From: Marcel Holtmann <marcel@holtmann.org>
To: bluez-devel@lists.sourceforge.net
Subject: Re: [Bluez-devel] Re: Possible bug in sdp.c
Date: Wed, 15 Feb 2006 09:03:10 +0100 [thread overview]
Message-ID: <1139990590.26072.8.camel@localhost> (raw)
In-Reply-To: <43F1CA4F.8030102@yahoo.com>
Hi Pedro,
> > I have seen what *may* be a possible bug in sdp.c. If there is an err=
or=20
> > in a SDP PDU sent by a bluetooth device, it seems that the SDP parsin=
g=20
> > code in sdp.c enters an infinite loop filling syslog with the followi=
ng=20
> > message: "Unknown sequence type, aborting".
> >=20
> > I have been tracking down the cause and I have found where the proble=
m=20
> > might be. The function sdp_extract_seqtype() may return 0 in case of=20
> > unrecognized data, but this case does not seem to be handled in the=20
> > calls to this function (for example, in sdp_service_search_attr_req()=
or=20
> > in sdp_extract_pdu()).
> >=20
> > Could anybody tell me whether am I right or wrong? Has anybody seen a=
=20
> > similar behaviour?
> >=20
>=20
> I have been doing some further research and it is a Samsung. In previou=
s=20
> posts, there have been some bug reports regarding this brands, such as=20
> raising SIGSEGV while looking up for DUN service. Lo=C3=AFc Lefort sent=
a=20
> patch that works pretty well with many phones, but there seems to be a=20
> new Samsung phone that sends other unexpected SDP data, but I still do=20
> not know which model.
I actually thought we fixed that problem, but SDP is a horrible protocol
anyway, so expect more bugs. I don't have a Samsung phone and so I can't
easily reproduce it. However you need to send in a binary hcidump log
for the crash.
Regards
Marcel
-------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc. Do you grep through log files
for problems? Stop! Download the new AJAX search engine that makes
searching your log files as easy as surfing the web. DOWNLOAD SPLUNK!
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=103432&bid=230486&dat=121642
_______________________________________________
Bluez-devel mailing list
Bluez-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/bluez-devel
prev parent reply other threads:[~2006-02-15 8:03 UTC|newest]
Thread overview: 3+ messages / expand[flat|nested] mbox.gz Atom feed top
2006-02-14 11:02 [Bluez-devel] Possible bug in sdp.c Pedro Monjo Florit
2006-02-14 12:17 ` [Bluez-devel] " Pedro Monjo Florit
2006-02-15 8:03 ` Marcel Holtmann [this message]
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=1139990590.26072.8.camel@localhost \
--to=marcel@holtmann.org \
--cc=bluez-devel@lists.sourceforge.net \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).