notify-osd crashed with SIGSEGV in free()

Bug #437088 reported by Antonio Litterio
94
This bug affects 32 people
Affects Status Importance Assigned to Milestone
notify-osd (Ubuntu)
Fix Released
High
Mirco Müller

Bug Description

Binary package hint: notify-osd

Hi to all, I've Ubuntu 9.10, when a new mail is notified to the desktop with "mail-notification", the notify-osd crash.
This crash is sample to replay, install and configure mail-notification, and wait a new mail.

ProblemType: Crash
Architecture: i386
CrashCounter: 1
Date: Sat Sep 26 10:43:26 2009
DistroRelease: Ubuntu 9.10
ExecutablePath: /usr/lib/notify-osd/notify-osd
GtkTheme: Human
IconTheme: Humanity
MachineType: System manufacturer System Product Name
NonfreeKernelModules: nvidia
Package: notify-osd 0.9.22-0ubuntu1
ProcCmdLine: BOOT_IMAGE=/boot/vmlinuz-2.6.31-11-generic root=UUID=914d3cdf-685b-4805-a52a-9c26f7c72d66 ro quiet splash
ProcCmdline: /usr/lib/notify-osd/notify-osd
ProcEnviron:
 LANG=en_US.UTF-8
 SHELL=/bin/bash
ProcVersionSignature: Ubuntu 2.6.31-11.36-generic
RelatedPackageVersions:
 xserver-xorg 1:7.4+3ubuntu5
 libgl1-mesa-glx 7.6.0~git20090817.7c422387-0ubuntu5
 libdrm2 2.4.13-1ubuntu1
 xserver-xorg-video-intel 2:2.8.1-1ubuntu2
 xserver-xorg-video-ati 1:6.12.99+git20090825.fc74e119-0ubuntu2
SegvAnalysis:
 Segfault happened at: 0x4e678d <free+93>: cmpxchg %ecx,(%esi)
 PC (0x004e678d) ok
 source "%ecx" ok
 destination "(%esi)" (0x24748b20) not located in a known VMA region (needed writable region)!
SegvReason: writing unknown VMA
Signal: 11
SourcePackage: notify-osd
StacktraceTop:
 free () from /lib/tls/i686/cmov/libc.so.6
 g_free () from /lib/libglib-2.0.so.0
 fallback_dialog_show ()
 stack_notify_handler ()
 dbus_glib_marshal_stack_VOID__STRING_UINT_STRING_STRING_STRING_BOXED_BOXED_INT_POINTER ()
Title: notify-osd crashed with SIGSEGV in free()
Uname: Linux 2.6.31-11-generic i686
UserGroups: adm admin cdrom dialout lpadmin plugdev sambashare
WindowManager: gnome-wm
dmi.bios.date: 03/20/2006
dmi.bios.vendor: American Megatrends Inc.
dmi.bios.version: 0603
dmi.board.name: P5LD2-Deluxe
dmi.board.vendor: ASUSTeK Computer INC.
dmi.board.version: Rev 1.xx
dmi.chassis.asset.tag: Asset-1234567890
dmi.chassis.type: 3
dmi.chassis.vendor: Chassis Manufacture
dmi.chassis.version: Chassis Version
dmi.modalias: dmi:bvnAmericanMegatrendsInc.:bvr0603:bd03/20/2006:svnSystemmanufacturer:pnSystemProductName:pvrSystemVersion:rvnASUSTeKComputerINC.:rnP5LD2-Deluxe:rvrRev1.xx:cvnChassisManufacture:ct3:cvrChassisVersion:
dmi.product.name: System Product Name
dmi.product.version: System Version
dmi.sys.vendor: System manufacturer

Related branches

Revision history for this message
Antonio Litterio (antonio-litterio-gmail) wrote :
Revision history for this message
Apport retracing service (apport) wrote : Stacktrace.txt (retraced)

StacktraceTop:*__GI___libc_free (mem=0x224268) at malloc.c:3714
g_free () from /lib/libglib-2.0.so.0
fallback_dialog_show (d=0x9af5008,
stack_notify_handler (self=0x9af1590,
dbus_glib_marshal_stack_VOID__STRING_UINT_STRING_STRING_STRING_BOXED_BOXED_INT_POINTER (closure=0xbf910620, return_value=0x0,

Revision history for this message
Apport retracing service (apport) wrote : ThreadStacktrace.txt (retraced)
Changed in notify-osd (Ubuntu):
importance: Undecided → Medium
tags: removed: need-i386-retrace
visibility: private → public
Mirco Müller (macslow)
Changed in notify-osd (Ubuntu):
status: New → In Progress
importance: Medium → High
assignee: nobody → Mirco Müller (macslow)
milestone: none → ubuntu-9.10
Revision history for this message
Mirco Müller (macslow) wrote :

Branch with fix for this is up for review here lp:~macslow/notify-osd/fix-438417 (just named the branch wrongly).

Revision history for this message
Mirco Müller (macslow) wrote :

Fix committed to Karmic maintainance branch of notify-osd.

Changed in notify-osd (Ubuntu):
status: In Progress → Fix Committed
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package notify-osd - 0.9.24-0ubuntu1

---------------
notify-osd (0.9.24-0ubuntu1) karmic; urgency=low

  * New upstream version:
    - fixed regression for newline-character replacement in the text_filter
    - fixed fonts issues (LP: #396736)
    - fixed crasher (LP: #425508
    - fixed another crasher (LP: #437088)
    - added workaround for icon-name-prefix substitution
    - fixed accidentally deleted drawing of drop-shadow for title-text
    - avoid re-executing glow-/dim-effect when synchronizing timeouts of bubbles

 -- Sebastien Bacher <email address hidden> Tue, 20 Oct 2009 11:23:14 +0200

Changed in notify-osd (Ubuntu):
status: Fix Committed → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.