Summary: | invalid memory read in find_abstract_instance_name | ||
---|---|---|---|
Product: | binutils | Reporter: | Agostino Sarubbo <ago> |
Component: | binutils | Assignee: | Alan Modra <amodra> |
Status: | RESOLVED FIXED | ||
Severity: | normal | ||
Priority: | P2 | ||
Version: | 2.30 | ||
Target Milestone: | 2.30 | ||
Host: | Target: | ||
Build: | Last reconfirmed: | 2017-09-26 00:00:00 | |
Attachments: |
stacktrace
testcase |
Description
Agostino Sarubbo
2017-09-26 06:48:52 UTC
Created attachment 10482 [details]
stacktrace
Created attachment 10483 [details]
testcase
The testcase doesn't segfault for me, but I can see why it might. The master branch has been updated by Alan Modra <amodra@sourceware.org>: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=1b86808a86077722ee4f42ff97f836b12420bb2a commit 1b86808a86077722ee4f42ff97f836b12420bb2a Author: Alan Modra <amodra@gmail.com> Date: Tue Sep 26 21:47:24 2017 +0930 PR22209, invalid memory read in find_abstract_instance_name This patch adds bounds checking for DW_FORM_ref_addr die refs, and calculates them relative to the first .debug_info section. See the big comment for why calculating relative to the current .debug_info section was wrong for relocatable object files. PR 22209 * dwarf2.c (struct comp_unit): Delete sec_info_ptr field. (find_abstract_instance_name): Calculate DW_FORM_ref_addr relative to stash->info_ptr_memory, and check die_ref is within that memory. Set info_ptr_end correctly when another CU is refd. Check die_ref for DW_FORM_ref4 etc. is within CU. Fixed |