crashes in gssapi stack

Bug #1030685 reported by Brian J. Murrell
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Linux Mint
New
Undecided
Unassigned

Bug Description

While trying to upload an attachment to a Trac bug tracking system, chromium crashes with 100% reproducibility. There is the stacktrace from the crash. I have a /var/crash apport file from the crash but I will not be furnishing it due to the huge security leak potential of posting core dumps.

I am happy to extract whatever information you need from it however, such as this stack trace of the segfaulting thread:

#0 krb5_gss_inquire_context (minor_status=0xabb31888, context_handle=0x0, initiator_name=0xabb3121c, acceptor_name=0xabb31218, lifetime_rec=0xabb31894, mech_type=0x0,
    ret_flags=0xabb3189c, locally_initiated=0xabb318a0, opened=0xabb318a4) at ../../../../src/lib/gssapi/krb5/inq_context.c:108
#1 0xb216433f in gss_inquire_context (minor_status=0xabb31888, context_handle=0xbdfd0ed0, src_name=0xabb3188c, targ_name=0xabb31890, lifetime_rec=0xabb31894, mech_type=0xabb31898,
    ctx_flags=0xabb3189c, locally_initiated=0xabb318a0, opened=0xabb318a4) at ../../../../src/lib/gssapi/mechglue/g_inq_context.c:113
#2 0xb45c8691 in net::GSSAPISharedLibrary::inquire_context(unsigned int*, gss_ctx_id_struct*, gss_name_struct**, gss_name_struct**, unsigned int*, gss_OID_desc_struct**, unsigned int*, int*, int*) ()
#3 0xb45cac45 in net::HttpAuthGSSAPI::GetNextSecurityToken(std::basic_string<wchar_t, std::char_traits<wchar_t>, std::allocator<wchar_t> > const&, gss_buffer_desc_struct*, gss_buffer_desc_struct*) ()
#4 0xb45cb75e in net::HttpAuthGSSAPI::GenerateAuthToken(net::AuthCredentials const*, std::basic_string<wchar_t, std::char_traits<wchar_t>, std::allocator<wchar_t> > const&, std::string*) ()
#5 0xb44e7532 in net::HttpAuthHandlerNegotiate::DoGenerateAuthToken() ()
#6 0xb44e75b8 in net::HttpAuthHandlerNegotiate::DoLoop(int) ()
#7 0xb44e7667 in net::HttpAuthHandlerNegotiate::GenerateAuthTokenImpl(net::AuthCredentials const*, net::HttpRequestInfo const*, base::Callback<void (int)> const&, std::string*) ()
#8 0xb45cc1c7 in net::HttpAuthHandler::GenerateAuthToken(net::AuthCredentials const*, net::HttpRequestInfo const*, base::Callback<void (int)> const&, std::string*) ()
#9 0xb45c7f3c in net::HttpAuthController::MaybeGenerateAuthToken(net::HttpRequestInfo const*, base::Callback<void (int)> const&, net::BoundNetLog const&) ()
#10 0xb44f9bff in net::HttpNetworkTransaction::DoGenerateProxyAuthToken() ()
#11 0xb44f9f08 in net::HttpNetworkTransaction::DoLoop(int) ()
#12 0xb44fa138 in net::HttpNetworkTransaction::OnIOComplete(int) ()
#13 0xb4515aca in net::HttpStreamFactoryImpl::Request::OnStreamReady(net::HttpStreamFactoryImpl::Job*, net::SSLConfig const&, net::ProxyInfo const&, net::HttpStream*) ()
#14 0xb450d155 in net::HttpStreamFactoryImpl::Job::OnStreamReadyCallback() ()
#15 0xb450d8a4 in base::internal::Invoker<1, base::internal::BindState<base::internal::RunnableAdapter<void (net::HttpStreamFactoryImpl::Job::*)()>, void (net::HttpStreamFactoryImpl::Job*), void (base::WeakPtr<net::HttpStreamFactoryImpl::Job>)>, void (net::HttpStreamFactoryImpl::Job*)>::Run(base::internal::BindStateBase*) ()
#16 0xb41c4d0f in MessageLoop::RunTask(base::PendingTask const&) ()
#17 0xb41c814c in MessageLoop::DeferOrRunPendingTask(base::PendingTask const&) ()
#18 0xb41c8726 in MessageLoop::DoWork() ()
#19 0xb41a1898 in base::MessagePumpLibevent::Run(base::MessagePump::Delegate*) ()
#20 0xb41c4332 in MessageLoop::RunInternal() ()
#21 0xb41c4391 in MessageLoop::Run() ()
#22 0xb41e747b in base::Thread::Run(MessageLoop*) ()
#23 0xb41e73e2 in base::Thread::ThreadMain() ()
#24 0xb41e4cbc in base::(anonymous namespace)::ThreadFunc(void*) ()
#25 0xb2a50d4c in start_thread (arg=0xabb32b40) at pthread_create.c:308
#26 0xb258bace in clone () at ../sysdeps/unix/sysv/linux/i386/clone.S:130

ProblemType: Bug
DistroRelease: LinuxMint 12
Package: chromium-browser 18.0.1025.168~r134367-0ubuntu0.12.04.1
ProcVersionSignature: Ubuntu 3.2.0-26.41-generic-pae 3.2.19
Uname: Linux 3.2.0-26-generic-pae i686
NonfreeKernelModules: ksplice_dewe07wg_vmlinux_new ksplice_dewe07wg ksplice_t0vennht_vmlinux_new ksplice_t0vennht ksplice_xmujt7c9_vmlinux_new ksplice_xmujt7c9 ksplice_l34fkoxc_ttm_new ksplice_l34fkoxc ksplice_3e1g28bz_vmlinux_new ksplice_3e1g28bz ksplice_4qv4fmpp_vmlinux_new ksplice_4qv4fmpp ksplice_r0kvmav6_vmlinux_new ksplice_r0kvmav6 ksplice_20ua8hym ksplice_ifvi3ya6 ksplice_dde1axkc ksplice_s4l4rfyg ksplice_unoti1kb_snd_usb_audio_new ksplice_unoti1kb ksplice_7he9oi11 ksplice_ik8iovr1 ksplice_obg057es_vmlinux_new ksplice_obg057es
ApportVersion: 2.0.1-0ubuntu8
Architecture: i386
Date: Sun Jul 29 22:29:09 2012
Desktop-Session:
 DESKTOP_SESSION = xfce
 XDG_CONFIG_DIRS = /etc/xdg/xdg-xfce:/etc/xdg:/etc/xdg
 XDG_DATA_DIRS = /usr/share/xfce:/usr/local/share/:/usr/share/:/usr/share
Env:
 MOZ_PLUGIN_PATH = None
 LD_LIBRARY_PATH = None
ProcEnviron:
 TERM=xterm
 PATH=(custom, user)
 LANG=en_CA.UTF-8
 SHELL=/bin/bash
SourcePackage: chromium-browser
UpgradeStatus: No upgrade log present (probably fresh install)
chromium-default: CHROMIUM_FLAGS="--disable-new-tab-first-run --enable-user-scripts"
modified.conffile..etc.chromium.browser.default: [modified]
mtime.conffile..etc.chromium.browser.default: 2012-07-18T10:19:05

Revision history for this message
Brian J. Murrell (brian-interlinx) wrote :
penalvch (penalvch)
affects: chromium-browser (Ubuntu) → linuxmint
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.