firefox crashed with SIGSEGV in PluginRequestProcessor::call()

Bug #511758 reported by jcorleta
12
This bug affects 1 person
Affects Status Importance Assigned to Milestone
firefox-3.5 (Ubuntu)
Invalid
Medium
Unassigned

Bug Description

Binary package hint: firefox-3.5

Open 2 sites with Java

ProblemType: Crash
Architecture: i386
Date: Sat Jan 23 22:31:43 2010
DistroRelease: Ubuntu 10.04
ExecutablePath: /usr/lib/firefox-3.5.7/firefox
InstallationMedia: Ubuntu 10.04 "Lucid Lynx" - Alpha i386 (20100113)
NonfreeKernelModules: wl
Package: firefox-3.5 3.5.7+nobinonly-0ubuntu1
ProcCmdline: /usr/lib/firefox-3.5.7/firefox
ProcEnviron:
 LANGUAGE=pt_BR.UTF-8
 PATH=(custom, no user)
 LANG=pt_BR.UTF-8
 SHELL=/bin/bash
ProcVersionSignature: Ubuntu 2.6.32-11.15-generic
Signal: 11
SourcePackage: firefox-3.5
StacktraceTop:
 PluginRequestProcessor::call(std::vector<std::string, std::allocator<std::string> >*) ()
 queue_processor(void*) ()
 start_thread () from /lib/tls/i686/cmov/libpthread.so.0
 clone () from /lib/tls/i686/cmov/libc.so.6
Title: firefox crashed with SIGSEGV in PluginRequestProcessor::call()
Uname: Linux 2.6.32-11-generic i686
UserGroups: adm admin audio cdrom dialout dip fax floppy fuse lpadmin netdev plugdev root sambashare tape video
SegvAnalysis:
 Segfault happened at: 0x57c422 <__kernel_vsyscall+2>: ret
 PC (0x0057c422) ok
 destination "(%esp)" (0xa9948bfc) ok
 Stack memory exhausted (SP below stack segment)
 SP (0xa9948bfc) ok
 Reason could not be automatically determined. (Unhandled exception in kernel code?)
SegvReason: Reason could not be automatically determined. (Unhandled exception in kernel code?)

Revision history for this message
jcorleta (jcorleta) wrote :
Revision history for this message
Marc Deslauriers (mdeslaur) wrote :

Thanks for taking the time to report this bug and helping to make Ubuntu better. We appreciate the difficulties you are facing, but this appears to be a "regular" (non-security) bug. I have unmarked it as a security issue since this bug does not show evidence of allowing attackers to cross privilege boundaries nor directly cause loss of data/privacy. Please feel free to report any other bugs you may find.

security vulnerability: yes → no
visibility: private → public
Revision history for this message
Apport retracing service (apport) wrote :

StacktraceTop:
 PluginRequestProcessor::call(std::vector<std::string, std::allocator<std::string> >*) ()
 queue_processor(void*) ()
 start_thread () from /lib/tls/i686/cmov/libpthread.so.0
 clone () from /lib/tls/i686/cmov/libc.so.6

Revision history for this message
Apport retracing service (apport) wrote : Stacktrace.txt
Revision history for this message
Apport retracing service (apport) wrote : ThreadStacktrace.txt
Changed in firefox-3.5 (Ubuntu):
importance: Undecided → Medium
tags: removed: need-i386-retrace
Kees Cook (kees)
description: updated
tags: added: stack-exhaustion
Revision history for this message
dino99 (9d9) wrote :

This version is outdated and no more supported

Changed in firefox-3.5 (Ubuntu):
status: New → Invalid
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.