ` Takashi Iwai
2015-08-05  6:58       ` Valentin Corfu
2015-08-05  7:13         ` Takashi Iwai
2015-08-05  8:15           ` Valentin Corfu
  -- strict thread matches above, loose matches on Subject: below --
2015-08-18  9:51 Alexandru Costache
2015-08-18  9:59 ` Takashi Iwai

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=s5hwpxbnm0e.wl-tiwai@suse.de \
    --to=tiwai@suse.de \
    --cc=alsa-devel@alsa-project.org \
    --cc=corfuvalentin@gmail.com \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox