Nmap Development mailing list archives

nmap 3.95/4.03 core dumps on OpenBSD 3.9 if -T[0,1] was used


From: rembrandt () jpberlin de
Date: Mon, 15 May 2006 13:15:23 +0200 (CEST)

Well I asked already for an Update for OpenBSD 3.9 STABLE but nmap 4.03 is
just avaiable for current...
Anyway there`s another issue (wich is NOT related to mem-leaks in 3.95):

Problem:
sudo nmap -P0 -T1 -sV -vvv -oA output 10.10.128-143.*

3.95:
Initiating ARP Ping Scan against 1225 hosts [1 port/host] at 12:21
ARP Ping Scan Timing: About 0.41% done; ETC: 14:25 (2:03:13 remaining)
assertion "0" failed: file "scan_engine.cc", line 1826, function
"ultrascan_port_pspec_update"
Abort trap (core dumped)

So... (for OpenBSD)
export CVSROOT=anoncvs () anoncvs openbsd org:/cvs
cd /tmp
cvs get ports/net/nmap
cd ports/net/nmap
sudo pkg_delete nmap*
sudo env FLAVOR=no_x11 make install


Starting Nmap 4.03 ( http://www.insecure.org/nmap/ ) at 2006-05-15 12:28 CEST
Initiating ARP Ping Scan against 1225 hosts [1 port/host] at 12:28
ARP Ping Scan Timing: About 0.41% done; ETC: 14:32 (2:03:13 remaining)
assertion "0" failed: file "scan_engine.cc", line 1683, function
"ultrascan_port_pspec_update"
Abort trap (core dumped)

Are there any problems... with the Timing-Settings?
If I use f.e. -T[2,3,4,5] (or I simply do not -T) it works...

Starting Nmap 4.03 ( http://www.insecure.org/nmap/ ) at 2006-05-15 12:34 CEST
Initiating ARP Ping Scan against 1225 hosts [1 port/host] at 12:34
The ARP Ping Scan took 1.46s to scan 1225 total hosts.
DNS resolution of 1042 IPs took 13.12s. Mode: Async [#: 1, OK: 938, NX:
37, DR: 67, SF: 0, TR: 1361, CN: 0]
Initiating SYN Stealth Scan against 5 hosts [1674 ports/host] at 12:34
Discovered open port 22/tcp on 10.10.128.6
Discovered open port 22/tcp on 10.10.128.7
Discovered open port 443/tcp on 10.10.128.6
Discovered open port 443/tcp on 10.10.128.7
Discovered open port 53/tcp on 10.10.128.6
Discovered open port 80/tcp on 10.10.128.6
Discovered open port 25/tcp on 10.10.128.6
Discovered open port 21/tcp on 10.10.128.6
Discovered open port 3306/tcp on 10.10.128.6
Discovered open port 465/tcp on 10.10.128.6
Discovered open port 8443/tcp on 10.10.128.6
Discovered open port 993/tcp on 10.10.128.6
Discovered open port 111/tcp on 10.10.128.7
Discovered open port 143/tcp on 10.10.128.6
Discovered open port 995/tcp on 10.10.128.6
Discovered open port 106/tcp on 10.10.128.6
Discovered open port 110/tcp on 10.10.128.6

Btw: Would it be possible to add --debug to ./configure?
     Or for the Portmaintainer: a Debug-Flavor maybe?

Well I rebuild it with debugging:

gdb -c nmap.core ./nmap

Core was generated by `nmap'.
Program terminated with signal 6, Aborted.
Reading symbols from /usr/local/lib/libpcre.so.1.0...done.
Loaded symbols for /usr/local/lib/libpcre.so.1.0
Reading symbols from /usr/lib/libpcap.so.4.0...done.
Loaded symbols for /usr/lib/libpcap.so.4.0
Reading symbols from /usr/lib/libssl.so.10.0...done.
Loaded symbols for /usr/lib/libssl.so.10.0
Reading symbols from /usr/lib/libcrypto.so.12.0...done.
Loaded symbols for /usr/lib/libcrypto.so.12.0
Reading symbols from /usr/local/lib/libdnet.so.1.0...done.
Loaded symbols for /usr/local/lib/libdnet.so.1.0
Reading symbols from /usr/lib/libstdc++.so.42.0...done.
Loaded symbols for /usr/lib/libstdc++.so.42.0
Reading symbols from /usr/lib/libm.so.2.1...done.
Loaded symbols for /usr/lib/libm.so.2.1
Reading symbols from /usr/lib/libc.so.39.0...done.
Loaded symbols for /usr/lib/libc.so.39.0
Reading symbols from /usr/libexec/ld.so...done.
Loaded symbols for /usr/libexec/ld.so
#0  0x0bcf4995 in kill () from /usr/lib/libc.so.39.0



Kind regards,
Rembrandt



_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev


Current thread: