Closed ghost closed 9 years ago
Hi, your scenario is right, that is the cause of the double free problem. I discovered and fixed this issue 2 weeks ago (58a47be6eea978871a5b17683006795ced3a7526) but only in our working repository (I forgot to merge changes with github). Everything should be OK now.
Thanks for the report
We have had a rare crash with IPFIXcol recently, which we are still trying to reproduce (so far, without any 'luck'). This is the stack trace:
Although we were running several plugins at the time of the crash, it really seems to be related to IPFIXcol's base code.
tm_template_reference_dec
is called only once in the codebase, namely frombase/src/queues.c:253
, and the double free or corruption appears to have occurred inbase/src/template_manager.c:739
. Can a double free perhaps be caused when the lasttempl->next
intm_template_reference_dec
is freed both intm_template_reference_dec:736
andtm_template_reference_dec:739
? Or can you think of a scenario that could cause the double free?