|
|
|
This is Suricata version 2.1dev (rev 58c28d6)
|
|
Features: PCAP_SET_BUFF LIBPCAP_VERSION_MAJOR=1 PF_RING AF_PACKET HAVE_PACKET_FANOUT LIBCAP_NG LIBNET1.1 HAVE_HTP_URI_NORMALIZE_HOOK HAVE_NSS HAVE_LIBJANSSON
|
|
SIMD support: SSE_4_2 SSE_4_1 SSE_3
|
|
Atomic intrisics: 1 2 4 8 16 byte(s)
|
|
64-bits, Little-endian architecture
|
|
GCC version 4.6.3, C version 199901
|
|
compiled with -fstack-protector
|
|
compiled with _FORTIFY_SOURCE=2
|
|
L1 cache line size (CLS)=64
|
|
compiled with LibHTP v0.5.15, linked against LibHTP v0.5.15
|
|
Suricata Configuration:
|
|
AF_PACKET support: yes
|
|
PF_RING support: yes
|
|
NFQueue support: no
|
|
NFLOG support: no
|
|
IPFW support: no
|
|
DAG enabled: no
|
|
Napatech enabled: no
|
|
Unix socket enabled: yes
|
|
Detection enabled: yes
|
|
|
|
libnss support: yes
|
|
libnspr support: yes
|
|
libjansson support: yes
|
|
Prelude support: no
|
|
PCRE jit: no
|
|
LUA support: no
|
|
libluajit: no
|
|
libgeoip: yes
|
|
Non-bundled htp: no
|
|
Old barnyard2 support: no
|
|
CUDA enabled: no
|
|
|
|
Suricatasc install: yes
|
|
|
|
Unit tests enabled: no
|
|
Debug output enabled: no
|
|
Debug validation enabled: no
|
|
Profiling enabled: no
|
|
Profiling locks enabled: no
|
|
Coccinelle / spatch: yes
|
|
|
|
Generic build parameters:
|
|
Installation prefix (--prefix): /usr/local
|
|
Configuration directory (--sysconfdir): /usr/local/etc/suricata/
|
|
Log directory (--localstatedir) : /usr/local/var/log/suricata/
|
|
|
|
Host: x86_64-unknown-linux-gnu
|
|
GCC binary: gcc
|
|
GCC Protect enabled: no
|
|
GCC march native enabled: yes
|
|
GCC Profile enabled: no
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
GNU gdb (Ubuntu/Linaro 7.4-2012.04-0ubuntu2.1) 7.4-2012.04
|
|
Copyright (C) 2012 Free Software Foundation, Inc.
|
|
License GPLv3+: GNU GPL version 3 or later <http://gnu.org/licenses/gpl.html>
|
|
This is free software: you are free to change and redistribute it.
|
|
There is NO WARRANTY, to the extent permitted by law. Type "show copying"
|
|
and "show warranty" for details.
|
|
This GDB was configured as "x86_64-linux-gnu".
|
|
For bug reporting instructions, please see:
|
|
<http://bugs.launchpad.net/gdb-linaro/>...
|
|
Reading symbols from /usr/local/bin/suricata...done.
|
|
|
|
warning: core file may not match specified executable file.
|
|
[New LWP 21417]
|
|
[New LWP 21425]
|
|
[New LWP 21422]
|
|
[New LWP 21431]
|
|
[New LWP 21424]
|
|
[New LWP 21432]
|
|
[New LWP 21418]
|
|
[New LWP 21434]
|
|
[New LWP 21415]
|
|
[New LWP 21433]
|
|
[New LWP 21429]
|
|
[New LWP 21427]
|
|
[New LWP 21426]
|
|
[New LWP 21430]
|
|
[New LWP 21421]
|
|
[New LWP 21423]
|
|
[New LWP 21428]
|
|
[New LWP 21435]
|
|
[New LWP 21441]
|
|
[New LWP 21440]
|
|
[New LWP 21419]
|
|
[New LWP 21420]
|
|
|
|
warning: no loadable sections found in added symbol-file system-supplied DSO at 0x7fffb9185000
|
|
Core was generated by `suricata --pfring-int=eth3 --pfring-cluster-id=99 --pfring-cluster-type=cluster'.
|
|
Program terminated with signal 11, Segmentation fault.
|
|
#0 0x000000000045c9f8 in DecodeGRE (tv=0x541e2eaa, dtv=0x0, p=0x0, pkt=0x7f2692917150 "", len=0, pq=0x0) at decode-gre.c:153
|
|
153 ENGINE_SET_INVALID_EVENT(p,GRE_VERSION1_SSR);
|
|
(gdb)
|
|
(gdb)
|
|
(gdb) thread apply all bt
|
|
|
|
Thread 22 (LWP 21420):
|
|
#0 0x000000000055c2a6 in PcapLogOpenFileCtx (pl=0x0) at log-pcap.c:989
|
|
#1 0x000000000045daf0 in DecodeICMPV4 (tv=0x0, dtv=0x0, p=0x0, pkt=0x35342 <Address 0x35342 out of bounds>, len=0, pq=0x0) at decode-icmpv4.c:287
|
|
Backtrace stopped: previous frame inner to this frame (corrupt stack?)
|
|
|
|
Thread 21 (LWP 21419):
|
|
#0 0x000000000055c2a6 in PcapLogOpenFileCtx (pl=0x0) at log-pcap.c:989
|
|
#1 0x000000000045daf0 in DecodeICMPV4 (tv=0x0, dtv=0x0, p=0x0, pkt=0x35342 <Address 0x35342 out of bounds>, len=0, pq=0x0) at decode-icmpv4.c:287
|
|
Backtrace stopped: previous frame inner to this frame (corrupt stack?)
|
|
|
|
Thread 20 (LWP 21440):
|
|
#0 0x00007f2696da20fe in ?? ()
|
|
#1 0x0000000000000000 in ?? ()
|
|
|
|
Thread 19 (LWP 21441):
|
|
#0 0x00007f2696da20fe in ?? ()
|
|
#1 0x0000000000000000 in ?? ()
|
|
|
|
Thread 18 (LWP 21435):
|
|
#0 0x00007f2696da20fe in ?? ()
|
|
#1 0x0000000000000000 in ?? ()
|
|
|
|
Thread 17 (LWP 21428):
|
|
#0 0x000000000055c2a6 in PcapLogOpenFileCtx (pl=0x0) at log-pcap.c:989
|
|
#1 0x000000000045dbc2 in DecodeICMPV4 (tv=0x0, dtv=0x0, p=0x0, pkt=0x35342 <Address 0x35342 out of bounds>, len=0, pq=0x0) at decode-icmpv4.c:300
|
|
Backtrace stopped: previous frame inner to this frame (corrupt stack?)
|
|
|
|
Thread 16 (LWP 21423):
|
|
#0 0x000000000055c2a6 in PcapLogOpenFileCtx (pl=0x0) at log-pcap.c:989
|
|
#1 0x000000000045daf0 in DecodeICMPV4 (tv=0x0, dtv=0x0, p=0x0, pkt=0x35342 <Address 0x35342 out of bounds>, len=0, pq=0x0) at decode-icmpv4.c:287
|
|
Backtrace stopped: previous frame inner to this frame (corrupt stack?)
|
|
|
|
Thread 15 (LWP 21421):
|
|
#0 0x00007f2695eb225f in ?? ()
|
|
#1 0x000000000055c21d in PcapLogOpenFileCtx (pl=0x0) at log-pcap.c:981
|
|
#2 0x000000000045daf0 in DecodeICMPV4 (tv=0x0, dtv=0x0, p=0x0, pkt=0x35342 <Address 0x35342 out of bounds>, len=0, pq=0x0) at decode-icmpv4.c:287
|
|
Backtrace stopped: previous frame inner to this frame (corrupt stack?)
|
|
|
|
Thread 14 (LWP 21430):
|
|
#0 0x000000000055c2a6 in PcapLogOpenFileCtx (pl=0x0) at log-pcap.c:989
|
|
#1 0x000000000045dbc2 in DecodeICMPV4 (tv=0x0, dtv=0x0, p=0x0, pkt=0x35342 <Address 0x35342 out of bounds>, len=0, pq=0x0) at decode-icmpv4.c:300
|
|
Backtrace stopped: previous frame inner to this frame (corrupt stack?)
|
|
|
|
Thread 13 (LWP 21426):
|
|
#0 0x000000000055c2ac in PcapLogOpenFileCtx (pl=0x0) at log-pcap.c:993
|
|
#1 0x000000000045dbc2 in DecodeICMPV4 (tv=0x0, dtv=0x0, p=0x0, pkt=0x35342 <Address 0x35342 out of bounds>, len=0, pq=0x0) at decode-icmpv4.c:300
|
|
---Type <return> to continue, or q <return> to quit---
|
|
Backtrace stopped: previous frame inner to this frame (corrupt stack?)
|
|
|
|
Thread 12 (LWP 21427):
|
|
#0 0x000000000055c2a6 in PcapLogOpenFileCtx (pl=0x0) at log-pcap.c:989
|
|
#1 0x000000000045daf0 in DecodeICMPV4 (tv=0x0, dtv=0x0, p=0x0, pkt=0x35342 <Address 0x35342 out of bounds>, len=0, pq=0x0) at decode-icmpv4.c:287
|
|
Backtrace stopped: previous frame inner to this frame (corrupt stack?)
|
|
|
|
Thread 11 (LWP 21429):
|
|
#0 0x000000000055c38c in PcapLogOpenFileCtx (pl=0x0) at log-pcap.c:1003
|
|
#1 0x000000000045dbc2 in DecodeICMPV4 (tv=0x0, dtv=0x0, p=0x0, pkt=0x35342 <Address 0x35342 out of bounds>, len=0, pq=0x0) at decode-icmpv4.c:300
|
|
Backtrace stopped: previous frame inner to this frame (corrupt stack?)
|
|
|
|
Thread 10 (LWP 21433):
|
|
#0 0x00007f2695f13683 in ?? ()
|
|
#1 0x0000000000000000 in ?? ()
|
|
|
|
Thread 9 (LWP 21415):
|
|
#0 0x00007f2695ee5dbd in ?? ()
|
|
#1 0x0000000000000000 in ?? ()
|
|
|
|
Thread 8 (LWP 21434):
|
|
#0 0x00007f2696da20fe in ?? ()
|
|
#1 0x0000000000000000 in ?? ()
|
|
|
|
Thread 7 (LWP 21418):
|
|
#0 0x0000000000484004 in AlertDebugLogModeSyncFlowbitsNamesToPacketStruct (p=0x0, de_ctx=0x0) at detect.c:1173
|
|
#1 0x0000000016819bf0 in ?? ()
|
|
#2 0x000000000000277a in ?? ()
|
|
#3 0x000000001957b840 in ?? ()
|
|
#4 0x0000277a00013bd0 in ?? ()
|
|
#5 0x000000000000277a in ?? ()
|
|
#6 0x0000000000000000 in ?? ()
|
|
|
|
Thread 6 (LWP 21432):
|
|
#0 0x000000000055c3b1 in PcapLogOpenFileCtx (pl=0x0) at log-pcap.c:1006
|
|
#1 0x000000000045daf0 in DecodeICMPV4 (tv=0x0, dtv=0x0, p=0x0, pkt=0x35342 <Address 0x35342 out of bounds>, len=0, pq=0x0) at decode-icmpv4.c:287
|
|
Backtrace stopped: previous frame inner to this frame (corrupt stack?)
|
|
|
|
Thread 5 (LWP 21424):
|
|
#0 0x000000000045cc19 in DecodeGRE (tv=0x31, dtv=0x0, p=0xffffffff5f580000, pkt=0x5f57bfff54288000 <Address 0x5f57bfff54288000 out of bounds>, len=16383, pq=0x2ef93fff259dc000)
|
|
at decode-gre.c:173
|
|
#1 0x164b0108028d0000 in ?? ()
|
|
#2 0x0000000500060001 in ?? ()
|
|
#3 0x0000000018161470 in ?? ()
|
|
#4 0x0000000018161440 in ?? ()
|
|
#5 0x0000000000000000 in ?? ()
|
|
|
|
---Type <return> to continue, or q <return> to quit---
|
|
Thread 4 (LWP 21431):
|
|
#0 0x00007f2695eb2269 in ?? ()
|
|
#1 0x000000000055c21d in PcapLogOpenFileCtx (pl=0x0) at log-pcap.c:981
|
|
#2 0x000000000045daf0 in DecodeICMPV4 (tv=0x0, dtv=0x0, p=0x0, pkt=0x35342 <Address 0x35342 out of bounds>, len=0, pq=0x0) at decode-icmpv4.c:287
|
|
Backtrace stopped: previous frame inner to this frame (corrupt stack?)
|
|
|
|
Thread 3 (LWP 21422):
|
|
#0 0x000000000055c741 in PcapLogOpenFileCtx (pl=0x0) at log-pcap.c:1013
|
|
#1 0x000000000045daf0 in DecodeICMPV4 (tv=0x0, dtv=0x0, p=0x0, pkt=0x35342 <Address 0x35342 out of bounds>, len=0, pq=0x0) at decode-icmpv4.c:287
|
|
Backtrace stopped: previous frame inner to this frame (corrupt stack?)
|
|
|
|
Thread 2 (LWP 21425):
|
|
#0 0x000000000055c2a6 in PcapLogOpenFileCtx (pl=0x0) at log-pcap.c:989
|
|
#1 0x000000000045daf0 in DecodeICMPV4 (tv=0x0, dtv=0x0, p=0x0, pkt=0x35342 <Address 0x35342 out of bounds>, len=0, pq=0x0) at decode-icmpv4.c:287
|
|
Backtrace stopped: previous frame inner to this frame (corrupt stack?)
|
|
|
|
Thread 1 (LWP 21417):
|
|
#0 0x000000000045c9f8 in DecodeGRE (tv=0x541e2eaa, dtv=0x0, p=0x0, pkt=0x7f2692917150 "", len=0, pq=0x0) at decode-gre.c:153
|
|
#1 0x0000000016819bf0 in ?? ()
|
|
#2 0x000000000000277a in ?? ()
|
|
#3 0x000000001957b840 in ?? ()
|
|
#4 0x0000277a00013bd0 in ?? ()
|
|
#5 0x000000000000277a in ?? ()
|
|
#6 0x0000000000000000 in ?? ()
|
|
(gdb)
|