GNOME Bugzilla – Bug 255529
SIGSEGV when typing email address in To: field of new message
Last modified: 2013-09-10 14:03:17 UTC
Please fill in this template when reporting a bug, unless you know what you are doing. Description of Problem: I clicked on the New mail button to create a new Email message. I started to type the address in the To: field, Evo autocompleted and dropped down a list of contacts. I kept typing and entered 2-3 more characters. Evolution crashed. Additional Information: STACK ------------------------------------------------------------------------
+ Trace 45065
Thread 12 (Thread 163851 (LWP 32743))
Thread 8 (Thread 98311 (LWP 32733))
Thread 5 (Thread 49156 (LWP 32730))
Thread 4 (Thread 32771 (LWP 32729))
Thread 3 (Thread 16386 (LWP 32728))
Thread 1 (Thread 16384 (LWP 32709))
output from evolution --------------------------------------------------------------------- INBOX/Test 1 (MESSAGES) received: * STATUS "INBOX/Test 1" (MESSAGES 6) received: A00030 OK STATUS completed. sending : A00031 STATUS {19+} INBOX/Test 1/Test 2 (UNSEEN) received: * STATUS "INBOX/Test 1/Test 2" (UNSEEN 0) received: A00031 OK STATUS completed. sending : A00032 STATUS {19+} INBOX/Test 1/Test 2 (MESSAGES) received: * STATUS "INBOX/Test 1/Test 2" (MESSAGES 3) received: A00032 OK STATUS completed. sending : A00033 STATUS {19+} INBOX/Test 1/Test 3 (UNSEEN) received: * STATUS "INBOX/Test 1/Test 3" (UNSEEN 0) received: A00033 OK STATUS completed. sending : A00034 STATUS {19+} INBOX/Test 1/Test 3 (MESSAGES) received: * STATUS "INBOX/Test 1/Test 3" (MESSAGES 0) received: A00034 OK STATUS completed. (evolution-1.5:32730): evolution-mail-WARNING **: Folder 'vtrash:mbox:/home/boris/.evolution/mail/local#/Trash' disappeared while I was adding/remove it to/from my vfolder (evolution-1.5:32730): evolution-mail-WARNING **: Folder 'vjunk:mbox:/home/boris/.evolution/mail/local#/Junk' disappeared while I was adding/remove it to/from my vfolder [Thread 65541 (LWP 32731) exited] [New Thread 81926 (LWP 32732)] [New Thread 98311 (LWP 32733)] [New Thread 114696 (LWP 32734)] (evolution-1.5:32709): gtkhtml-WARNING **: Cannot create spell dictionary instance (iid:OAFIID:GNOME_Spell_Dictionary:0.3) (evolution-1.5:32709): Bonobo-WARNING **: Activation exception 'Failed to activate 'OAFIID:GNOME_Spell_Control:0.3'' [New Thread 131081 (LWP 32740)] [New Thread 147466 (LWP 32742)] [Thread 131081 (LWP 32740) exited] [New Thread 163851 (LWP 32743)] [Thread 147466 (LWP 32742) exited] Program received signal SIGSEGV, Segmentation fault. [Switching to Thread 16384 (LWP 32709)] 0x41019976 in g_type_check_instance () from /usr/lib/libgobject-2.0.so.0 output from e-d-s -------------------------------------------------------------------------- 56 libebookbackend-Message: supported server extension: 1.3.6.1.4.1.1466.20037 libebookbackend-Message: server reports LDAP_EXOP_START_TLS libebookbackend-Message: supported server extension: 2.16.840.1.113719.1.27.100.79 libebookbackend-Message: supported server extension: 2.16.840.1.113719.1.27.100.80 libebookbackend-Message: supported server extension: 2.16.840.1.113719.1.27.100.84 libebookbackend-Message: supported server extension: 2.16.840.1.113719.1.27.100.80 libebookbackend-Message: supported server extension: 2.16.840.1.113719.1.27.103.1 libebookbackend-Message: supported server extension: 2.16.840.1.113719.1.27.103.2 libebookbackend-Message: supported SASL mechanism: NMAS_LOGIN (evolution-data-server:32737): libedata-book-WARNING **: impl_GNOME_Evolution_Addressbook_Book_getBookView ((or (beginswith "file_as" "tim") (beginswith "full_name" "tim") (beginswith "email" "tim") (beginswith "nickname" "tim") )) (evolution-data-server:32738): libedata-book-WARNING **: impl_GNOME_Evolution_Addressbook_Book_getBookView ((or (beginswith "file_as" "tim") (beginswith "full_name" "tim") (beginswith "email" "tim") (beginswith "nickname" "tim") )) (evolution-data-server:32710): libebookbackend-WARNING **: search returned 0 Machine Configuration ------------------------------------------------------------------ Red Hat Linux release 9 (Shrike) i386 2.4.20-20.8 evolution1.5-1.5.5.0.200403120727-0.snap.ximian.6.1 evolution-data-server-0.0.90.0.200403120727-0.snap.ximian.6.1 soup-0.7.10-4 libsoup-1.99.28.0.200310211728-0.snap.ximian.6.1 libsoup2.2-2.1.8.0.200403120727-0.snap.ximian.6.1 libgtkhtml3.1_3-3.1.8.0.200403041914-0.snap.ximian.6.1 libgal21-0.23-1 libgal2.0_3-1.99.8-0.ximian.6.3 libgal2.2_0-2.1.6.0.200403120727-0.snap.ximian.6.1 gtkhtml-1.1.8-5 gtkhtml3.0-3.0.9-0.ximian.6.1 gtkhtml3.1-3.1.9.0.200403120727-0.snap.ximian.6.1 gal-0.23-1 pilot-link-0.11.5-4 gnome-pilot-0.1.71-2 gnome-mime-data-2.2.0-1 gtk+-1.2.10-25 gtk2-2.2.1-4 bonobo-1.0.22-4 libbonoboui-2.4.3-0.ximian.6.1 libbonobo-2.4.2-0.ximian.6.2 libgnomecanvas-2.2.0.2-0.ximian.6.2 ORBit2-2.9.8-0.ximian.6.1
still occurs with evolution1.5-1.5.5.0.200403150731-0.snap.ximian.6.1. Happens every 3-6 times I try to autocomplete an email address
Got some valgrindage of this, looking into it. ==16926== Invalid read of size 4 ==16926== at 0x41419EF8: g_type_check_instance (gtype.c:3221) ==16926== by 0x4140E548: g_signal_handler_disconnect (gsignal.c:1726) ==16926== by 0x4620BEF6: e_book_view_dispose (e-book-view.c:242) ==16926== by 0x41401170: g_object_last_unref (gobject.c:557) ==16926== by 0x46AAD5A5: e_select_names_completion_got_book_view_cb (e-select-names-completion.c:809) ==16926== by 0x46209671: _get_book_view_response_handler (e-book-async.c:1136) ==16926== by 0x46207B04: main_thread_get_response (e-book-async.c:43) ==16926== by 0x4145472B: g_idle_dispatch (gmain.c:3273) ==16926== by 0x41451D2D: g_main_dispatch (gmain.c:1752) ==16926== by 0x41452D80: g_main_context_dispatch (gmain.c:2300) ==16926== by 0x414530AA: g_main_context_iterate (gmain.c:2381) ==16926== by 0x41453779: g_main_loop_run (gmain.c:2601) ==16926== Address 0x49DFFD40 is 0 bytes inside a block of size 44 free'd ==16926== at 0x40029961: free (vg_replace_malloc.c:231) ==16926== by 0x4145724D: g_free (gmem.c:186) ==16926== by 0x41415925: g_type_free_instance (gtype.c:1635) ==16926== by 0x414010E9: g_object_last_unref (gobject.c:580) ==16926== by 0x40872046: bonobo_object_finalize_servant (bonobo-object.c:248)==16926== by 0x40A852BB: ORBit_POA_deactivate_object_T (poa.c:1109) ==16926== by 0x40A860CC: ORBit_POAObject_post_invoke (poa.c:1764) ==16926== by 0x40A8574A: ORBit_POAObject_handle_request (poa.c:1381) ==16926== by 0x40A859F4: ORBit_POAObject_invoke_incoming_request (poa.c:1418)==16926== by 0x40A7268B: giop_thread_queue_process (giop.c:743) ==16926== by 0x40A71EE8: giop_request_handler_thread (giop.c:471) ==16926== by 0x41468A94: g_thread_pool_thread_proxy (gthreadpool.c:113) ==16926== ==16926== Invalid read of size 4 ==16926== at 0x41419EFE: g_type_check_instance (gtype.c:317) ==16926== by 0x4140E548: g_signal_handler_disconnect (gsignal.c:1726) ==16926== by 0x4620BEF6: e_book_view_dispose (e-book-view.c:242) ==16926== by 0x41401170: g_object_last_unref (gobject.c:557) ==16926== by 0x46AAD5A5: e_select_names_completion_got_book_view_cb (e-select-names-completion.c:809) ==16926== by 0x46209671: _get_book_view_response_handler (e-book-async.c:1136) ==16926== by 0x46207B04: main_thread_get_response (e-book-async.c:43) ==16926== by 0x4145472B: g_idle_dispatch (gmain.c:3273) ==16926== by 0x41451D2D: g_main_dispatch (gmain.c:1752) ==16926== by 0x41452D80: g_main_context_dispatch (gmain.c:2300) ==16926== by 0x414530AA: g_main_context_iterate (gmain.c:2381) ==16926== by 0x41453779: g_main_loop_run (gmain.c:2601) ==16926== Address 0xAAAAAAAA is not stack'd, malloc'd or free'd
hp: is this the same as bug 255116?
*** This bug has been marked as a duplicate of 255421 ***