Details
-
Bug
-
Status: Closed (View Workflow)
-
Major
-
Resolution: Duplicate
-
11.1.2, 11.2.1
-
None
-
Ubuntu 20.04 x86-64, docker image mariadb:11.1.2
Description
PoC:
SELECT * FROM ( SELECT 1 x ) ss WHERE x = 1 AND x < 1 HAVING ( WITH x AS ( SELECT 1 ) SELECT x FROM x WHERE x = 1 ) ; |
docker log:
mariadbd(my_print_stacktrace+0x32)[0x55f5ae34f7c2]
|
mariadbd(handle_fatal_signal+0x488)[0x55f5ade28cf8]
|
/lib/x86_64-linux-gnu/libc.so.6(+0x42520)[0x7f3d81977520]
|
mariadbd(+0x86c2a7)[0x55f5adbef2a7]
|
mariadbd(_ZN10Item_equal14add_key_fieldsEP4JOINPP9KEY_FIELDPjyPP14SARGABLE_PARAM+0x95)[0x55f5adbf8cc5]
|
mariadbd(+0x8760f9)[0x55f5adbf90f9]
|
mariadbd(+0x8ac324)[0x55f5adc2f324]
|
mariadbd(_ZN4JOIN14optimize_innerEv+0x1322)[0x55f5adc357e2]
|
mariadbd(_ZN4JOIN8optimizeEv+0xda)[0x55f5adc35e2a]
|
mariadbd(_ZN13st_select_lex31optimize_unflattened_subqueriesEb+0x115)[0x55f5adb8fa55]
|
mariadbd(_ZN4JOIN15optimize_stage2Ev+0x41)[0x55f5adc31251]
|
mariadbd(_ZN4JOIN14optimize_innerEv+0x1437)[0x55f5adc358f7]
|
mariadbd(_ZN4JOIN8optimizeEv+0xda)[0x55f5adc35e2a]
|
mariadbd(_Z12mysql_selectP3THDP10TABLE_LISTR4ListI4ItemEPS4_jP8st_orderS9_S7_S9_yP13select_resultP18st_select_lex_unitP13st_select_lex+0xd1)[0x55f5adc35f21]
|
mariadbd(_Z13handle_selectP3THDP3LEXP13select_resulty+0x154)[0x55f5adc36774]
|
mariadbd(+0x826f55)[0x55f5adba9f55]
|
mariadbd(_Z21mysql_execute_commandP3THDb+0x419e)[0x55f5adbb8f0e]
|
mariadbd(_Z11mysql_parseP3THDPcjP12Parser_state+0x1e7)[0x55f5adbba237]
|
mariadbd(_Z16dispatch_command19enum_server_commandP3THDPcjb+0x14bd)[0x55f5adbbca1d]
|
mariadbd(_Z10do_commandP3THDb+0x138)[0x55f5adbbe818]
|
mariadbd(_Z24do_handle_one_connectionP7CONNECTb+0x3bf)[0x55f5adce63af]
|
mariadbd(handle_one_connection+0x5d)[0x55f5adce66fd]
|
mariadbd(+0xcd1906)[0x55f5ae054906]
|
/lib/x86_64-linux-gnu/libc.so.6(+0x94b43)[0x7f3d819c9b43]
|
/lib/x86_64-linux-gnu/libc.so.6(clone+0x44)[0x7f3d81a5abb4]
|
|
Trying to get some variables.
|
Some pointers may be invalid and cause the dump to abort.
|
Query (0x7f3d180130d8): SELECT * FROM ( SELECT 1 x ) ss WHERE x = 1 AND x < 1 HAVING ( WITH x AS ( SELECT 1 ) SELECT x FROM x WHERE x = 1 )
|
|
Connection ID (thread ID): 4
|
Status: NOT_KILLED
|
|
Optimizer switch: index_merge=on,index_merge_union=on,index_merge_sort_union=on,index_merge_intersection=on,index_merge_sort_intersection=off,engine_condition_pushdown=off,index_condition_pushdown=on,derived_merge=on,derived_with_keys=on,firstmatch=on,loosescan=on,materialization=on,in_to_exists=on,semijoin=on,partial_match_rowid_merge=on,partial_match_table_scan=on,subquery_cache=on,mrr=off,mrr_cost_based=off,mrr_sort_keys=off,outer_join_with_cache=on,semijoin_with_cache=on,join_cache_incremental=on,join_cache_hashed=on,join_cache_bka=on,optimize_join_buffer_size=on,table_elimination=on,extended_keys=on,exists_to_in=on,orderby_uses_equalities=on,condition_pushdown_for_derived=on,split_materialized=on,condition_pushdown_for_subquery=on,rowid_filter=on,condition_pushdown_from_having=on,not_null_range_scan=off,hash_join_cardinality=on
|
Attachments
Issue Links
- duplicates
-
MDEV-28509 Server crash via Item_func_ne::add_key_fields in /sql/sql_bitmap.h:196, member access within null pointer of type 'struct JOIN_TAB' in add_key_field
- In Review