Uploaded image for project: 'MariaDB Server'
  1. MariaDB Server
  2. MDEV-11442

Server crashes in String::length / parse_one_or_all / Item_func_json_contains_path::val_int

    XMLWordPrintable

    Details

      Description

      SELECT JSON_CONTAINS_PATH('{ "a": true }', NULL, '$.a' );
      

      10.2 6a10681266

      #3  <signal handler called>
      #4  0x00007f73850277f4 in String::length (this=0x0) at /data/src/10.2/sql/sql_string.h:203
      #5  0x00007f738552ce4d in parse_one_or_all (ooa_arg=0x7f733d935268, ooa_parsed=0x7f733d9354aa, ooa_constant=true, mode_one=0x7f733d9354a8) at /data/src/10.2/sql/item_jsonfunc.cc:737
      #6  0x00007f738552d03a in Item_func_json_contains_path::val_int (this=0x7f733d9353b8) at /data/src/10.2/sql/item_jsonfunc.cc:759
      #7  0x00007f738537b68d in Item::send (this=0x7f733d9353b8, protocol=0x7f733d814600, buffer=0x7f73861ee7a0) at /data/src/10.2/sql/item.cc:6775
      #8  0x00007f738502a178 in Protocol::send_result_set_row (this=0x7f733d814600, row_items=0x7f733d8183a8) at /data/src/10.2/sql/protocol.cc:979
      #9  0x00007f73850a8e50 in select_send::send_data (this=0x7f733d9355b8, items=...) at /data/src/10.2/sql/sql_class.cc:2915
      #10 0x00007f7385135e4f in JOIN::exec_inner (this=0x7f733d9355d8) at /data/src/10.2/sql/sql_select.cc:3278
      #11 0x00007f73851358ea in JOIN::exec (this=0x7f733d9355d8) at /data/src/10.2/sql/sql_select.cc:3198
      #12 0x00007f7385136a41 in mysql_select (thd=0x7f733d814070, tables=0x0, wild_num=0, fields=..., conds=0x0, og_num=0, order=0x0, group=0x0, having=0x0, proc_param=0x0, select_options=2147748608, result=0x7f733d9355b8, unit=0x7f733d817b48, select_lex=0x7f733d818280) at /data/src/10.2/sql/sql_select.cc:3583
      #13 0x00007f738512bb25 in handle_select (thd=0x7f733d814070, lex=0x7f733d817a80, result=0x7f733d9355b8, setup_tables_done_option=0) at /data/src/10.2/sql/sql_select.cc:373
      #14 0x00007f73850f846f in execute_sqlcom_select (thd=0x7f733d814070, all_tables=0x0) at /data/src/10.2/sql/sql_parse.cc:6356
      #15 0x00007f73850edf2a in mysql_execute_command (thd=0x7f733d814070) at /data/src/10.2/sql/sql_parse.cc:3379
      #16 0x00007f73850fbe2e in mysql_parse (thd=0x7f733d814070, rawbuf=0x7f733d935088 "SELECT JSON_CONTAINS_PATH('{ \"a\": true }', NULL, '$.a' )", length=56, parser_state=0x7f73861efe20, is_com_multi=false, is_next_command=false) at /data/src/10.2/sql/sql_parse.cc:7799
      #17 0x00007f73850e9b7e in dispatch_command (command=COM_QUERY, thd=0x7f733d814070, packet=0x7f733d85b071 "", packet_length=56, is_com_multi=false, is_next_command=false) at /data/src/10.2/sql/sql_parse.cc:1808
      #18 0x00007f73850e8558 in do_command (thd=0x7f733d814070) at /data/src/10.2/sql/sql_parse.cc:1368
      #19 0x00007f738522fa26 in do_handle_one_connection (connect=0x7f7381c60210) at /data/src/10.2/sql/sql_connect.cc:1354
      #20 0x00007f738522f7b3 in handle_one_connection (arg=0x7f7381c60210) at /data/src/10.2/sql/sql_connect.cc:1260
      #21 0x00007f73847270a4 in start_thread (arg=0x7f73861f1300) at pthread_create.c:309
      #22 0x00007f73826d487d in clone () at ../sysdeps/unix/sysv/linux/x86_64/clone.S:111
      

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              holyfoot Alexey Botchkov
              Reporter:
              elenst Elena Stepanova
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved: