==13334== Memcheck, a memory error detector. ==13334== Copyright (C) 2002-2006, and GNU GPL'd, by Julian Seward et al. ==13334== Using LibVEX rev 1658, a library for dynamic binary translation. ==13334== Copyright (C) 2004-2006, and GNU GPL'd, by OpenWorks LLP. ==13334== Using valgrind-3.2.1, a dynamic binary instrumentation framework. ==13334== Copyright (C) 2000-2006, and GNU GPL'd, by Julian Seward et al. ==13334== For more details, rerun with: -v ==13334== ==13334== My PID = 13334, parent PID = 13333. Prog and args are: ==13334== asterisk ==13334== -gvvvvdc ==13334== ==13334== Invalid read of size 4 ==13334== at 0x4967F35D: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== Address 0x407CC70 is 24 bytes inside a block of size 645 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x4967F8E2: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== ==13334== Invalid read of size 1 ==13334== at 0x4967F360: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== Address 0x407CE5C is 516 bytes inside a block of size 645 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x4967F8E2: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x4967F373: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== Address 0x407CDE0 is 392 bytes inside a block of size 645 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x4967F8E2: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x4967FCF5: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== Address 0x407CC5C is 4 bytes inside a block of size 645 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x4967F8E2: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== ==13334== Invalid read of size 1 ==13334== at 0x4006298: strlen (mc_replace_strmem.c:247) ==13334== by 0x4967AD01: _dl_signal_error (in /lib/ld-2.5.so) ==13334== by 0x4967FD0A: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== Address 0x407CBF8 is 0 bytes inside a block of size 45 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x4967F860: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== ==13334== Invalid read of size 1 ==13334== at 0x40062A3: strlen (mc_replace_strmem.c:247) ==13334== by 0x4967AD01: _dl_signal_error (in /lib/ld-2.5.so) ==13334== by 0x4967FD0A: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== Address 0x407CBF9 is 1 bytes inside a block of size 45 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x4967F860: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== ==13334== Invalid read of size 1 ==13334== at 0x496826B5: memcpy (in /lib/ld-2.5.so) ==13334== by 0x4967FD0A: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== Address 0x407CBF8 is 0 bytes inside a block of size 45 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x4967F860: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x496826BC: memcpy (in /lib/ld-2.5.so) ==13334== by 0x4967FD0A: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== Address 0x407CBF9 is 1 bytes inside a block of size 45 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x4967F860: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== ==13334== Invalid read of size 2 ==13334== at 0x496826BA: memcpy (in /lib/ld-2.5.so) ==13334== by 0x4967FD0A: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== Address 0x407E401 is 1 bytes inside a block of size 39 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x4967F860: _dl_close (in /lib/ld-2.5.so) ==13334== by 0x497C9DA3: dlclose_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== by 0x497C9DD9: dlclose (in /lib/libdl-2.5.so) ==13334== by 0x80B93DB: load_dynamic_module (loader.c:386) ==13334== by 0x80BA092: load_resource (loader.c:634) ==13334== by 0x80BA8AD: load_modules (loader.c:835) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== ==13334== Use of uninitialised value of size 4 ==13334== at 0x496C4517: _itoa_word (in /lib/libc-2.5.so) ==13334== by 0x496C8420: vfprintf (in /lib/libc-2.5.so) ==13334== by 0x496E7443: vsnprintf (in /lib/libc-2.5.so) ==13334== by 0x52E5A05: ??? (chan_misdn.c:5628) ==13334== by 0x52EC37C: init_bc (isdn_lib.c:1182) ==13334== by 0x52F39E1: misdn_lib_init (isdn_lib.c:3949) ==13334== by 0x52E3EDC: ??? (chan_misdn.c:5008) ==13334== by 0x80BA16D: load_resource (loader.c:660) ==13334== by 0x80BA9E3: load_modules (loader.c:854) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== ==13334== Conditional jump or move depends on uninitialised value(s) ==13334== at 0x496C451D: _itoa_word (in /lib/libc-2.5.so) ==13334== by 0x496C8420: vfprintf (in /lib/libc-2.5.so) ==13334== by 0x496E7443: vsnprintf (in /lib/libc-2.5.so) ==13334== by 0x52E5A05: ??? (chan_misdn.c:5628) ==13334== by 0x52EC37C: init_bc (isdn_lib.c:1182) ==13334== by 0x52F39E1: misdn_lib_init (isdn_lib.c:3949) ==13334== by 0x52E3EDC: ??? (chan_misdn.c:5008) ==13334== by 0x80BA16D: load_resource (loader.c:660) ==13334== by 0x80BA9E3: load_modules (loader.c:854) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== ==13334== Conditional jump or move depends on uninitialised value(s) ==13334== at 0x496C61AC: vfprintf (in /lib/libc-2.5.so) ==13334== by 0x496E7443: vsnprintf (in /lib/libc-2.5.so) ==13334== by 0x52E5A05: ??? (chan_misdn.c:5628) ==13334== by 0x52EC37C: init_bc (isdn_lib.c:1182) ==13334== by 0x52F39E1: misdn_lib_init (isdn_lib.c:3949) ==13334== by 0x52E3EDC: ??? (chan_misdn.c:5008) ==13334== by 0x80BA16D: load_resource (loader.c:660) ==13334== by 0x80BA9E3: load_modules (loader.c:854) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== ==13334== Thread 34: ==13334== Syscall param write(buf) points to uninitialised byte(s) ==13334== at 0x49803CEB: (within /lib/libpthread-2.5.so) ==13334== by 0x8134DF7: __mpool_sync (mpool.c:308) ==13334== by 0x813025C: __bt_sync (bt_close.c:146) ==13334== by 0x809C47F: ast_db_put (db.c:165) ==13334== by 0x6388C83: ??? (func_db.c:98) ==13334== by 0x80CD715: ast_func_write (pbx.c:1545) ==13334== by 0x80D95EB: pbx_builtin_setvar_helper (pbx.c:5830) ==13334== by 0x80D9A74: pbx_builtin_setvar (pbx.c:5903) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== by 0x80CF8B7: ast_spawn_extension (pbx.c:2293) ==13334== by 0x80CFDD9: __ast_pbx_run (pbx.c:2393) ==13334== Address 0x46C36DE is 222 bytes inside a block of size 4,232 alloc'd ==13334== at 0x4005400: malloc (vg_replace_malloc.c:149) ==13334== by 0x80730E3: __ast_alloc_region (astmm.c:102) ==13334== by 0x807333C: __ast_malloc (astmm.c:203) ==13334== by 0x8134FA7: mpool_bkt (mpool.c:383) ==13334== by 0x8134B1A: __mpool_get (mpool.c:210) ==13334== by 0x8131EB3: __bt_search (bt_search.c:78) ==13334== by 0x81380B6: __bt_get (bt_get.c:87) ==13334== by 0x809C67E: ast_db_get (db.c:191) ==13334== by 0x47F7515: ??? (chan_iax2.c:5836) ==13334== by 0x480EB19: ??? (chan_iax2.c:9843) ==13334== by 0x4811824: ??? (chan_iax2.c:10780) ==13334== by 0x80BA16D: load_resource (loader.c:660) ==13334== ==13334== Thread 33: ==13334== Syscall param chmod(path) points to unaddressable byte(s) ==13334== at 0x497473C6: chmod (in /lib/libc-2.5.so) ==13334== by 0x80A8D72: ast_stopstream (file.c:141) ==13334== by 0x808B35A: ast_readstring_full (channel.c:3319) ==13334== by 0x808B2B8: ast_readstring (channel.c:3302) ==13334== by 0x805DDCF: ast_app_getdata (app.c:125) ==13334== by 0x6508441: ??? (app_read.c:189) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== by 0x80CF8B7: ast_spawn_extension (pbx.c:2293) ==13334== by 0x80CFDD9: __ast_pbx_run (pbx.c:2393) ==13334== by 0x80D0BAE: pbx_thread (pbx.c:2608) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== Address 0x0 is not stack'd, malloc'd or (recently) free'd ==13334== ==13334== Thread 31: ==13334== Syscall param chmod(path) points to unaddressable byte(s) ==13334== at 0x497473C6: chmod (in /lib/libc-2.5.so) ==13334== by 0x80A8D72: ast_stopstream (file.c:141) ==13334== by 0x80AB786: waitstream_core (file.c:1084) ==13334== by 0x80ABDB7: ast_waitstream_full (file.c:1193) ==13334== by 0x808B34C: ast_readstring_full (channel.c:3318) ==13334== by 0x808B2B8: ast_readstring (channel.c:3302) ==13334== by 0x805DDCF: ast_app_getdata (app.c:125) ==13334== by 0x6508441: ??? (app_read.c:189) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== by 0x80CF8B7: ast_spawn_extension (pbx.c:2293) ==13334== by 0x80CFDD9: __ast_pbx_run (pbx.c:2393) ==13334== Address 0x0 is not stack'd, malloc'd or (recently) free'd ==13334== ==13334== Thread 33: ==13334== Syscall param chmod(path) points to unaddressable byte(s) ==13334== at 0x497473C6: chmod (in /lib/libc-2.5.so) ==13334== by 0x80A8D72: ast_stopstream (file.c:141) ==13334== by 0x80AB786: waitstream_core (file.c:1084) ==13334== by 0x80ABD6F: ast_waitstream (file.c:1188) ==13334== by 0x6A1E605: ??? (app_playback.c:434) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== by 0x80CF8B7: ast_spawn_extension (pbx.c:2293) ==13334== by 0x80CFDD9: __ast_pbx_run (pbx.c:2393) ==13334== by 0x80D0BAE: pbx_thread (pbx.c:2608) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== Address 0x0 is not stack'd, malloc'd or (recently) free'd ====13334== ==13334== Thread 32: ==13334== Syscall param chmod(path) points to unaddressable byte(s) ==13334== at 0x497473C6: chmod (in /lib/libc-2.5.so) ==13334== by 0x80A8D72: ast_stopstream (file.c:141) ==13334== by 0x6A1E613: ??? (app_playback.c:435) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== by 0x80CF8B7: ast_spawn_extension (pbx.c:2293) ==13334== by 0x80CFDD9: __ast_pbx_run (pbx.c:2393) ==13334== by 0x80D0BAE: pbx_thread (pbx.c:2608) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x0 is not stack'd, malloc'd or (recently) free'd ==13334== ==13334== Syscall param chmod(path) points to unaddressable byte(s) ==13334== at 0x497473C6: chmod (in /lib/libc-2.5.so) ==13334== by 0x4244580: ast_monitor_stop (res_monitor.c:262) ==13334== by 0x8083605: ast_channel_free (channel.c:1222) ==13334== by 0x8085E30: ast_hangup (channel.c:1781) ==13334== by 0x47B75D5: ??? (app_dial.c:1676) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== by 0x80CF8B7: ast_spawn_extension (pbx.c:2293) ==13334== by 0x80CFDD9: __ast_pbx_run (pbx.c:2393) ==13334== by 0x80D0BAE: pbx_thread (pbx.c:2608) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== Address 0x0 is not stack'd, malloc'd or (recently) free'd ==13334== ==13334== Syscall param chmod(path) points to unaddressable byte(s) ==13334== at 0x497473C6: chmod (in /lib/libc-2.5.so) ==13334== by 0x42445A3: ast_monitor_stop (res_monitor.c:265) ==13334== by 0x8083605: ast_channel_free (channel.c:1222) ==13334== by 0x8085E30: ast_hangup (channel.c:1781) ==13334== by 0x47B75D5: ??? (app_dial.c:1676) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== by 0x80CF8B7: ast_spawn_extension (pbx.c:2293) ==13334== by 0x80CFDD9: __ast_pbx_run (pbx.c:2393) ==13334== by 0x80D0BAE: pbx_thread (pbx.c:2608) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== Address 0x0 is not stack'd, malloc'd or (recently) free'd ====13334== ==13334== Thread 31: ==13334== Syscall param chmod(path) points to unaddressable byte(s) ==13334== at 0x497473C6: chmod (in /lib/libc-2.5.so) ==13334== by 0x8085B9A: ast_hangup (channel.c:1732) ==13334== by 0x80D095C: __ast_pbx_run (pbx.c:2548) ==13334== by 0x80D0BAE: pbx_thread (pbx.c:2608) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x0 is not stack'd, malloc'd or (recently) free'd ==13334== ==13334== Thread 35: ==13334== Syscall param chmod(path) points to unaddressable byte(s) ==13334== at 0x497473C6: chmod (in /lib/libc-2.5.so) ==13334== by 0x41CB2A3: ??? (res_musiconhold.c:207) ==13334== by 0x8086227: ast_activate_generator (channel.c:1864) ==13334== by 0x41CE7F4: ??? (res_musiconhold.c:974) ==13334== by 0x808F8E7: ast_moh_start (channel.c:4607) ==13334== by 0x527C032: ??? (app_queue.c:3596) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x52C3835: ??? (pbx_realtime.c:216) ==13334== by 0x80CE59A: pbx_extension_helper (pbx.c:1849) ==13334== by 0x80CF8B7: ast_spawn_extension (pbx.c:2293) ==13334== by 0x80CFDD9: __ast_pbx_run (pbx.c:2393) ==13334== by 0x80D0BAE: pbx_thread (pbx.c:2608) ==13334== Address 0x0 is not stack'd, malloc'd or (recently) free'd ==13334== ==13334== Thread 33: ==13334== Syscall param chmod(path) points to unaddressable byte(s) ==13334== at 0x497473C6: chmod (in /lib/libc-2.5.so) ==13334== by 0x41CB2A3: ??? (res_musiconhold.c:207) ==13334== by 0x8086073: ast_deactivate_generator (channel.c:1826) ==13334== by 0x41CE866: ??? (res_musiconhold.c:982) ==13334== by 0x808F955: ast_moh_stop (channel.c:4621) ==13334== by 0x527C586: ??? (app_queue.c:3723) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x52C3835: ??? (pbx_realtime.c:216) ==13334== by 0x80CE59A: pbx_extension_helper (pbx.c:1849) ==13334== by 0x80CF8B7: ast_spawn_extension (pbx.c:2293) ==13334== by 0x80CFDD9: __ast_pbx_run (pbx.c:2393) ==13334== by 0x80D0BAE: pbx_thread (pbx.c:2608) ==13334== Address 0x0 is not stack'd, malloc'd or (recently) free'd ==13334== ==13334== Thread 35: ==13334== Syscall param chmod(path) points to unaddressable byte(s) ==13334== at 0x497473C6: chmod (in /lib/libc-2.5.so) ==13334== by 0x41CB2A3: ??? (res_musiconhold.c:207) ==13334== by 0x8086073: ast_deactivate_generator (channel.c:1826) ==13334== by 0x8087346: __ast_read (channel.c:2209) ==13334== by 0x8088B56: ast_read (channel.c:2557) ==13334== by 0x8086EE4: ast_waitfordigit_full (channel.c:2107) ==13334== by 0x8086C75: ast_waitfordigit (channel.c:2057) ==13334== by 0x5279511: ??? (app_queue.c:2890) ==13334== by 0x527C403: ??? (app_queue.c:3684) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x52C3835: ??? (pbx_realtime.c:216) ==13334== by 0x80CE59A: pbx_extension_helper (pbx.c:1849) ==13334== Address 0x0 is not stack'd, malloc'd or (recently) free'd ==13334== ==13334== Thread 46: ==13334== Syscall param chmod(path) points to unaddressable byte(s) ==13334== at 0x497473C6: chmod (in /lib/libc-2.5.so) ==13334== by 0x805F6D0: __ast_play_and_record (app.c:711) ==13334== by 0x805FAE8: ast_play_and_record_full (strings.h:35) ==13334== by 0x6C58913: ??? (app_voicemail.c:8217) ==13334== by 0x6C46BD2: ??? (app_voicemail.c:3059) ==13334== by 0x6C53F24: ??? (app_voicemail.c:6971) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== by 0x80CF8B7: ast_spawn_extension (pbx.c:2293) ==13334== by 0x66072D0: ??? (app_macro.c:308) ==13334== by 0x6608102: ??? (app_macro.c:486) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== Address 0x0 is not stack'd, malloc'd or (recently) free'd ==13334== ==13334== Thread 36: ==13334== Syscall param write(buf) points to uninitialised byte(s) ==13334== at 0x49803CEB: (within /lib/libpthread-2.5.so) ==13334== by 0x8134EA5: mpool_bkt (mpool.c:363) ==13334== by 0x8134B1A: __mpool_get (mpool.c:210) ==13334== by 0x8132DF4: __bt_split (bt_split.c:159) ==13334== by 0x8131A3B: __bt_put (bt_put.c:205) ==13334== by 0x809C45E: ast_db_put (db.c:164) ==13334== by 0x6388C83: ??? (func_db.c:98) ==13334== by 0x80CD715: ast_func_write (pbx.c:1545) ==13334== by 0x80D95EB: pbx_builtin_setvar_helper (pbx.c:5830) ==13334== by 0x80D9A74: pbx_builtin_setvar (pbx.c:5903) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== Address 0x4048650 is 224 bytes inside a block of size 4,232 alloc'd ==13334== at 0x4005400: malloc (vg_replace_malloc.c:149) ==13334== by 0x80730E3: __ast_alloc_region (astmm.c:102) ==13334== by 0x807333C: __ast_malloc (astmm.c:203) ==13334== by 0x8134FA7: mpool_bkt (mpool.c:383) ==13334== by 0x8134B1A: __mpool_get (mpool.c:210) ==13334== by 0x8130DE1: nroot (bt_open.c:361) ==13334== by 0x8130C73: __bt_open (bt_open.c:316) ==13334== by 0x8128CD3: dbopen (db.c:63) ==13334== by 0x809B9C9: dbinit (db.c:65) ==13334== by 0x809D99E: astdb_init (db.c:587) ==13334== by 0x8072353: main (asterisk.c:2926) ==13334== ==13334== Thread 40: ==13334== Conditional jump or move depends on uninitialised value(s) ==13334== at 0x810F12B: ast_copy_string (strings.h:168) ==13334== by 0x809C75F: ast_db_get (db.c:206) ==13334== by 0x6388B10: ??? (func_db.c:69) ==13334== by 0x80CD646: ast_func_read (pbx.c:1531) ==13334== by 0x80CDA40: pbx_substitute_variables_helper_full (pbx.c:1652) ==13334== by 0x80CDED7: pbx_substitute_variables_helper (pbx.c:1746) ==13334== by 0x80CDFE0: pbx_substitute_variables (pbx.c:1764) ==13334== by 0x80CE26F: pbx_extension_helper (pbx.c:1810) ==13334== by 0x80CF8B7: ast_spawn_extension (pbx.c:2293) ==13334== by 0x66072D0: ??? (app_macro.c:308) ==13334== by 0x6608102: ??? (app_macro.c:486) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== ==13334== Thread 24: ==13334== Invalid read of size 4 ==13334== at 0x6552E93: ??? (chan_sip.c:1891) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AB004 is 124 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x6552EC7: ??? (chan_sip.c:1893) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AAFF4 is 108 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x6552ED4: ??? (chan_sip.c:1894) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AAFF4 is 108 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x6552EDA: ??? (chan_sip.c:1895) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AB010 is 136 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x655300C: ??? (chan_sip.c:1903) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AB00C is 132 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x6553024: ??? (chan_sip.c:1906) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AB00C is 132 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid write of size 4 ==13334== at 0x6553029: ??? (chan_sip.c:1906) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AB00C is 132 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x6553032: ??? (chan_sip.c:1909) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AB010 is 136 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x6553035: ??? (chan_sip.c:1909) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AB00C is 132 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x655303F: ??? (chan_sip.c:1910) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AAFF8 is 112 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x65530C1: ??? (chan_sip.c:1919) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AB004 is 124 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x6553169: ??? (chan_sip.c:1927) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AB004 is 124 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x6553177: ??? (chan_sip.c:1928) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AB014 is 140 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x655318B: ??? (chan_sip.c:1928) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AB004 is 124 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Syscall param socketcall.sendto(msg) points to unaddressable byte(s) ==13334== at 0x49804308: sendto (in /lib/libpthread-2.5.so) ==13334== by 0x6553195: ??? (chan_sip.c:1928) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AB018 is 144 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid read of size 4 ==13334== at 0x655319C: ??? (chan_sip.c:1929) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x40AB004 is 124 bytes inside a block of size 959 free'd ==13334== at 0x400501A: free (vg_replace_malloc.c:233) ==13334== by 0x8072A03: __ast_free_region (astmm.c:174) ==13334== by 0x8073364: __ast_free (astmm.c:208) ==13334== by 0x6555065: ??? (chan_sip.c:2150) ==13334== by 0x6555239: ??? (chan_sip.c:2173) ==13334== by 0x655BAA2: ??? (chan_sip.c:3498) ==13334== by 0x8085D61: ast_hangup (channel.c:1764) ==13334== by 0x47B0EA1: ??? (app_dial.c:317) ==13334== by 0x47B7641: ??? (app_dial.c:1688) ==13334== by 0x47B776C: ??? (app_dial.c:1710) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x80CE4A3: pbx_extension_helper (pbx.c:1838) ==13334== ==13334== Invalid read of size 1 ==13334== at 0x6553FC5: ??? (lock.h:302) ==13334== by 0x6552EC3: ??? (chan_sip.c:1891) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== Address 0x312E3851 is not stack'd, malloc'd or (recently) free'd ==13334== ==13334== Process terminating with default action of signal 11 (SIGSEGV): dumping core ==13334== Access not within mapped region at address 0x312E3851 ==13334== at 0x6553FC5: ??? (lock.h:302) ==13334== by 0x6552EC3: ??? (chan_sip.c:1891) ==13334== by 0x810013D: ast_sched_runq (sched.c:359) ==13334== by 0x65958A0: ??? (chan_sip.c:15422) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== by 0x497FD3DA: start_thread (in /lib/libpthread-2.5.so) ==13334== by 0x4975706D: clone (in /lib/libc-2.5.so) ==13334== ==13334== ERROR SUMMARY: 9230 errors from 43 contexts (suppressed: 681 from 1) ==13334== malloc/free: in use at exit: 4,721,603 bytes in 10,944 blocks. ==13334== malloc/free: 9,724,400 allocs, 9,713,456 frees, 2,098,175,964 bytes allocated. ==13334== For counts of detected errors, rerun with: -v ==13334== searching for pointers to 10,944 not-freed blocks. ==13334== checked 37,239,844 bytes. ==13334== ==13334== Thread 1: ==13334== ==13334== 40 bytes in 10 blocks are definitely lost in loss record 9 of 34 ==13334== at 0x4005400: malloc (vg_replace_malloc.c:149) ==13334== by 0x49673EE7: _dl_map_object_from_fd (in /lib/ld-2.5.so) ==13334== by 0x49675403: _dl_map_object (in /lib/ld-2.5.so) ==13334== by 0x49679195: openaux (in /lib/ld-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x49679759: _dl_map_object_deps (in /lib/ld-2.5.so) ==13334== by 0x4967E6C4: dl_open_worker (in /lib/ld-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x4967E191: _dl_open (in /lib/ld-2.5.so) ==13334== by 0x497C9D0C: dlopen_doit (in /lib/libdl-2.5.so) ==13334== by 0x4967AC05: _dl_catch_error (in /lib/ld-2.5.so) ==13334== by 0x497CA38B: _dlerror_run (in /lib/libdl-2.5.so) ==13334== ==13334== ==13334== 272 bytes in 2 blocks are definitely lost in loss record 13 of 34 ==13334== at 0x400473F: calloc (vg_replace_malloc.c:279) ==13334== by 0x4967DAA9: _dl_allocate_tls (in /lib/ld-2.5.so) ==13334== by 0x497FDAC8: pthread_create@@GLIBC_2.1 (in /lib/libpthread-2.5.so) ==13334== by 0x811129A: ast_pthread_create_stack (utils.c:894) ==13334== by 0x45DA843: ??? (chan_zap.c:6981) ==13334== by 0x45ED57A: ??? (chan_zap.c:11289) ==13334== by 0x45ED6D5: ??? (chan_zap.c:11312) ==13334== by 0x80BA16D: load_resource (loader.c:660) ==13334== by 0x80BA9E3: load_modules (loader.c:854) ==13334== by 0x807239E: main (asterisk.c:2936) ==13334== ==13334== ==13334== 1,301 bytes in 32 blocks are definitely lost in loss record 19 of 34 ==13334== at 0x4005400: malloc (vg_replace_malloc.c:149) ==13334== by 0x49872E69: (within /lib/libtermcap.so.2.0.8) ==13334== by 0x4987326B: (within /lib/libtermcap.so.2.0.8) ==13334== by 0x49873BA3: tgetent (in /lib/libtermcap.so.2.0.8) ==13334== by 0x811E285: term_set (term.c:919) ==13334== by 0x811CF2F: term_init (term.c:361) ==13334== by 0x8116087: el_init (el.c:82) ==13334== by 0x806F5BF: ast_el_initialize (asterisk.c:2163) ==13334== by 0x8071C9C: main (asterisk.c:2787) ==13334== ==13334== ==13334== 1,904 bytes in 2 blocks are definitely lost in loss record 21 of 34 ==13334== at 0x4005400: malloc (vg_replace_malloc.c:149) ==13334== by 0x63B595C: my_malloc (in /usr/lib/mysql/libmysqlclient.so.15.0.0) ==13334== by 0x63DABDE: mysql_init (in /usr/lib/mysql/libmysqlclient.so.15.0.0) ==13334== by 0x638CBDE: ??? (app_addon_sql_mysql.c:227) ==13334== by 0x638D307: ??? (app_addon_sql_mysql.c:400) ==13334== by 0x80CA8E9: pbx_exec (pbx.c:532) ==13334== by 0x52C3835: ??? (pbx_realtime.c:216) ==13334== by 0x80CE59A: pbx_extension_helper (pbx.c:1849) ==13334== by 0x80CF8B7: ast_spawn_extension (pbx.c:2293) ==13334== by 0x80CFDD9: __ast_pbx_run (pbx.c:2393) ==13334== by 0x80D0BAE: pbx_thread (pbx.c:2608) ==13334== by 0x81110B2: dummy_start (utils.c:843) ==13334== ==13334== ==13334== 4,352 bytes in 32 blocks are possibly lost in loss record 24 of 34 ==13334== at 0x400473F: calloc (vg_replace_malloc.c:279) ==13334== by 0x4967DAA9: _dl_allocate_tls (in /lib/ld-2.5.so) ==13334== by 0x497FDAC8: pthread_create@@GLIBC_2.1 (in /lib/libpthread-2.5.so) ==13334== by 0x811129A: ast_pthread_create_stack (utils.c:894) ==13334== by 0x810FF7A: test_for_thread_safety (utils.c:272) ==13334== by 0x807205F: main (asterisk.c:2840) ==13334== ==13334== LEAK SUMMARY: ==13334== definitely lost: 3,517 bytes in 46 blocks. ==13334== possibly lost: 4,352 bytes in 32 blocks. ==13334== still reachable: 4,713,734 bytes in 10,866 blocks. ==13334== suppressed: 0 bytes in 0 blocks. ==13334== Reachable blocks (those to which a pointer was found) are not shown. ==13334== To see them, rerun with: --show-reachable=yes