overlapping memcpy

overlapping memcpy

am 18.07.2008 19:05:04 von Frederic Heem

Hi,
Valgrind has found a problem related to an overlapping memcpy in mod_ssl
(Apache/2.2.9 (Unix)), here is the output:

==18546== Thread 5:
==18546== Source and destination overlap in memcpy(0x425E0E8, 0x425E10E,
141)
==18546== at 0x4007A42: memcpy (mc_replace_strmem.c:402)
==18546== by 0x446C464: ssl_io_input_read (in
/usr/local/apache2/modules/mod_ssl.so)
==18546== by 0x446C781: ssl_io_filter_input (in
/usr/local/apache2/modules/mod_ssl.so)
==18546== by 0x8068DB5: ap_rgetline_core (in
/usr/local/apache2/bin/httpd)
==18546== by 0x80690CE: ap_get_mime_headers_core (in
/usr/local/apache2/bin/httpd)
==18546== by 0x80696FC: ap_read_request (in /usr/local/apache2/bin/httpd)
==18546== by 0x80799DA: ap_process_http_connection (in
/usr/local/apache2/bin/httpd)
==18546== by 0x8076CEC: ap_run_process_connection (in
/usr/local/apache2/bin/httpd)
==18546== by 0x807FFD3: worker_thread (in /usr/local/apache2/bin/httpd)
==18546== by 0x4057603: dummy_worker (in
/usr/local/apache2/lib/libapr-1.so.0.3.0)
==18546== by 0x8E145A: start_thread (in /lib/libpthread-2.5.so)
==18546== by 0x71323D: clone (in /lib/libc-2.5.so)

This happens when an axis2 client sends a https request.
Let me know if you need more information.
Frederic Heem



____________________________________________________________ __________________

--- NOTICE ---

This email and any attachments are confidential and are intended for the
addressee only. If you have received this message by mistake, please contact
us immediately and then delete the message from your system. You must not
copy, distribute, disclose or act upon the contents of this email. Personal
and corporate data submitted will be used in a correct, transparent and lawful
manner. The data collected will be processed in paper or computerized form for
the performance of contractual and lawful obligations as well as for the
effective management of business relationship. The data processor is Telsey
S.p.A. The data subject may exercise all the rights set forth in art. 7 of
Law by Decree 30.06.2003 n. 196 as reported in the following url
http://www.telsey.com/privacy.asp.

____________________________________________________________ __________________
798t8RfNa6Dl8Ilf
____________________________________________________________ __________
Apache Interface to OpenSSL (mod_ssl) www.modssl.org
User Support Mailing List modssl-users@modssl.org
Automated List Manager majordomo@modssl.org

stop sending me this stuff please !!!!!!!!!!!

am 19.07.2008 03:17:06 von erika20

--NextPart_Webmail_9m3u9jl4l_25968_1216430226_0
Content-Type: text/plain
Content-Transfer-Encoding: quoted-printable

stop sendig me this=20
stuff please !!!!
take me out of your mailing list !!! thanks=20
-------------- Original message from Frederic Heem it>: --------------=20


> Hi,=20
> Valgrind has found a problem related to an overlapping memcpy in mod_ss=
l=20
> (Apache/2.2.9 (Unix)), here is the output:=20
>=20
> ==18546== Thread 5:=20
> ==18546== Source and destination overlap in memcpy(0x425E0E8, 0=
x425E10E,=20
> 141)=20
> ==18546== at 0x4007A42: memcpy (mc_replace_strmem.c:402)=20
> ==18546== by 0x446C464: ssl_io_input_read (in=20
> /usr/local/apache2/modules/mod_ssl.so)=20
> ==18546== by 0x446C781: ssl_io_filter_input (in=20
> /usr/local/apache2/modules/mod_ssl.so)=20
> ==18546== by 0x8068DB5: ap_rgetline_core (in=20
> /usr/local/apache2/bin/httpd)=20
> ==18546== by 0x80690CE: ap_get_mime_headers_core (in=20
> /usr/local/apache2/bin/httpd)=20
> ==18546== by 0x80696FC: ap_read_request (in /usr/local/apache2/=
bin/httpd)=20
> ==18546== by 0x80799DA: ap_process_http_connection (in=20
> /usr/local/apache2/bin/httpd)=20
> ==18546== by 0x8076CEC: ap_run_process_connection (in=20
> /usr/local/apache2/bin/httpd)=20
> ==18546== by 0x807FFD3: worker_thread (in /usr/local/apache2/bi=
n/httpd)=20
> ==18546== by 0x4057603: dummy_worker (in=20
> /usr/local/apache2/lib/libapr-1.so.0.3.0)=20
> ==18546== by 0x8E145A: start_thread (in /lib/libpthread-2.5.so)=
=20
> ==18546== by 0x71323D: clone (in /lib/libc-2.5.so)=20
>=20
> This happens when an axis2 client sends a https request.=20
> Let me know if you need more information.=20
> Frederic Heem=20
>=20
>=20
>=20
> ____________________________________________________________ ___________=
_______=20
>=20
> --- NOTICE ---=20
>=20
> This email and any attachments are confidential and are intended for th=
e=20
> addressee only. If you have received this message by mistake, please co=
ntact=20
> us immediately and then delete the message from your system. You must n=
ot=20
> copy, distribute, disclose or act upon the contents of this email. Pers=
onal=20
> and corporate data submitted will be used in a correct, transparent and=
lawful=20
> manner. The data collected will be processed in paper or computerized f=
orm for=20
> the performance of contractual and lawful obligations as well as for th=
e=20
> effective management of business relationship. The data processor is Te=
lsey=20
> S.p.A. The data subject may exercise all the rights set forth in art. 7=
of=20
> Law by Decree 30.06.2003 n. 196 as reported in the following url=20
> http://www.telsey.com/privacy.asp.=20
>=20
> ____________________________________________________________ ___________=
_______=20
> 798t8RfNa6Dl8Ilf=20
> ____________________________________________________________ __________=20
> Apache Interface to OpenSSL (mod_ssl) www.modssl.org=20
> User Support Mailing List modssl-users@modssl.org=20
> Automated List Manager majordomo@modssl.org=20

--NextPart_Webmail_9m3u9jl4l_25968_1216430226_0
Content-Type: multipart/related; boundary="NextPart_Webmail_9m3u9jl4l_25968_1216430226_1"


--NextPart_Webmail_9m3u9jl4l_25968_1216430226_1
Content-Type: text/html; charset="utf-8"
Content-Transfer-Encoding: quoted-printable







stop sendig me this

stuff please !!!!

take me out of your mailing list !!! th=
anks

0ff 2px solid">-------------- Original message from Frederic Heem <frede=
ric.heem@telsey.it>: --------------


> Hi,
> Valgri=
nd has found a problem related to an overlapping memcpy in mod_ssl
>=
(Apache/2.2.9 (Unix)), here is the output:
>
> ==18546=
== Thread 5:
> ==18546== Source and destination overlap =
in memcpy(0x425E0E8, 0x425E10E,
> 141)
> ==18546== at=
0x4007A42: memcpy (mc_replace_strmem.c:402)
> ==18546== by =
0x446C464: ssl_io_input_read (in
> /usr/local/apache2/modules/mod_ss=
l.so)
> ==18546== by 0x446C781: ssl_io_filter_input (in
=
> /usr/local/apache2/modules/mod_ssl.so)
> ==18546== by 0=
x8068DB5: ap_rgetline_core (in
> /usr/local/apache2/bin/httpd)
&=
gt; ==18546== by 0x80690CE: ap_get_mime_headers_core (in
> /=
usr/local/apache2/bin/httpd)
> ==18546== by 0x80696FC: ap_re=
ad_request (in /usr/local/apache2/bin/httpd)
> ==18546== by =
0x80799DA: ap_process_http_connection (in
> /usr/local/apache2/bin/h=
ttpd)
> ==18546== by 0x8076CEC: ap_run_process_connection (i=
n
> /usr/local/apache2/bin/httpd)
> ==18546== by 0x80=
7FFD3: worker_thread (in /usr/local/apache2/bin/httpd)
> ==18546=
== by 0x4057603: dummy_worker (in
> /usr/local/apache2/lib/libap=
r-1.so.0.3.0)
> ==18546== by 0x8E145A: start_thread (in /lib=
/libpthread-2.5.so)
> ==18546== by 0x71323D: clone (in /lib/=
libc-2.5.so)
>
> This happens when an axis2 client sends a ht=
tps request.
> Let me know if you need more information.
> Fr=
ederic Heem
>
>
>
> ___________________________=
___________________________________________________
>
> --- N=
OTICE ---
>
> This email and any attachments are confidential=
and are intended for the
> addressee only. If you have received thi=
s message by mistake, please contact
> us immediately and then delet=
e the message from your system. You must not
> copy, distribute, dis=
close or act upon the contents of this email. Personal
> and corpora=
te data submitted will be used in a correct, transparent and lawful
>=
; manner. The data collected will be processed in paper or computerized for=
m for
> the performance of contractual and lawful obligations as wel=
l as for the
> effective management of business relationship. The da=
ta processor is Telsey
> S.p.A. The data subject may exercise all th=
e rights set forth in art. 7 of
> Law by Decree 30.06.2003 n. 196 as=
reported in the following url
> http://www.telsey.com/privacy.asp. =

>
> _________________________________________________________=
_____________________
> 798t8RfNa6Dl8Ilf
> __________________=
____________________________________________________
> Apache Interf=
ace to OpenSSL (mod_ssl) www.modssl.org
> User Support Mailing List =
modssl-users@modssl.org
> Automated List Manager majordomo@modssl.or=
g






--NextPart_Webmail_9m3u9jl4l_25968_1216430226_1--

--NextPart_Webmail_9m3u9jl4l_25968_1216430226_0--
____________________________________________________________ __________
Apache Interface to OpenSSL (mod_ssl) www.modssl.org
User Support Mailing List modssl-users@modssl.org
Automated List Manager majordomo@modssl.org