[email protected] writes:
>>Synopsis: tmux can be made to dump core when a certain bind-key option is
>>present
>>Category: system
>>Environment:
> System : OpenBSD 6.0
> Details : OpenBSD 6.0-current (GENERIC.MP) #158: Mon Jan 30
> 19:30:12 MST 2017
>
> [email protected]:/usr/src/sys/arch/amd64/compile/GENERIC.MP
>
> Architecture: OpenBSD.amd64
> Machine : amd64
>>Description:
>
> When in a tmux session hitting the command prefix key + PgUp and PgDn
> immediately afterwards causes a core dump if a certain bind-key option
> is present. The backtrace is not useful (/etc/malloc.conf -> CFGJU).
>
> This bind-key is not necessary as far as I can tell, since the default
> behavior of recent tmux seems to be what that bind-key intends to do
> (enter copy mode when C-b PageUp is pressed). I don't know how I had
> it in my ~/.tmux.conf, but commenting it out stops the core dump.
>
>>How-To-Repeat:
> (1) tmux with the default configuration (mv away your ~/.tmux.conf
> or touch nonexistent_file && tmux -f nonexistent_file)
> (2) Hit C-b : bind-key PageUp copy-mode -eu
> (3) Hit C-b PageUp PageDown
Here is a backtrace from this snap:
OpenBSD 6.0-current (GENERIC.MP) #163: Sun Feb 5 13:55:12 MST 2017
[email protected]:/usr/src/sys/arch/amd64/compile/GENERIC.MP
(gdb) bt
#0 0x0000075cf82507aa in thrkill () at <stdin>:2
#1 0x0000075cf828f749 in *_libc_abort () at /usr/src/lib/libc/stdlib/abort.c:52
#2 0x0000075cf8230012 in wrterror (d=Variable "d" is not available.
) at /usr/src/lib/libc/stdlib/malloc.c:303
#3 0x0000075cf8231284 in ofree (argpool=0x75c37135ca0, p=0xdfdfdfdfdfdfdfdf)
at /usr/src/lib/libc/stdlib/malloc.c:1374
#4 0x0000075cf82314eb in free (ptr=0xdfdfdfdfdfdfdfdf) at
/usr/src/lib/libc/stdlib/malloc.c:1407
#5 0x0000075a03942208 in tty_cmd_clearcharacter () from /usr/bin/tmux
#6 0x0000075a039453c8 in tty_cmd_clearcharacter () from /usr/bin/tmux
#7 0x0000075a0390cb02 in ?? () from /usr/bin/tmux
#8 0x0000075a03914ab2 in ?? () from /usr/bin/tmux
#9 0x0000075a03932cf0 in control_callback () from /usr/bin/tmux
#10 0x0000075a03929908 in control_callback () from /usr/bin/tmux
#11 0x0000075a03932c8a in control_callback () from /usr/bin/tmux
#12 0x0000075a039038f4 in ?? () from /usr/bin/tmux
#13 0x0000075a03939bdf in control_callback () from /usr/bin/tmux
#14 0x0000075a03900f6e in ?? () from /usr/bin/tmux
#15 0x0000000000000000 in ?? ()
>>Fix:
>
> Sadly, I don't have one.
>
>
> dmesg:
> OpenBSD 6.0-current (GENERIC.MP) #158: Mon Jan 30 19:30:12 MST 2017
> [email protected]:/usr/src/sys/arch/amd64/compile/GENERIC.MP
> real mem = 4201316352 (4006MB)
> avail mem = 4069326848 (3880MB)
> mpath0 at root
> scsibus0 at mpath0: 256 targets
> mainbus0 at root
> bios0 at mainbus0: SMBIOS rev. 2.4 @ 0xe0010 (63 entries)
> bios0: vendor LENOVO version "7NETC1WW (2.21 )" date 10/09/2009
> bios0: LENOVO 7666WD4
> acpi0 at bios0: rev 2
> acpi0: sleep states S0 S3 S4 S5
> acpi0: tables DSDT FACP SSDT ECDT TCPA APIC MCFG HPET SLIC BOOT ASF! SSDT
> SSDT SSDT SSDT
> acpi0: wakeup devices LID_(S3) SLPB(S3) IGBE(S4) EXP0(S4) EXP1(S4) EXP2(S4)
> EXP3(S4) EXP4(S4) PCI1(S4) USB0(S3) USB1(S3) USB2(S3) USB3(S3) USB4(S3)
> EHC0(S3) EHC1(S3) [...]
> acpitimer0 at acpi0: 3579545 Hz, 24 bits
> acpiec0 at acpi0
> acpimadt0 at acpi0 addr 0xfee00000: PC-AT compat
> cpu0 at mainbus0: apid 0 (boot processor)
> cpu0: Intel(R) Core(TM)2 Duo CPU L7500 @ 1.60GHz, 1795.86 MHz
> cpu0:
> FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,PBE,SSE3,DTES64,MWAIT,DS-CPL,VMX,EST,TM2,SSSE3,CX16,xTPR,PDCM,NXE,LONG,LAHF,PERF,SENSOR
> cpu0: 4MB 64b/line 16-way L2 cache
> cpu0: smt 0, core 0, package 0
> mtrr: Pentium Pro MTRR support, 8 var ranges, 88 fixed ranges
> cpu0: apic clock running at 199MHz
> cpu0: mwait min=64, max=64, C-substates=0.2.2.2.2, IBE
> cpu1 at mainbus0: apid 1 (application processor)
> cpu1: Intel(R) Core(TM)2 Duo CPU L7500 @ 1.60GHz, 1596.00 MHz
> cpu1:
> FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,PBE,SSE3,DTES64,MWAIT,DS-CPL,VMX,EST,TM2,SSSE3,CX16,xTPR,PDCM,NXE,LONG,LAHF,PERF,SENSOR
> cpu1: 4MB 64b/line 16-way L2 cache
> cpu1: smt 0, core 1, package 0
> ioapic0 at mainbus0: apid 1 pa 0xfec00000, version 20, 24 pins
> acpimcfg0 at acpi0 addr 0xf0000000, bus 0-63
> acpihpet0 at acpi0: 14318179 Hz
> acpiprt0 at acpi0: bus 0 (PCI0)
> acpiprt1 at acpi0: bus -1 (AGP_)
> acpiprt2 at acpi0: bus 2 (EXP0)
> acpiprt3 at acpi0: bus 3 (EXP1)
> acpiprt4 at acpi0: bus -1 (EXP2)
> acpiprt5 at acpi0: bus -1 (EXP3)
> acpiprt6 at acpi0: bus -1 (EXP4)
> acpiprt7 at acpi0: bus 5 (PCI1)
> acpicpu0 at acpi0: !C3(250@17 mwait.3@0x20), !C2(500@1 mwait.1@0x10),
> C1(1000@1 mwait.1), PSS
> acpicpu1 at acpi0: !C3(250@17 mwait.3@0x20), !C2(500@1 mwait.1@0x10),
> C1(1000@1 mwait.1), PSS
> acpipwrres0 at acpi0: PUBS, resource for USB0, USB2, USB4, EHC0, EHC1
> acpitz0 at acpi0: critical temperature is 127 degC
> acpitz1 at acpi0: critical temperature is 100 degC
> acpibtn0 at acpi0: LID_
> acpibtn1 at acpi0: SLPB
> "PNP0303" at acpi0 not configured
> "IBM3780" at acpi0 not configured
> acpibat0 at acpi0: BAT0 model "42T4571" serial 6529 type LION oem "SONY"
> acpiac0 at acpi0: AC unit online
> acpithinkpad0 at acpi0
> acpidock0 at acpi0: GDCK not docked (0)
> acpivideo0 at acpi0: VID_
> acpivout0 at acpivideo0: LCD0
> acpivideo1 at acpi0: VID_
> cpu0: Enhanced SpeedStep 1795 MHz: speeds: 1601, 1600, 1200, 800 MHz
> pci0 at mainbus0 bus 0
> pchb0 at pci0 dev 0 function 0 "Intel GM965 Host" rev 0x0c
> inteldrm0 at pci0 dev 2 function 0 "Intel GM965 Video" rev 0x0c
> drm0 at inteldrm0
> intagp0 at inteldrm0
> agp0 at intagp0: aperture at 0xe0000000, size 0x10000000
> inteldrm0: msi
> inteldrm0: 1024x768, 32bpp
> wsdisplay0 at inteldrm0 mux 1: console (std, vt100 emulation)
> wsdisplay0: screen 1-5 added (std, vt100 emulation)
> "Intel GM965 Video" rev 0x0c at pci0 dev 2 function 1 not configured
> em0 at pci0 dev 25 function 0 "Intel ICH8 IGP M AMT" rev 0x03: msi, address
> 00:16:d3:c6:70:55
> uhci0 at pci0 dev 26 function 0 "Intel 82801H USB" rev 0x03: apic 1 int 20
> uhci1 at pci0 dev 26 function 1 "Intel 82801H USB" rev 0x03: apic 1 int 21
> ehci0 at pci0 dev 26 function 7 "Intel 82801H USB" rev 0x03: apic 1 int 22
> usb0 at ehci0: USB revision 2.0
> uhub0 at usb0 configuration 1 interface 0 "Intel EHCI root hub" rev 2.00/1.00
> addr 1
> azalia0 at pci0 dev 27 function 0 "Intel 82801H HD Audio" rev 0x03: msi
> azalia0: codecs: Analog Devices AD1984, Conexant/0x2bfa, using Analog Devices
> AD1984
> audio0 at azalia0
> ppb0 at pci0 dev 28 function 0 "Intel 82801H PCIE" rev 0x03: msi
> pci1 at ppb0 bus 2
> ppb1 at pci0 dev 28 function 1 "Intel 82801H PCIE" rev 0x03: msi
> pci2 at ppb1 bus 3
> iwn0 at pci2 dev 0 function 0 "Intel Wireless WiFi Link 4965" rev 0x61: msi,
> MIMO 2T3R, MoW1, address 00:1d:e0:38:87:cd
> uhci2 at pci0 dev 29 function 0 "Intel 82801H USB" rev 0x03: apic 1 int 16
> uhci3 at pci0 dev 29 function 1 "Intel 82801H USB" rev 0x03: apic 1 int 17
> ehci1 at pci0 dev 29 function 7 "Intel 82801H USB" rev 0x03: apic 1 int 19
> usb1 at ehci1: USB revision 2.0
> uhub1 at usb1 configuration 1 interface 0 "Intel EHCI root hub" rev 2.00/1.00
> addr 1
> ppb2 at pci0 dev 30 function 0 "Intel 82801BAM Hub-to-PCI" rev 0xf3
> pci3 at ppb2 bus 5
> cbb0 at pci3 dev 0 function 0 "Ricoh 5C476 CardBus" rev 0xba: apic 1 int 16
> "Ricoh 5C832 Firewire" rev 0x04 at pci3 dev 0 function 1 not configured
> sdhc0 at pci3 dev 0 function 2 "Ricoh 5C822 SD/MMC" rev 0x21: apic 1 int 18
> sdhc0: SDHC 1.0, 33 MHz base clock
> sdmmc0 at sdhc0: 4-bit, sd high-speed, mmc high-speed
> cardslot0 at cbb0 slot 0 flags 0
> cardbus0 at cardslot0: bus 6 device 0 cacheline 0x8, lattimer 0xb0
> pcmcia0 at cardslot0
> pcib0 at pci0 dev 31 function 0 "Intel 82801HEM LPC" rev 0x03
> pciide0 at pci0 dev 31 function 1 "Intel 82801HBM IDE" rev 0x03: DMA, channel
> 0 configured to compatibility, channel 1 configured to compatibility
> pciide0: channel 0 disabled (no drives)
> pciide0: channel 1 ignored (disabled)
> ahci0 at pci0 dev 31 function 2 "Intel 82801HBM AHCI" rev 0x03: msi, AHCI 1.1
> ahci0: port 0: 1.5Gb/s
> scsibus1 at ahci0: 32 targets
> sd0 at scsibus1 targ 0 lun 0: <ATA, ST980817AS, 3.CM> SCSI3 0/direct fixed
> naa.5000c5000e702274
> sd0: 76319MB, 512 bytes/sector, 156301488 sectors
> ichiic0 at pci0 dev 31 function 3 "Intel 82801H SMBus" rev 0x03: apic 1 int 23
> iic0 at ichiic0
> usb2 at uhci0: USB revision 1.0
> uhub2 at usb2 configuration 1 interface 0 "Intel UHCI root hub" rev 1.00/1.00
> addr 1
> usb3 at uhci1: USB revision 1.0
> uhub3 at usb3 configuration 1 interface 0 "Intel UHCI root hub" rev 1.00/1.00
> addr 1
> usb4 at uhci2: USB revision 1.0
> uhub4 at usb4 configuration 1 interface 0 "Intel UHCI root hub" rev 1.00/1.00
> addr 1
> usb5 at uhci3: USB revision 1.0
> uhub5 at usb5 configuration 1 interface 0 "Intel UHCI root hub" rev 1.00/1.00
> addr 1
> isa0 at pcib0
> isadma0 at isa0
> pckbc0 at isa0 port 0x60/5 irq 1 irq 12
> pckbd0 at pckbc0 (kbd slot)
> wskbd0 at pckbd0: console keyboard, using wsdisplay0
> pms0 at pckbc0 (aux slot)
> wsmouse0 at pms0 mux 0
> pcppi0 at isa0 port 0x61
> spkr0 at pcppi0
> aps0 at isa0 port 0x1600/31
> vmm0 at mainbus0: VMX
> acpivideo0: unknown event 0x00
> uhub6 at uhub0 port 3 configuration 1 interface 0 "Genesys Logic USB2.0 Hub"
> rev 2.00/32.98 addr 2
> ualea0 at uhub6 port 2 configuration 1 interface 0 "Araneus Alea II TRNG" rev
> 2.00/2.04 addr 3
> uvideo0 at uhub1 port 1 configuration 1 interface 0 "AVEO Technology Corp.
> USB2.0 Camera" rev 2.00/8.17 addr 2
> video0 at uvideo0
> vscsi0 at root
> scsibus2 at vscsi0: 256 targets
> softraid0 at root
> scsibus3 at softraid0: 256 targets
> root on sd0a (fef71ebfa57e6693.a) swap on sd0b dump on sd0b
>
> usbdevs:
> Controller /dev/usb0:
> addr 1: high speed, self powered, config 1, EHCI root hub(0x0000),
> Intel(0x8086), rev 1.00
> port 1 powered
> port 2 powered
> port 3 addr 2: high speed, self powered, config 1, USB2.0 Hub(0x0608),
> Genesys Logic(0x05e3), rev 32.98
> port 1 powered
> port 2 addr 3: full speed, power 50 mA, config 1, Alea II TRNG(0x0001),
> Araneus(0x12d8), rev 2.04, iSerialNumber 003709
> port 3 powered
> port 4 powered
> port 4 powered
> Controller /dev/usb1:
> addr 1: high speed, self powered, config 1, EHCI root hub(0x0000),
> Intel(0x8086), rev 1.00
> port 1 powered
> port 2 addr 2: high speed, power 500 mA, config 1, USB2.0 Camera(0x0306),
> AVEO Technology Corp.(0x1871), rev 8.17
> port 3 powered
> port 4 powered
> Controller /dev/usb2:
> addr 1: full speed, self powered, config 1, UHCI root hub(0x0000),
> Intel(0x8086), rev 1.00
> port 1 powered
> port 2 powered
> Controller /dev/usb3:
> addr 1: full speed, self powered, config 1, UHCI root hub(0x0000),
> Intel(0x8086), rev 1.00
> port 1 powered
> port 2 powered
> Controller /dev/usb4:
> addr 1: full speed, self powered, config 1, UHCI root hub(0x0000),
> Intel(0x8086), rev 1.00
> port 1 powered
> port 2 powered
> Controller /dev/usb5:
> addr 1: full speed, self powered, config 1, UHCI root hub(0x0000),
> Intel(0x8086), rev 1.00
> port 1 powered
> port 2 powered
--
https://haqistan.net/~attila | attila@{stalphonsos.com,haqistan.net}
pgp: 0x62A729CF | C2CE 2487 03AC 4C2F 101D 09C1 4068 D5D5 62A7 29CF