GNOME Bugzilla – Bug 157281
crash with totem-gst
Last modified: 2004-12-22 21:47:04 UTC
Using totem-gst CVS HEAD, I've got a divx of nemo which crashes. BBB Is downloading it, here are traces I could gather, but they don't make much sense to me. The crashing doesn't alwyas happen, and the gdb backtrace is sometimes different :(
Created attachment 33402 [details] gdb backtrace
Created attachment 33403 [details] valgrind log
I can't make much sense out of this. I can only crash it after seeking. The debug log is not consistent, it seems. Valgrinding here showed a lot of mad errors (invalid-write-of-1), not sure if that's related. Using ffdec_mp3 instead seems to solve the direct crashes, but again, the crashes are inconsistent so it's very hard to tell... ==32615== Thread 2: ==32615== Invalid write of size 1 ==32615== at 0x1B90472A: memcpy (mac_replace_strmem.c:298) ==32615== by 0x1DAF26D1: gst_mad_chain (gstmad.c:1254) ==32615== by 0x1B94D688: gst_pad_call_chain_function (gstpad.c:4404) ==32615== by 0x1B94ABFB: gst_pad_push (gstpad.c:3216) ==32615== Address 0x1DA987C5 is 0 bytes after a block of size 7701 alloc'd ==32615== at 0x1B904A80: malloc (vg_replace_malloc.c:131) ==32615== by 0xC88976: g_malloc (in /usr/lib/libglib-2.0.so.0.400.7) ==32615== by 0x1DAF0862: gst_mad_init (gstmad.c:350) ==32615== by 0xD2C3A9: g_type_create_instance (in /usr/lib/libgobject-2.0.so.0.400.7) That's what I see in the log, mostly. I'll have a closer look at mad.
Fixed in CVS (by Company).