Project

General

Profile

Actions

Bug #4646

closed

SEGV when bringing up Nokia InSite

Added by laforge over 2 years ago. Updated over 2 years ago.

Status:
Resolved
Priority:
Low
Assignee:
Category:
libosmogsm
Target version:
-
Start date:
07/04/2020
Due date:
% Done:

100%

Spec Reference:

Description

This is with "OpenBSC version 1.3.2.3-e811" and current libosmocore/libosmo-abis

root@sysmo-e1-tracer:~/git/openbsc/openbsc/src/osmo-nitb# LD_PRELOAD=/usr/lib/x86_64-linux-gnu/libasan.so.5  ./osmo-nitb -c ./openbsc-insite.cfg 
<001e> telnet_interface.c:104 Available via telnet 127.0.0.1 4242
<001f> input/lapd.c:251 (0:1-T1-S62): LAPD Allocating SAP for SAPI=62 / TEI=1 (dl=0x615000001500, sap=0x6150000014e0)
<001f> input/lapd.c:261 (0:1-T1-S62): k=1 N200=3 N201=260 T200=1.0 T203=10.0
<001f> input/lapd.c:524 (0:1-T1-S62): LAPD DL-ESTABLISH request TEI=1 SAPI=62
<0025> control_if.c:911 CTRL at 127.0.0.1 4249
DB: Database initialized.
DB: Database prepared.
<001f> input/lapd.c:660 ((0:1-T1-S62)) LAPD DL-ESTABLISH confirm TEI=1 SAPI=62
<0005> bts_nokia_site.c:56 bootstrapping OML for BTS 0
Getting attributes from BTS0 type nokia_site is not supported.
Getting attributes from BTS0 type nokia_site is not supported.
<0005> bts_nokia_site.c:1677 ABIS_OM_MDISC_FOM
<0005> bts_nokia_site.c:1505 (0x81) NOKIA_BTS_ACK
<0005> bts_nokia_site.c:1537 ACK = 1
<001f> input/lapd.c:551 (0:1-T1-S62): LAPD DL-RELEASE request TEI=1 SAPI=62
<001f> input/lapd.c:664 ((0:1-T1-S62)) LAPD DL-RELEASE confirm TEI=1 SAPI=62
<001f> input/lapd.c:289 (0:1-T1-S62): LAPD Freeing SAP for SAPI=62 / TEI=1 (dl=0x615000001500, sap=0x6150000014e0)
AddressSanitizer:DEADLYSIGNAL
=================================================================
==28749==ERROR: AddressSanitizer: SEGV on unknown address 0x000000000010 (pc 0x7f399d918633 bp 0x61600000b1e0 sp 0x7ffe298a0580 T0)
==28749==The signal is caused by a READ memory access.
==28749==Hint: address points to the zero page.
    #0 0x7f399d918632 in lapd_send_i src/gsm/lapd_core.c:1797
    #1 0x7f399d91b167 in lapd_rx_i src/gsm/lapd_core.c:1601
    #2 0x7f399d91b167 in lapd_ph_data_ind src/gsm/lapd_core.c:1642
    #3 0x7f399d7c787e in lapd_receive input/lapd.c:501
    #4 0x7f399d79a167 in e1inp_rx_ts_lapd /root/git/libosmo-abis/src/e1_input.c:708
    #5 0x7f399d7efd1f in handle_ts1_read input/dahdi.c:194
    #6 0x7f399d7efd1f in dahdi_fd_cb input/dahdi.c:484
    #7 0x7f399d8c54f3 in osmo_fd_disp_fds src/select.c:227
    #8 0x7f399d8c54f3 in _osmo_select_main src/select.c:265
    #9 0x7f399d8c5c05 in osmo_select_main src/select.c:274
    #10 0x563d2ab5335b in main /root/git/openbsc/openbsc/src/osmo-nitb/bsc_hack.c:400
    #11 0x7f399d32a09a in __libc_start_main ../csu/libc-start.c:308
    #12 0x563d2ab535d9 in _start (/root/git/openbsc/openbsc/src/osmo-nitb/osmo-nitb+0x125d9)

AddressSanitizer can not provide additional info.
SUMMARY: AddressSanitizer: SEGV src/gsm/lapd_core.c:1797 in lapd_send_i
==28749==ABORTING

Related issues

Related to libosmocore - Bug #1982: LAPD: segfault in lapd_est_req functionResolvedlaforge03/14/2017

Actions
Related to libosmocore - Bug #1760: LAPD: segfault in T200 call-backClosedlaforge07/03/2016

Actions
Related to OsmoBSC - Bug #1761: LAPD: segfault when bootstrapping Nokia InSiteResolvedlaforge07/03/2016

Actions
Actions

Also available in: Atom PDF

Add picture from clipboard (Maximum size: 48.8 MB)