Uploaded image for project: 'JDK'
  1. JDK
  2. JDK-7023287

Crash occurs with test case for CR#7000449(CVE-2010-4454) in jdk6u24 and jdk5.0u28

XMLWordPrintable

      A CU reported that a crash occurs in the test case(attached to this CR) for 7000449(CVE-2010-4454) in jdk6u24 and jdk5.0u28.

      Please seem comment section also.


      ---------
      #
      # A fatal error has been detected by the Java Runtime Environment:
      #
      # EXCEPTION_ACCESS_VIOLATION (0xc0000005) at pc=0x6d5c3938, pid=568, tid=2216
      #
      # JRE version: 6.0_24-b07
      # Java VM: Java HotSpot(TM) Client VM (19.1-b02 mixed mode windows-x86 )
      # Problematic frame:
      # C [jsound.dll+0x3938]
      #
      # If you would like to submit a bug report, please visit:
      # http://java.sun.com/webapps/bugreport/crash.jsp
      # The crash happened outside the Java Virtual Machine in native code.
      # See problematic frame for where to report the bug.
      #

      --------------- T H R E A D ---------------

      Current thread (0x02124c00): JavaThread "main" [_thread_in_native, id=2216, stack(0x02010000,0x02060000)]

      siginfo: ExceptionCode=0xc0000005, reading address 0x2e5f7000

      Registers:
      EAX=0x00000080, EBX=0x2e5f8f10, ECX=0x2e5f6bfc, EDX=0x2e67cb20
      ESP=0x0205fb94, EBP=0x0205fb98, ESI=0x2e5f9358, EDI=0x2e5f6bf0
      EIP=0x6d5c3938, EFLAGS=0x00210203

      Register to memory mapping:

      EAX=0x00000080
      0x00000080 is pointing to unknown location

      EBX=0x2e5f8f10
      0x2e5f8f10 is pointing to unknown location

      ECX=0x2e5f6bfc
      0x2e5f6bfc is pointing to unknown location

      EDX=0x2e67cb20
      0x2e67cb20 is pointing to unknown location

      ESP=0x0205fb94
      0x0205fb94 is pointing into the stack for thread: 0x02124c00
      "main" prio=6 tid=0x02124c00 nid=0x8a8 runnable [0x0205f000]
         java.lang.Thread.State: RUNNABLE

      EBP=0x0205fb98
      0x0205fb98 is pointing into the stack for thread: 0x02124c00
      "main" prio=6 tid=0x02124c00 nid=0x8a8 runnable [0x0205f000]
         java.lang.Thread.State: RUNNABLE

      ESI=0x2e5f9358
      0x2e5f9358 is pointing to unknown location

      EDI=0x2e5f6bf0
      0x2e5f6bf0 is pointing to unknown location


      Top of Stack: (sp=0x0205fb94)
      0x0205fb94: 2e5f6bf0 0205fbfc 6d5c68b9 2e5f6bf0
      0x0205fba4: 00000080 0205fbe4 00000000 1b5e41f8
      0x0205fbb4: 1b5e4178 00000004 00000000 0205fbec
      0x0205fbc4: 02128c10 00014ac8 00000000 0000000d
      0x0205fbd4: 0212cc20 6d5c311b 00000001 02124c00
      0x0205fbe4: 00000000 00000000 2e5f6bf0 00000080
      0x0205fbf4: 00000000 0205fc1c 0205fc1c 6d5c6b12
      0x0205fc04: 00000000 00000000 00000400 02124c00

      Instructions: (pc=0x6d5c3938)
      0x6d5c3928: 66 85 c0 59 74 45 66 39 45 0c 73 3f 0f b7 45 0c
      0x6d5c3938: 8b 4c c7 0e 56 8b 75 10 89 0e 8b 44 c7 12 8d 7e


      Stack: [0x02010000,0x02060000], sp=0x0205fb94, free space=318k
      Native frames: (J=compiled Java code, j=interpreted, Vv=VM code, C=native code)
      C [jsound.dll+0x3938]
      C [jsound.dll+0x68b9]
      C [jsound.dll+0x6b12]
      C [jsound.dll+0x3132]
      j com.sun.media.sound.AbstractPlayer.loadInstrument(Ljavax/sound/midi/Instrument;)Z+25
      j com.sun.media.sound.AbstractPlayer.loadAllInstruments(Ljavax/sound/midi/Soundbank;)Z+24
      j SplitInstr.main([Ljava/lang/String;)V+3140
      v ~StubRoutines::call_stub
      V [jvm.dll+0xf0ab9]
      V [jvm.dll+0x1837d1]
      V [jvm.dll+0xf0b3d]
      V [jvm.dll+0xfa0d6]
      V [jvm.dll+0x101cde]
      C [java.exe+0x2155]
      C [java.exe+0x85b4]
      C [kernel32.dll+0xb729]

      Java frames: (J=compiled Java code, j=interpreted, Vv=VM code)
      j com.sun.media.sound.AbstractPlayer.nLoadInstrument(JI)Z+0
      j com.sun.media.sound.AbstractPlayer.loadInstrument(Ljavax/sound/midi/Instrument;)Z+25
      j com.sun.media.sound.AbstractPlayer.loadAllInstruments(Ljavax/sound/midi/Soundbank;)Z+24
      j SplitInstr.main([Ljava/lang/String;)V+3140
      v ~StubRoutines::call_stub

      --------------- P R O C E S S ---------------

      Java Threads: ( => current thread )
        0x19c45c00 JavaThread "Java Sound Event Dispatcher" daemon [_thread_blocked, id=2588, stack(0x1b720000,0x1b770000)]
        0x19ca5c00 JavaThread "Java Sound Sequencer" [_thread_blocked, id=3788, stack(0x1b6d0000,0x1b720000)]
        0x19c87c00 JavaThread "Headspace mixer frame proc thread" daemon [_thread_in_native, id=2304, stack(0x19d30000,0x19d80000)]
        0x19bfcc00 JavaThread "Java Sound Event Dispatcher" daemon [_thread_blocked, id=3168, stack(0x19ce0000,0x19d30000)]
        0x18ff3c00 JavaThread "Java Sound Event Dispatcher" daemon [_thread_blocked, id=3332, stack(0x19b90000,0x19be0000)]
        0x18d90c00 JavaThread "Low Memory Detector" daemon [_thread_blocked, id=1648, stack(0x18e00000,0x18e50000)]
        0x18b65c00 JavaThread "CompilerThread0" daemon [_thread_blocked, id=1348, stack(0x18cb0000,0x18d00000)]
        0x18bf7c00 JavaThread "Attach Listener" daemon [_thread_blocked, id=396, stack(0x18c60000,0x18cb0000)]
        0x18bd0c00 JavaThread "Signal Dispatcher" daemon [_thread_blocked, id=3632, stack(0x18c10000,0x18c60000)]
        0x188ccc00 JavaThread "Finalizer" daemon [_thread_blocked, id=2044, stack(0x18ab0000,0x18b00000)]
        0x1898bc00 JavaThread "Reference Handler" daemon [_thread_blocked, id=4084, stack(0x18a60000,0x18ab0000)]
      =>0x02124c00 JavaThread "main" [_thread_in_native, id=2216, stack(0x02010000,0x02060000)]

      Other Threads:
        0x187fac00 VMThread [stack: 0x18a10000,0x18a60000] [id=544]
        0x18e8ac00 WatcherThread [stack: 0x18f50000,0x18fa0000] [id=1856]

      VM state:not at safepoint (normal execution)

      VM Mutex/Monitor currently owned by a thread: None

      Heap
       def new generation total 4928K, used 3704K [0x04420000, 0x04970000, 0x09970000)
        eden space 4416K, 72% used [0x04420000, 0x0473e138, 0x04870000)
        from space 512K, 100% used [0x048f0000, 0x04970000, 0x04970000)
        to space 512K, 0% used [0x04870000, 0x04870000, 0x048f0000)
       tenured generation total 10944K, used 1051K [0x09970000, 0x0a420000, 0x14420000)
         the space 10944K, 9% used [0x09970000, 0x09a76fc8, 0x09a77000, 0x0a420000)
       compacting perm gen total 12288K, used 2578K [0x14420000, 0x15020000, 0x18420000)
         the space 12288K, 20% used [0x14420000, 0x146a4b78, 0x146a4c00, 0x15020000)
      No shared spaces configured.

      Dynamic libraries:
      0x00400000 - 0x00424000 D:\Java\SUNJDK\6.0\jdk-6u24-fcs-bin-b07-windows-i586-03_feb_2011\jdk6_24\bin\java.exe
      0x7c940000 - 0x7c9df000 C:\WINDOWS\system32\ntdll.dll
      0x7c800000 - 0x7c933000 C:\WINDOWS\system32\kernel32.dll
      0x77d80000 - 0x77e29000 C:\WINDOWS\system32\ADVAPI32.dll
      0x77e30000 - 0x77ec3000 C:\WINDOWS\system32\RPCRT4.dll
      0x77fa0000 - 0x77fb1000 C:\WINDOWS\system32\Secur32.dll
      0x7c340000 - 0x7c396000 D:\Java\SUNJDK\6.0\jdk-6u24-fcs-bin-b07-windows-i586-03_feb_2011\jdk6_24\jre\bin\msvcr71.dll
      0x6d8a0000 - 0x6db46000 D:\Java\SUNJDK\6.0\jdk-6u24-fcs-bin-b07-windows-i586-03_feb_2011\jdk6_24\jre\bin\client\jvm.dll
      0x77cf0000 - 0x77d80000 C:\WINDOWS\system32\USER32.dll
      0x77ed0000 - 0x77f19000 C:\WINDOWS\system32\GDI32.dll
      0x76af0000 - 0x76b1b000 C:\WINDOWS\system32\WINMM.dll
      0x762e0000 - 0x762fd000 C:\WINDOWS\system32\IMM32.DLL
      0x60740000 - 0x60749000 C:\WINDOWS\system32\LPK.DLL
      0x73f80000 - 0x73feb000 C:\WINDOWS\system32\USP10.dll
      0x6d850000 - 0x6d85c000 D:\Java\SUNJDK\6.0\jdk-6u24-fcs-bin-b07-windows-i586-03_feb_2011\jdk6_24\jre\bin\verify.dll
      0x6d3d0000 - 0x6d3ef000 D:\Java\SUNJDK\6.0\jdk-6u24-fcs-bin-b07-windows-i586-03_feb_2011\jdk6_24\jre\bin\java.dll
      0x6d330000 - 0x6d338000 D:\Java\SUNJDK\6.0\jdk-6u24-fcs-bin-b07-windows-i586-03_feb_2011\jdk6_24\jre\bin\hpi.dll
      0x76ba0000 - 0x76bab000 C:\WINDOWS\system32\PSAPI.DLL
      0x6d890000 - 0x6d89f000 D:\Java\SUNJDK\6.0\jdk-6u24-fcs-bin-b07-windows-i586-03_feb_2011\jdk6_24\jre\bin\zip.dll
      0x6d5c0000 - 0x6d5e4000 D:\Java\SUNJDK\6.0\jdk-6u24-fcs-bin-b07-windows-i586-03_feb_2011\jdk6_24\jre\bin\jsound.dll
      0x6d5f0000 - 0x6d5f8000 D:\Java\SUNJDK\6.0\jdk-6u24-fcs-bin-b07-windows-i586-03_feb_2011\jdk6_24\jre\bin\jsoundds.dll
      0x73e50000 - 0x73eac000 C:\WINDOWS\system32\DSOUND.dll
      0x77bc0000 - 0x77c18000 C:\WINDOWS\system32\msvcrt.dll
      0x76970000 - 0x76aae000 C:\WINDOWS\system32\ole32.dll
      0x77bb0000 - 0x77bb8000 C:\WINDOWS\system32\VERSION.dll
      0x74660000 - 0x746ac000 C:\WINDOWS\system32\MSCTF.dll
      0x76be0000 - 0x76c0e000 C:\WINDOWS\system32\WINTRUST.dll
      0x765c0000 - 0x76654000 C:\WINDOWS\system32\CRYPT32.dll
      0x77c40000 - 0x77c52000 C:\WINDOWS\system32\MSASN1.dll
      0x76c40000 - 0x76c68000 C:\WINDOWS\system32\IMAGEHLP.dll
      0x72c70000 - 0x72c79000 C:\WINDOWS\system32\wdmaud.drv
      0x72c60000 - 0x72c68000 C:\WINDOWS\system32\msacm32.drv
      0x77b90000 - 0x77ba5000 C:\WINDOWS\system32\MSACM32.dll
      0x77b80000 - 0x77b87000 C:\WINDOWS\system32\midimap.dll

      VM Arguments:
      java_command: SplitInstr
      Launcher Type: SUN_STANDARD

      Environment Variables:
      PATH=D:\PROGRA~1\MKSTOO~1\bin;D:\PROGRA~1\MKSTOO~1\bin\X11;D:\PROGRA~1\MKSTOO~1\mksnt;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\GMAXCL\common\Program;C:\Program Files\Intel\DMIX;C:\PROGRA~1\XXXXXX\SLM\bin;C:\Program Files\Common Files\XXXXXX;C:\Program Files\TortoiseHg\;C:\Program Files\Microsoft Visual Studio\Common\Tools\WinNT;C:\Program Files\Microsoft Visual Studio\Common\MSDev98\Bin;C:\Program Files\Microsoft Visual Studio\Common\Tools;C:\Program Files\Microsoft Visual Studio\VC98\bin
      USERNAME=10383927
      SHELL=D:/PROGRA~1/MKSTOO~1/mksnt/sh.exe
      DISPLAY=:0.0
      OS=Windows_NT
      PROCESSOR_IDENTIFIER=x86 Family 6 Model 23 Stepping 10, GenuineIntel



      --------------- S Y S T E M ---------------

      OS: Windows XP Build 2600 Service Pack 3

      CPU:total 4 (4 cores per cpu, 1 threads per core) family 6 model 23 stepping 10, cmov, cx8, fxsr, mmx, sse, sse2, sse3, ssse3, sse4.1

      Memory: 4k page, physical 3628208k(1457316k free), swap 3460088k(1919028k free)

      vm_info: Java HotSpot(TM) Client VM (19.1-b02) for windows-x86 JRE (1.6.0_24-b07), built on Feb 2 2011 17:44:41 by "java_re" with MS VC++ 7.1 (VS2003)

      time: Wed Feb 23 20:30:58 2011
      elapsed time: 5 seconds
      --------

            Unassigned Unassigned
            tbaba Tadayuki Baba (Inactive)
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved:
              Imported:
              Indexed: