GNOME Bugzilla – Bug 498846
Crash in gog_dropbar_view_render()
Last modified: 2007-11-22 13:54:51 UTC
Version: r1980 OS: Ubuntu Gutsy Steps to reproduce: - Run Gnumeric - Import gnumeric/samples/ttest.xls - Select the "Paired-One" sheet - Edit > Select > Select All - Insert > Chart - Click on the DropBar type - Press the Show sample button to crash Gnumeric Backtrace: Program received signal SIGSEGV, Segmentation fault.
+ Trace 179166
Thread NaN (LWP 12458)
Valgrind output: ==12400== Use of uninitialised value of size 4 ==12400== at 0xBB42FDE: gog_dropbar_view_render (gog-dropbar.c:262) ==12400== by 0x460788D: gog_view_render (gog-view.c:782) ==12400== by 0x460D47A: gog_chart_view_render (gog-chart.c:912) ==12400== by 0x46078B2: gog_view_render (gog-view.c:787) ==12400== by 0x4606E13: gog_view_render_real (gog-view.c:561) ==12400== by 0x4605603: gog_outlined_view_render (gog-outlined-object.c:157) ==12400== by 0x460A1B6: gog_graph_view_render (gog-graph.c:794) ==12400== by 0x460788D: gog_view_render (gog-view.c:782) ==12400== by 0x463BD86: gog_renderer_update (gog-renderer.c:1302) ==12400== by 0x463D974: gog_control_foocanvas_update (gog-control-foocanvas.c:191) ==12400== by 0x4687335: foo_canvas_item_invoke_update (foo-canvas.c:428) ==12400== by 0x468966A: foo_canvas_group_update (foo-canvas.c:1379) ==12400== ==12400== Process terminating with default action of signal 11 (SIGSEGV) ==12400== Bad permissions for mapped region at address 0x38000000 ==12400== at 0xBB42FDE: gog_dropbar_view_render (gog-dropbar.c:262) ==12400== by 0x460788D: gog_view_render (gog-view.c:782) ==12400== by 0x460D47A: gog_chart_view_render (gog-chart.c:912) ==12400== by 0x46078B2: gog_view_render (gog-view.c:787) ==12400== by 0x4606E13: gog_view_render_real (gog-view.c:561) ==12400== by 0x4605603: gog_outlined_view_render (gog-outlined-object.c:157) ==12400== by 0x460A1B6: gog_graph_view_render (gog-graph.c:794) ==12400== by 0x460788D: gog_view_render (gog-view.c:782) ==12400== by 0x463BD86: gog_renderer_update (gog-renderer.c:1302) ==12400== by 0x463D974: gog_control_foocanvas_update (gog-control-foocanvas.c:191) ==12400== by 0x4687335: foo_canvas_item_invoke_update (foo-canvas.c:428) ==12400== by 0x468966A: foo_canvas_group_update (foo-canvas.c:1379) Segmentation fault (core dumped)
Also in HEAD
with goffice HEAD too? Strange, I can't reproduce. Seems I fixed it last week.
I xan't reproduce the crash, but the plot looks weird. I'll have a look at that ASAP.
Yes, also with HEAD. Actually, I misunderstood sum1 - he's also on HEAD. And we're both on gutsy.
Seen it, I needed to update. I could fix the crash, but now, I found an infinite loop issue that I don't understand at the moment.
Fixed in trunk.