develooper Front page | perl.perl5.porters | Postings from January 2017

[perl #130669] sv.c:2612: Perl_sv_2nv_flags: Assertion `SvTYPE(sv)!= SVt_PVAV && SvTYPE(sv) != SVt_PVHV && SvTYPE(sv) != SVt_PVFM' failed

Thread Next
From:
Sergey Aleynikov
Date:
January 29, 2017 15:27
Subject:
[perl #130669] sv.c:2612: Perl_sv_2nv_flags: Assertion `SvTYPE(sv)!= SVt_PVAV && SvTYPE(sv) != SVt_PVHV && SvTYPE(sv) != SVt_PVFM' failed
Message ID:
rt-4.0.24-22381-1485703584-681.130669-75-0@perl.org
# New Ticket Created by  Sergey Aleynikov 
# Please include the string:  [perl #130669]
# in the subject line of all future correspondence about this issue. 
# <URL: https://rt.perl.org/Ticket/Display.html?id=130669 >


This is a bug report for perl from sergey.aleynikov@gmail.com,
generated with the help of perlbug 1.40 running under perl 5.25.9.


-----------------------------------------------------------------
[Please describe your issue here]

While fuzzing perl v5.25.9-35-g32207c637b built with afl and run
under libdislocator, I found the following program

$INC{'attributes.pm'} = 1, eval q!-my(%c):_!

to cause an assertion failure. GDB info about the crash location:

(gdb) bt
#0  __GI_raise (sig=sig@entry=6) at ../sysdeps/unix/sysv/linux/raise.c:58
#1  0x00007f6cdecf840a in __GI_abort () at abort.c:89
#2  0x00007f6cdecefe47 in __assert_fail_base (fmt=<optimized out>,
    assertion=assertion@entry=0x7f6ce0bc1910 "SvTYPE(sv) != SVt_PVAV
&& SvTYPE(sv) != SVt_PVHV && SvTYPE(sv) != SVt_PVFM",
    file=file@entry=0x7f6ce0bc0196 "sv.c", line=line@entry=2612,
function=function@entry=0x7f6ce0bce860 <__PRETTY_FUNCTION__.16836>
"Perl_sv_2nv_flags")
    at assert.c:92
#3  0x00007f6cdecefef2 in __GI___assert_fail (
    assertion=assertion@entry=0x7f6ce0bc1910 "SvTYPE(sv) != SVt_PVAV
&& SvTYPE(sv) != SVt_PVHV && SvTYPE(sv) != SVt_PVFM",
    file=file@entry=0x7f6ce0bc0196 "sv.c", line=line@entry=2612,
function=function@entry=0x7f6ce0bce860 <__PRETTY_FUNCTION__.16836>
"Perl_sv_2nv_flags")
    at assert.c:101
#4  0x00007f6ce059dac3 in Perl_sv_2nv_flags
(sv=sv@entry=0x7f6ce26db6d0, flags=flags@entry=0) at sv.c:2611
#5  0x00007f6ce06d6f1a in Perl_pp_negate () at pp.c:2584
#6  0x00007f6ce03f45a3 in Perl_runops_debug () at dump.c:2444
#7  0x00007f6ce01502b5 in S_run_body (oldscope=1) at perl.c:2528
#8  perl_run (my_perl=<optimized out>) at perl.c:2451
#9  0x00007f6ce003b814 in main (argc=<optimized out>, argv=<optimized
out>, env=<optimized out>) at perlmain.c:123

[Please do not change anything below this line]
-----------------------------------------------------------------
---
Flags:
    category=core
    severity=low
---
Site configuration information for perl 5.25.9:

Configured by root at Sat Jan 14 02:25:05 MSK 2017.

Summary of my perl5 (revision 5 version 25 subversion 9) configuration:
  Commit id: cbe2fc5001aa59cdc73e04cc35e097a2ecfbeec0
  Platform:
    osname=linux
    osvers=3.16.0-4-amd64
    archname=x86_64-linux
    uname='linux dorothy 3.16.0-4-amd64 #1 smp debian 3.16.36-1+deb8u2
(2016-10-19) x86_64 gnulinux '
    config_args='-des -Dusedevel -DDEBUGGING -Dcc=afl-clang-fast
-Doptimize=-O0 -g -ggdb3'
    hint=recommended
    useposix=true
    d_sigaction=define
    useithreads=undef
    usemultiplicity=undef
    use64bitint=define
    use64bitall=define
    uselongdouble=undef
    usemymalloc=n
    bincompat5005=undef
  Compiler:
    cc='afl-clang-fast'
    ccflags ='-DDEBUGGING -fno-strict-aliasing -pipe
-fstack-protector-strong -I/usr/local/include -D_LARGEFILE_SOURCE
-D_FILE_OFFSET_BITS=64 -D_FORTIFY_SOURCE=2'
    optimize='-O0 -g -ggdb3'
    cppflags='-DDEBUGGING -fno-strict-aliasing -pipe
-fstack-protector-strong -I/usr/local/include'
    ccversion=''
    gccversion='4.2.1 Compatible Clang 3.9.1 (tags/RELEASE_391/rc2)'
    gccosandvers=''
    intsize=4
    longsize=8
    ptrsize=8
    doublesize=8
    byteorder=12345678
    doublekind=3
    d_longlong=define
    longlongsize=8
    d_longdbl=define
    longdblsize=16
    longdblkind=3
    ivtype='long'
    ivsize=8
    nvtype='double'
    nvsize=8
    Off_t='off_t'
    lseeksize=8
    alignbytes=8
    prototype=define
  Linker and Libraries:
    ld='afl-clang-fast'
    ldflags =' -fstack-protector-strong -L/usr/local/lib'
    libpth=/usr/local/lib /usr/lib/llvm-3.9/bin/../lib/clang/3.9.1/lib
/usr/include/x86_64-linux-gnu /usr/lib /lib/x86_64-linux-gnu
/lib/../lib /usr/lib/x86_64-linux-gnu /usr/lib/../lib /lib
    libs=-lpthread -lnsl -ldl -lm -lcrypt -lutil -lc
    perllibs=-lpthread -lnsl -ldl -lm -lcrypt -lutil -lc
    libc=libc-2.24.so
    so=so
    useshrplib=false
    libperl=libperl.a
    gnulibc_version='2.24'
  Dynamic Linking:
    dlsrc=dl_dlopen.xs
    dlext=so
    d_dlsymun=undef
    ccdlflags='-Wl,-E'
    cccdlflags='-fPIC'
    lddlflags='-shared -O0 -g -ggdb3 -L/usr/local/lib -fstack-protector-strong'


---
@INC for perl 5.25.9:
    lib
    /usr/local/lib/perl5/site_perl/5.25.9/x86_64-linux
    /usr/local/lib/perl5/site_perl/5.25.9
    /usr/local/lib/perl5/5.25.9/x86_64-linux
    /usr/local/lib/perl5/5.25.9

---
Environment for perl 5.25.9:
    HOME=/home/afl
    LANG=en_US.UTF-8
    LANGUAGE=en_US:en
    LD_LIBRARY_PATH (unset)
    LOGDIR (unset)
    PATH=/home/afl/perlbrew/bin:/home/afl/perlbrew/perls/perl-5.22.1/bin:/usr/local/bin:/usr/bin:/bin:/usr/local/games:/usr/games
    PERLBREW_BASHRC_VERSION=0.78
    PERLBREW_HOME=/home/afl/.perlbrew
    PERLBREW_MANPATH=/home/afl/perlbrew/perls/perl-5.22.1/man
    PERLBREW_PATH=/home/afl/perlbrew/bin:/home/afl/perlbrew/perls/perl-5.22.1/bin
    PERLBREW_PERL=perl-5.22.1
    PERLBREW_ROOT=/home/afl/perlbrew
    PERLBREW_VERSION=0.78
    PERL_BADLANG (unset)
    SHELL=/usr/bin/zsh


Thread Next


nntp.perl.org: Perl Programming lists via nntp and http.
Comments to Ask Bjørn Hansen at ask@perl.org | Group listing | About