Skip to content

Instantly share code, notes, and snippets.

@tonylambiris
Last active December 18, 2018 22:07
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save tonylambiris/193742e9d61cab102dcce2e823f28ece to your computer and use it in GitHub Desktop.
Save tonylambiris/193742e9d61cab102dcce2e823f28ece to your computer and use it in GitHub Desktop.
gdb output for spotify 1.0.94.262
pwndbg> r
Starting program: /usr/share/spotify/spotify
/usr/share/spotify/spotify: /usr/lib/libcurl-gnutls.so.4: no version information available (required by /usr/share/spotify/spotify)
[Thread debugging using libthread_db enabled]
Using host libthread_db library "/usr/lib/libthread_db.so.1".
[Attaching after Thread 0x7fffeae02f80 (LWP 28172) fork to child process 28179]
[New inferior 2 (process 28179)]
[Thread debugging using libthread_db enabled]
Using host libthread_db library "/usr/lib/libthread_db.so.1".
process 28179 is executing new program: /usr/share/spotify/spotify
Reading symbols from /usr/lib/libatomic.so.1...done.
Reading symbols from /usr/lib/libgcc_s.so.1...done.
/usr/share/spotify/spotify: /usr/lib/libcurl-gnutls.so.4: no version information available (required by /usr/share/spotify/spotify)
[Thread debugging using libthread_db enabled]
Using host libthread_db library "/usr/lib/libthread_db.so.1".
[Attaching after Thread 0x7fffc27fc700 (LWP 28195) fork to child process 28197]
[New inferior 3 (process 28197)]
[Thread debugging using libthread_db enabled]
Using host libthread_db library "/usr/lib/libthread_db.so.1".
process 28197 is executing new program: /usr/share/spotify/spotify
Reading symbols from /usr/lib/libatomic.so.1...done.
Reading symbols from /usr/lib/libgcc_s.so.1...done.
/proc/self/exe: /usr/lib/libcurl-gnutls.so.4: no version information available (required by /proc/self/exe)
[Thread debugging using libthread_db enabled]
Using host libthread_db library "/usr/lib/libthread_db.so.1".
Reading symbols from /usr/lib/libatomic.so.1...done.
Reading symbols from /usr/lib/libgcc_s.so.1...done.
[Attaching after Thread 0x7fffeae02f80 (LWP 28179) fork to child process 28215]
[New inferior 4 (process 28215)]
[Thread debugging using libthread_db enabled]
Using host libthread_db library "/usr/lib/libthread_db.so.1".
[mp3 @ 0x7fff8233e380] max_analyze_duration 5000000 reached at 5015510 microseconds
Thread 1.25 "Network Thread" received signal SIGSEGV, Segmentation fault.
0x00007fff942d1c91 in av_buffer_unref () from /usr/lib/libavutil.so.52
=> 0x00007fff942d1c91 <av_buffer_unref+33>: 48 8b 00 mov rax,QWORD PTR [rax]
pwndbg> info threads
Id Target Id Frame
* 1.1 Thread 0x7fffeae02f80 (LWP 28172) "spotify" (running)
1.3 Thread 0x7fffeae00700 (LWP 28178) "sandbox_ipc_thr" (running)
1.4 Thread 0x7fffe3a70700 (LWP 28181) "Chrome_IOThread" (running)
1.5 Thread 0x7fffe326f700 (LWP 28182) "NetworkChangeNo" (running)
1.6 Thread 0x7fffe226d700 (LWP 28184) "TaskSchedulerSe" (running)
1.7 Thread 0x7fffe2a6e700 (LWP 28183) "inotify_reader" (running)
1.8 Thread 0x7fffe1a6c700 (LWP 28185) "TaskSchedulerFo" (running)
1.9 Thread 0x7fffe126b700 (LWP 28186) "TaskSchedulerFo" (running)
1.12 Thread 0x7fffc37fe700 (LWP 28189) "TaskSchedulerSi" (running)
1.13 Thread 0x7fffc2ffd700 (LWP 28194) "CompositorTileW" (running)
1.14 Thread 0x7fffc27fc700 (LWP 28195) "TaskSchedulerSi" (running)
1.15 Thread 0x7fffc1ffb700 (LWP 28196) "AudioThread" (running)
1.16 Thread 0x7fffc107d700 (LWP 28198) "threaded-ml" (running)
1.17 Thread 0x7fffc087c700 (LWP 28199) "TaskSchedulerSi" (running)
1.19 Thread 0x7fff97622700 (LWP 28203) "gmain" (running)
1.20 Thread 0x7fff96e21700 (LWP 28204) "dconf worker" (running)
1.21 Thread 0x7fff96620700 (LWP 28206) "Core Thread" (running)
1.22 Thread 0x7fff95e1f700 (LWP 28207) "gdbus" (running)
1.24 Thread 0x7fff9538f700 (LWP 28208) "Default Worker " (running)
1.25 Thread 0x7fff7bfff700 (LWP 28210) "Network Thread" 0x00007fff942d1c91 in av_buffer_unref () from /usr/lib/libavutil.so.52
1.26 Thread 0x7fff7b7fe700 (LWP 28211) "Storage cache c" (running)
1.27 Thread 0x7fff7affd700 (LWP 28212) "Core Thread" (running)
1.28 Thread 0x7fff7a7fc700 (LWP 28213) "AsyncKeyValueSt" (running)
1.29 Thread 0x7fff79ffb700 (LWP 28214) "CacheThread_Blo" (running)
1.30 Thread 0x7fff7944b700 (LWP 28235) "Local File Scan" (running)
1.31 Thread 0x7fff78c4a700 (LWP 28236) "Local File Sync" (running)
1.32 Thread 0x7fff57fff700 (LWP 28246) "GAIA Discovery" (running)
1.33 Thread 0x7fff577fe700 (LWP 28247) "MDNS" (running)
1.34 Thread 0x7fff56ffd700 (LWP 28248) "Dial discovery" (running)
1.35 Thread 0x7fff567fc700 (LWP 28249) "Network Thread" (running)
1.36 Thread 0x7fff55ffb700 (LWP 28250) "CPU Monitor Thr" (running)
1.46 Thread 0x7fff54bf8700 (LWP 28316) "threaded-ml" (running)
1.47 Thread 0x7fff26ffb700 (LWP 28317) "PulseAudioDrive" (running)
2.1 Thread 0x7fffeae02f80 (LWP 28179) "spotify" (running)
3.1 Thread 0x7fffeae02f80 (LWP 28197) "spotify" (running)
3.4 Thread 0x7fffeae00700 (LWP 28228) "Watchdog" (running)
3.5 Thread 0x7fffe23d3700 (LWP 28229) "TaskSchedulerSe" (running)
3.6 Thread 0x7fffe1bd2700 (LWP 28230) "TaskSchedulerFo" (running)
3.7 Thread 0x7fffe13d1700 (LWP 28231) "TaskSchedulerFo" (running)
3.8 Thread 0x7fffe0bd0700 (LWP 28232) "Chrome_ChildIOT" (running)
3.10 Thread 0x7fffd37fe700 (LWP 28234) "SGI_video_sync" (running)
4.1 Thread 0x7fffeae02f80 (LWP 28215) "spotify" (running)
4.2 Thread 0x7fffeae00700 (LWP 28216) "TaskSchedulerSe" (running)
4.4 Thread 0x7fffe3fff700 (LWP 28218) "TaskSchedulerFo" (running)
4.5 Thread 0x7fffe37fe700 (LWP 28219) "Chrome_ChildIOT" (running)
4.6 Thread 0x7fffe2ffd700 (LWP 28220) "GpuMemoryThread" (running)
4.7 Thread 0x7fffe27fc700 (LWP 28221) "Font_Proxy_Thre" (running)
4.8 Thread 0x7fffe1ffb700 (LWP 28222) "Compositor" (running)
4.9 Thread 0x7fffe17fa700 (LWP 28223) "CompositorTileW" (running)
4.10 Thread 0x7fffe0ff9700 (LWP 28224) "CompositorTileW" (running)
4.11 Thread 0x7fffbbfff700 (LWP 28225) "CompositorTileW" (running)
4.12 Thread 0x7fffbb7fe700 (LWP 28226) "CompositorTileW" (running)
4.13 Thread 0x7fffb2ffd700 (LWP 28227) "CompositorTileW" (running)
4.15 Thread 0x7fffba7fc700 (LWP 28252) "ScriptStreamer " (running)
4.22 Thread 0x7fffb13f9700 (LWP 28260) "TaskSchedulerFo" (running)
pwndbg> thread 1.25
[Switching to thread 1.25 (Thread 0x7fff7bfff700 (LWP 28210))]
#0 0x00007fff942d1c91 in av_buffer_unref () from /usr/lib/libavutil.so.52
=> 0x00007fff942d1c91 <av_buffer_unref+33>: 48 8b 00 mov rax,QWORD PTR [rax]
pwndbg> bt
#0 0x00007fff942d1c91 in av_buffer_unref () at /usr/lib/libavutil.so.52
#1 0x00007fff942d7495 in av_frame_unref () at /usr/lib/libavutil.so.52
#2 0x00007fff942d75ea in av_frame_free () at /usr/lib/libavutil.so.52
#3 0x0000000001bffda3 in ()
#4 0x0000000001c007ab in ()
#5 0x0000000001be34c8 in ()
#6 0x0000000001be37bc in ()
#7 0x00000000021a9413 in ()
#8 0x00000000021a6294 in ()
#9 0x00000000020f427a in ()
#10 0x00000000020f496b in ()
#11 0x00000000021bc33c in ()
#12 0x00007fffef506a9d in start_thread () at /usr/lib/libpthread.so.0
#13 0x00007fffee30ab23 in clone () at /usr/lib/libc.so.6
pwndbg> x/100bx 0x00007fff942d1c91
0x7fff942d1c91 <av_buffer_unref+33>: 0x48 0x8b 0x00 0x48 0x89 0x04 0x24 0x67
0x7fff942d1c99 <av_buffer_unref+41>: 0xe8 0x12 0xbd 0x00 0x00 0x48 0x8b 0x04
0x7fff942d1ca1 <av_buffer_unref+49>: 0x24 0xf0 0x83 0x68 0x0c 0x01 0x74 0x17
0x7fff942d1ca9 <av_buffer_unref+57>: 0x48 0x8b 0x44 0x24 0x08 0x64 0x48 0x33
0x7fff942d1cb1 <av_buffer_unref+65>: 0x04 0x25 0x28 0x00 0x00 0x00 0x75 0x20
0x7fff942d1cb9 <av_buffer_unref+73>: 0x48 0x83 0xc4 0x18 0xc3 0x66 0x90 0x48
0x7fff942d1cc1 <av_buffer_unref+81>: 0x8b 0x04 0x24 0x48 0x8b 0x78 0x18 0x48
0x7fff942d1cc9 <av_buffer_unref+89>: 0x8b 0x30 0xff 0x50 0x10 0x48 0x89 0xe7
0x7fff942d1cd1 <av_buffer_unref+97>: 0x67 0xe8 0xd9 0xbc 0x00 0x00 0xeb 0xd0
0x7fff942d1cd9 <av_buffer_unref+105>: 0xff 0x15 0x01 0x71 0x03 0x00 0x90 0x48
0x7fff942d1ce1 <av_buffer_is_writable+1>: 0x8b 0x17 0x31 0xc0 0xf6 0x42 0x20 0x01
0x7fff942d1ce9 <av_buffer_is_writable+9>: 0x74 0x05 0xc3 0x0f 0x1f 0x40 0x00 0x0f
0x7fff942d1cf1 <av_buffer_is_writable+17>: 0xae 0xf0 0x8b 0x42
pwndbg> x/10xs 0x00007fff942d1c91
0x7fff942d1c91 <av_buffer_unref+33>: "H\213"
0x7fff942d1c94 <av_buffer_unref+36>: "H\211\004$g\350\022\275"
0x7fff942d1c9d <av_buffer_unref+45>: ""
0x7fff942d1c9e <av_buffer_unref+46>: "H\213\004$\360\203h\f\001t\027H\213D$"...
0x7fff942d1cad <av_buffer_unref+61>: "\bdH3\004%("
0x7fff942d1cb5 <av_buffer_unref+69>: ""
0x7fff942d1cb6 <av_buffer_unref+70>: ""
0x7fff942d1cb7 <av_buffer_unref+71>: "u H\203\304\030\303f\220H\213\004$H\213"...
0x7fff942d1cc6 <av_buffer_unref+86>: "x\030H\213\060\377P\020H\211\347g\350ټ"
0x7fff942d1cd5 <av_buffer_unref+101>: ""
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment