Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 16 Oct 2006 10:38:33 +0300
From:      Giorgos Keramidas <keramida@ceid.upatras.gr>
To:        Mark <admin@asarian-host.net>
Cc:        freebsd-questions@FreeBSD.org
Subject:   Re: "canary mismatch on efree()"
Message-ID:  <20061016073833.GH80186@gothmog.pc>
In-Reply-To: <200610141827.k9EIQvId018475@asarian-host.net>
References:  <200610141827.k9EIQvId018475@asarian-host.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On 2006-10-14 18:27, Mark <admin@asarian-host.net> wrote:
> 
> Hello,
> 
> I'm running Apache/1.3.37 (Unix) and PHP/4.4.4 with Suhosin-Patch. All of
> a sudden I get this in my log:
> 
> [Sat Oct 14 19:54:32 2006] [error] ALERT - canary mismatch on efree() -
> heap overflow or double efree detected (attacker '192.168.1.4', file
> '/www/vhosts/asarian-host.net/htdocs/phpMyAdmin/index.php')
> 
> This is not good. If a simple thing like phpMyAdmin causes it, then I will
> have to disable the Suhosin-Patch (which propably means recompiling from
> scratch, right?).

o   What version of FreeBSD are you using?

o   What php-related and apache-related packages have you installed and
    what options did you use while installing them?

o   Does this happen only with phpMyAdmin or with other PHP scripts too?





Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20061016073833.GH80186>