Closed Bug 77351 Opened 23 years ago Closed 23 years ago

Mozilla crashes when loading www.anandtech.com (chunk_free)

Categories

(Core :: Graphics: ImageLib, defect)

x86
Linux
defect
Not set
critical

Tracking

()

VERIFIED DUPLICATE of bug 77442

People

(Reporter: hot_n_spanmy, Assigned: pavlov)

References

()

Details

(Keywords: crash, top100, Whiteboard: 0.9?)

Mozilla crashes when loading www.anandtech.com

tested on a homebrew build from a few minutes ago.

i'm guessing the imagelib component, but i really don't have a clue
confirming this (linux build 2001042408).

below you can find some infos from the debugger!


Program received signal SIGSEGV, Segmentation fault.
0x40227872 in chunk_free (ar_ptr=0x402b21a0, p=0x890e020) at malloc.c:3100
3100
malloc.c: Datei oder Verzeichnis nicht gefunden.
(gdb) where
#0  0x40227872 in chunk_free (ar_ptr=0x402b21a0, p=0x890e020) at malloc.c:3100
#1  0x4022773f in free () at malloc.c:2952
#2  0x4019beb0 in PR_Free () from /home/jur/ftp/test/mozilla/libnspr4.so
#3  0x4099badd in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgfx_gtk.so
#4  0x4099bb8b in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgfx_gtk.so
#5  0x409a47fc in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgfx_gtk.so
#6  0x409a48ad in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgfx_gtk.so
#7  0x4002e93d in nsRenderingContextImpl::DrawScaledImage () from
/home/jur/ftp/test/mozilla/libgkgfx.so
#8  0x40e7aea9 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#9  0x40e67ba1 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#10 0x40e63f54 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#11 0x40e63dba in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#12 0x40e67ba1 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#13 0x40e67a7c in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#14 0x40effeff in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#15 0x40f0f067 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#16 0x40f0ef32 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#17 0x40f10fd7 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#18 0x40f10ec5 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#19 0x40e67ba1 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#20 0x40e67a7c in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#21 0x40f057a0 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#22 0x40e67ba1 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#23 0x40f0b58e in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#24 0x40e67ba1 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#25 0x40e63f54 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#26 0x40e63dba in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#27 0x40e67ba1 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#28 0x40e63f54 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#29 0x40e63dba in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#30 0x40e67ba1 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#31 0x40e67a7c in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#32 0x40e73828 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#33 0x40e74562 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#34 0x40e95c1f in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgklayout.so
#35 0x40fc046b in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgkview.so
#36 0x40fc88a6 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgkview.so
#37 0x40fc8690 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgkview.so
#38 0x40fc77ba in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgkview.so
#39 0x40fc9a01 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgkview.so
#40 0x40fbffdd in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libgkview.so
#41 0x40520cba in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libwidget_gtk.so
#42 0x40520be5 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libwidget_gtk.so
#43 0x40524595 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libwidget_gtk.so
#44 0x40524715 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libwidget_gtk.so
#45 0x405247fc in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libwidget_gtk.so
#46 0x40524459 in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libwidget_gtk.so
#47 0x406c2cbf in g_idle_dispatch (source_data=0x40524410,
dispatch_time=0xbffff0ec, user_data=0x0) at gmain.c:1364
#48 0x406c1bd6 in g_main_dispatch (dispatch_time=0xbffff0ec) at gmain.c:656
#49 0x406c2203 in g_main_iterate (block=1, dispatch=1) at gmain.c:877
#50 0x406c23cc in g_main_run () at gmain.c:884
#51 0x405e100c in gtk_main () at gtkmain.c:807
#52 0x40513b8c in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libwidget_gtk.so
#53 0x404f33aa in NSGetModule () from
/home/jur/ftp/test/mozilla/components/libnsappshell.so
#54 0x804d334 in StringAllocator_char ()
#55 0x804dbb5 in StringAllocator_char ()
#56 0x401eea5e in __libc_start_main () at ../sysdeps/generic/libc-start.c:93
Status: UNCONFIRMED → NEW
Ever confirmed: true
Summary: Mozilla crashes when loading www.anandtech.com → Mozilla crashes when loading www.anandtech.com (chunk_free)
Mozilla Linux 2001042408 also crashes on visiting http://www.linuxgames.com/.

I attempted to disable image loading in order to verify that this crash
was imagelib related, but Mozilla isn't honoring the 'disable image load'
option under Advanced/Images preferences.  I'm filing a separate bug for
that.
linux debug build from 2001-04-24 morning.  I get no crash, but I see the
following assertion four times:

###!!! ASSERTION: You can't draw an image with a 0 width or height!: 'aSWidth >
0 && aDWidth > 0 && aSHeight > 0 && aDHeight > 0', file nsImageGTK.cpp, line 546
###!!! Break: at file nsImageGTK.cpp, line 546

Same thing with www.linuxgames.com -- no crash, but assertions.
With a nightly (2001-04-24-08) I _do_ get the crash.  Also crashes on
http://www.news.com, which is top100.

Chances are, the builds I build myself have gdk-pixbuf while the nightlys do not...
Keywords: crash, top100
Whiteboard: 0.9?
it's not just those two sites.  x86/Linux build 2001042408 is killing
http://www.realplayer.com (not that you can load the plugin, anyway) and
http://www.userfriendly.org/static (really upseting), not to mention several
other sites i've visited today.
duplicate of bug 77442?
looks like it could very well be 77442....  we should retest this once that's fixed.
this bug crashes soooo many pages, that it is a MUST fix for 0.9 IMHO.
This is rather a blocker to me. It happens on at least two pages which I visit
daily. This MUST be fixed in 0.9
Marking dup of bug 77442 (fixed) based on stack trace.


*** This bug has been marked as a duplicate of 77442 ***
Status: NEW → RESOLVED
Closed: 23 years ago
Resolution: --- → DUPLICATE
Verified Linux 2001062021 - no longer crashing
Status: RESOLVED → VERIFIED
You need to log in before you can comment on or make changes to this bug.