[General] Buffer overflow

2013-03-19 Thread Philippe DE ROCHAMBEAU
Hello,

When I type a word in the Search Form Input field and press Search!, I get a 
buffer overflow error.

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] *** buffer overflow 
detected ***: /var/www/cgi-bin/search.cgi terminated
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] === Backtrace: 
=
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x52dae5]
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x52da7e]
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x52d523]
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x52d408]
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x440c98]
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x44d247]
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x4171dd]
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x404566]
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x4b6056]
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x405201]
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] === Memory map: 

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] 0040-00685000 
r-xp  fd:00 334904 
/var/www/cgi-bin/search.cgi
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] 00885000-008e 
rw-p 00285000 fd:00 334904 
/var/www/cgi-bin/search.cgi
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] 008e-008ec000 
rw-p  00:00 0
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] 01ee-01f6d000 
rw-p  00:00 0  [heap]
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] 
399c40-399c42 r-xp  fd:00 318247 
/lib64/ld-2.12.so
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] 
399c42-399c61f000 ---p 0002 fd:00 318247 
/lib64/ld-2.12.so
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] 
399c61f000-399c62 r--p 0001f000 fd:00 318247 
/lib64/ld-2.12.so
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] 
399c62-399c621000 rw-p 0002 fd:00 318247 
/lib64/ld-2.12.so
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] 
399c621000-399c622000 rw-p  00:00 0
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] 
399cc0-399cd89000 r-xp  fd:00 318254 
/lib64/libc-2.12.so
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] 
399cd89000-399cf89000 ---p 00189000 fd:00 318254 
/lib64/libc-2.12.so
[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] 
399cf89000-399cf8d000 r--p 00189000 fd:00 318254

Configuration: mnogosearch 3.3.13 on Linux 2.6.32

Any help would be greatly appreciated.

Philippe

P In order to preserve the environment, please do not print this message unless 
it is necessary.
___
General mailing list
General@mnogosearch.org
http://lists.mnogosearch.org/listinfo/general


Re: [General] Buffer overflow

2013-03-19 Thread Alexander Barkov

Hi,

What are exactly your Linux distribution and version?

Does it crash on all queries, or on a certain query only?

Please try to run search.cgi from command line like this:

./search.cgi query words

where query words are the search words that make it crash.

Does it crash when started from command line?

If so, it would be nice to get a gdb backtrace.

Please do the following:

gdb search cgi
(gdb) run query words
(gdb) backtrace

Thanks.


On 03/19/2013 08:31 PM, Philippe DE ROCHAMBEAU wrote:

Hello,

When I type a word in the Search Form Input field and press Search!, I
get a buffer overflow error.

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] *** buffer
overflow detected ***: /var/www/cgi-bin/search.cgi terminated

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] ===
Backtrace: =

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x52dae5]

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x52da7e]

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x52d523]

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x52d408]

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x440c98]

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x44d247]

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x4171dd]

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x404566]

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x4b6056]

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] [0x405201]

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx] ===
Memory map: 

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx]
0040-00685000 r-xp  fd:00 334904
/var/www/cgi-bin/search.cgi

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx]
00885000-008e rw-p 00285000 fd:00 334904
/var/www/cgi-bin/search.cgi

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx]
008e-008ec000 rw-p  00:00 0

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx]
01ee-01f6d000 rw-p  00:00 0
[heap]

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx]
399c40-399c42 r-xp  fd:00 318247
   /lib64/ld-2.12.so

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx]
399c42-399c61f000 ---p 0002 fd:00 318247
/lib64/ld-2.12.so

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx]
399c61f000-399c62 r--p 0001f000 fd:00 318247
/lib64/ld-2.12.so

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx]
399c62-399c621000 rw-p 0002 fd:00 318247
/lib64/ld-2.12.so

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx]
399c621000-399c622000 rw-p  00:00 0

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx]
399cc0-399cd89000 r-xp  fd:00 318254
/lib64/libc-2.12.so

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx]
399cd89000-399cf89000 ---p 00189000 fd:00 318254
/lib64/libc-2.12.so

[Tue Mar 19 17:24:45 2013] [error] [client xxx.xxx.xxx.xxx]
399cf89000-399cf8d000 r--p 00189000 fd:00 318254

Configuration: mnogosearch 3.3.13 on Linux 2.6.32

Any help would be greatly appreciated.

Philippe

P In order to preserve the environment, please do not print this message
unless it is necessary.



___
General mailing list
General@mnogosearch.org
http://lists.mnogosearch.org/listinfo/general


___
General mailing list
General@mnogosearch.org
http://lists.mnogosearch.org/listinfo/general