[Bug 56503] Chrome causes crash of Xserver

bugzilla-daemon at freedesktop.org bugzilla-daemon at freedesktop.org
Tue Oct 30 10:55:02 PDT 2012


https://bugs.freedesktop.org/show_bug.cgi?id=56503

--- Comment #6 from JS <js314592 at gmail.com> ---
got some core dump

#0  x86_fallback_frame_state (fs=0xbfd057e0, context=<optimized out>) at
./md-unwind-support.h:131
#1  uw_frame_state_for (context=context at entry=0xbfd05760,
fs=fs at entry=0xbfd057e0) at ../../../libgcc/unwind-dw2.c:1187
#2  0xb71909ea in _Unwind_Backtrace (trace=0xb733fbe0 <backtrace_helper>,
trace_argument=0xbfd058dc) at ../../../libgcc/unwind.inc:290
#3  0xb733fce5 in __GI___backtrace (array=array at entry=0xbfd05950,
size=size at entry=64) at ../sysdeps/i386/backtrace.c:127
#4  0x081bc9c9 in xorg_backtrace () at backtrace.c:50
#5  0x081c0636 in OsSigHandler (sip=0xbfd05a9c, signo=11, unused=<optimized
out>) at osinit.c:128
#6  OsSigHandler (signo=11, sip=0xbfd05a9c, unused=0xbfd05b1c) at osinit.c:107
#7  <signal handler called>
#8  x86_fallback_frame_state (fs=0xbfd05f00, context=<optimized out>) at
./md-unwind-support.h:131
#9  uw_frame_state_for (context=context at entry=0xbfd05e80,
fs=fs at entry=0xbfd05f00) at ../../../libgcc/unwind-dw2.c:1187
#10 0xb71909ea in _Unwind_Backtrace (trace=0xb733fbe0 <backtrace_helper>,
trace_argument=0xbfd05ffc) at ../../../libgcc/unwind.inc:290
#11 0xb733fce5 in __GI___backtrace (array=array at entry=0xbfd06070,
size=size at entry=64) at ../sysdeps/i386/backtrace.c:127
#12 0x081bc9c9 in xorg_backtrace () at backtrace.c:50
#13 0x0819b29b in mieqEnqueue (pDev=pDev at entry=0x8652be0, e=e at entry=0xb7140948)
at mieq.c:281
#14 0x08090725 in queueEventList (device=0x8652be0, device at entry=0x2,
events=<optimized out>, nevents=2) at getevents.c:1002
#15 0x08092958 in QueuePointerEvents (device=0x2, device at entry=0x8652be0,
type=type at entry=6, buttons=buttons at entry=0, flags=10,
mask=mask at entry=0x86539e8) at getevents.c:1262
#16 0x080ca9bb in xf86PostMotionEventM (mask=0x86539e8, is_absolute=0,
device=0x8652be0) at xf86Xinput.c:1161
#17 xf86PostMotionEventM (device=0x8652be0, is_absolute=is_absolute at entry=0,
mask=0x86539e8) at xf86Xinput.c:1146
#18 0xb5d71e3d in EvdevPostRelativeMotionEvents (pInfo=pInfo at entry=0x862f470,
num_v=0, num_v at entry=1, first_v=0, first_v at entry=1, v=v at entry=0xbfd062f0) at
evdev.c:898
#19 0xb5d73546 in EvdevProcessSyncEvent (pInfo=0x862f470, ev=<optimized out>)
at evdev.c:1010
#20 EvdevProcessEvent (ev=0xbfd06390, pInfo=0x862f470) at evdev.c:1052
#21 EvdevReadInput (pInfo=0x862f470) at evdev.c:1131
#22 0x080b9eb1 in xf86SigioReadInput (fd=16, closure=0x862f470) at
xf86Events.c:312
#23 0x080dfe25 in xf86SIGIO (sig=29) at ../shared/sigio.c:108
#24 <signal handler called>
#25 __memcpy_ia32 () at ../sysdeps/i386/i686/memcpy.S:75
#26 0x006aa400 in ?? ()
#27 0xb6d4e0ad in memcpy (__len=7680, __src=0xb22fe400, __dest=0xb2b72408) at
/usr/include/bits/string3.h:52
#28 RADEONCopySwap (dst=dst at entry=0xb2b72408 "", src=0xb22fe400 <Address
0xb22fe400 out of bounds>, size=size at entry=7680, swap=swap at entry=0) at
radeon_accel.c:994
#29 0xb6dc0974 in RADEONDownloadFromScreenCS (pSrc=pSrc at entry=0x87ab4a8, x=0,
y=y at entry=0, w=7680, h=<optimized out>, dst=0xb2b72408 "", dst_pitch=7680) at
radeon_exa_funcs.c:665
#30 0xb6cf53a2 in exaCopyDirty (migrate=migrate at entry=0xbfd06c90,
pValidDst=0x87ab508, pValidSrc=0x87ab514, transfer=transfer at entry=0xb6dc0820
<RADEONDownloadFromScreenCS>, fallback_index=fallback_index at entry=1,
sync=sync at entry=0xb6cf3f90 <exaWaitSync>)
    at exa_migration_classic.c:220
#31 0xb6cf5770 in exaCopyDirtyToSys (migrate=migrate at entry=0xbfd06c90) at
exa_migration_classic.c:285
#32 0xb6cf7ac7 in exaPrepareAccessReg_mixed (pPixmap=0x87ab4a8, index=0,
pReg=0xbfd06d64) at exa_migration_mixed.c:254
#33 0xb6d01eb6 in ExaPrepareCompositeReg (height=1154, width=12, yDst=0,
xDst=1908, yMask=0, xMask=1908, ySrc=24, xSrc=1908, pDst=0x880e2c8, pMask=0x0,
pSrc=0x87c7a68, op=1 '\001', pScreen=0x8484560) at exa_unaccel.c:577
#34 ExaCheckComposite (op=op at entry=1 '\001', pSrc=pSrc at entry=0x87c7a68,
pMask=pMask at entry=0x0, pDst=pDst at entry=0x880e2c8, xSrc=xSrc at entry=1908,
ySrc=ySrc at entry=24, xMask=xMask at entry=1908, yMask=yMask at entry=0, xDst=1908,
yDst=0, width=width at entry=12, 
    height=height at entry=1154) at exa_unaccel.c:600
#35 0xb6cfe6ae in exaComposite (op=1 '\001', pSrc=0x87c7a68, pMask=0x0,
pDst=0x880e2c8, xSrc=<optimized out>, ySrc=<optimized out>, xMask=1908,
yMask=0, xDst=<optimized out>, yDst=<optimized out>, width=12, height=1154) at
exa_render.c:1039
#36 0x08145772 in damageComposite (op=1 '\001', pSrc=0x87c7a68, pMask=0x0,
pDst=0x880e2c8, xSrc=1908, ySrc=24, xMask=1908, yMask=0, xDst=1908, yDst=0,
width=12, height=1154) at damage.c:562
#37 0x08139b99 in CompositePicture (op=<optimized out>, pSrc=0x87c7a68,
pMask=pMask at entry=0x0, pDst=0x880e2c8, xSrc=1908, ySrc=24, xMask=1908, yMask=0,
xDst=1908, yDst=0, width=12, height=1154) at picture.c:1578
#38 0x0813e34d in ProcRenderComposite (client=0x87abf00) at render.c:707
#39 0x0813a25e in ProcRenderDispatch (client=0x87abf00) at render.c:1988
#40 0x0807b5d5 in Dispatch () at dispatch.c:428
#41 0x08069165 in main (argc=8, argv=0xbfd07174, envp=0xbfd07198) at main.c:288

-- 
You are receiving this mail because:
You are the assignee for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.x.org/archives/xorg-driver-ati/attachments/20121030/73613973/attachment-0001.html>


More information about the xorg-driver-ati mailing list