[asterisk-bugs] [Asterisk 0015984]: QUEUE_MEMBER and QUEUE_MEMBER_COUNT tries to destroy queue, leading to segmentation fault

Asterisk Bug Tracker noreply at bugs.digium.com
Tue Nov 24 14:38:31 CST 2009


The following issue has been RESOLVED. 
====================================================================== 
https://issues.asterisk.org/view.php?id=15984 
====================================================================== 
Reported By:                atis
Assigned To:                tilghman
====================================================================== 
Project:                    Asterisk
Issue ID:                   15984
Category:                   Applications/app_queue
Reproducibility:            have not tried
Severity:                   crash
Priority:                   normal
Status:                     resolved
Target Version:             1.6.1.11
Asterisk Version:           SVN 
JIRA:                       SWP-315 
Regression:                 No 
Reviewboard Link:            
SVN Branch (only for SVN checkouts, not tarball releases): 1.6.1 
SVN Revision (number only!): 220631 
Request Review:              
Resolution:                 fixed
Fixed in Version:           
====================================================================== 
Date Submitted:             2009-09-29 10:12 CDT
Last Modified:              2009-11-24 14:38 CST
====================================================================== 
Summary:                    QUEUE_MEMBER and QUEUE_MEMBER_COUNT tries to destroy
queue, leading to segmentation fault
Description: 
Loops for queue_function_qac and queue_function_qac_dep are identical, so
both those functions should be affected.

Backtrace shows that queue_unref is calling destroy_queue, which however
calls queue_unref again, thus leading to recursion, limited by queue member
count.

Backtrace attached
======================================================================
Relationships       ID      Summary
----------------------------------------------------------------------
related to          0015982 [patch] Segmentation fault in queue_cmp_cb
====================================================================== 

Issue History 
Date Modified    Username       Field                    Change               
====================================================================== 
2009-11-24 14:38 svnbot         Status                   ready for testing =>
assigned
2009-11-24 14:38 svnbot         Status                   assigned => resolved
2009-11-24 14:38 svnbot         Resolution               open => fixed       
======================================================================




More information about the asterisk-bugs mailing list