• Sam Lantinga's avatar
    Date: Sun, 7 Sep 2008 15:17:00 +0200 · 3e3345c7
    Sam Lantinga authored
    From: c2woody@gmx.net
    Subject: [SDL] SDL 1.2 doube free/pointer zeroing missing
    
    Hello,
    
    this is about a crash/debug breakage for the current SDL 1.2
    source tree (today's svn checkout, same problem in 1.2.13 and
    before as far as relevant).
    In some places memory is free()d but the associated pointer
    is not zeroed, leading to for example double free()s.
    
    For me this happened because SDL_StopEventThread() was executed
    twice (during restart of the subsystems), once for the close
    down in SDL_VideoQuit() and once at the startup, right at the
    beginning of SDL_StartEventLoop(). Thus the code
    SDL_DestroyMutex(SDL_EventQ.lock);
    (see SDL_events.c) was called twice and executed the SDL_free(mutex);
    twice as well, leading to a crash (msvc 64bit for which it was noticed).
    
    I've tried to check all other occurrences of SDL_free and similar
    code in msvc, see the attached patch (udiff against revision 4082).
    Non-windows only codepaths have neither been checked nor touched.
    
    Comments/ideas welcome.
    
    Attached patch: NULLifies some pointers after they have been free()d.
    
    --HG--
    branch : SDL-1.2
    extra : convert_revision : svn%3Ac70aab31-4412-0410-b14c-859654838e24/branches/SDL-1.2%403237
    3e3345c7
Name
Last commit
Last update
..
Xext Loading commit data...
aalib Loading commit data...
ataricommon Loading commit data...
bwindow Loading commit data...
dc Loading commit data...
dga Loading commit data...
directfb Loading commit data...
dummy Loading commit data...
fbcon Loading commit data...
gapi Loading commit data...
gem Loading commit data...
ggi Loading commit data...
ipod Loading commit data...
maccommon Loading commit data...
macdsp Loading commit data...
macrom Loading commit data...
nanox Loading commit data...
nds Loading commit data...
os2fslib Loading commit data...
photon Loading commit data...
picogui Loading commit data...
ps2gs Loading commit data...
qtopia Loading commit data...
quartz Loading commit data...
riscos Loading commit data...
svga Loading commit data...
symbian Loading commit data...
vgl Loading commit data...
wincommon Loading commit data...
windib Loading commit data...
windx5 Loading commit data...
wscons Loading commit data...
x11 Loading commit data...
xbios Loading commit data...
SDL_RLEaccel.c Loading commit data...
SDL_RLEaccel_c.h Loading commit data...
SDL_blit.c Loading commit data...
SDL_blit.h Loading commit data...
SDL_blit_0.c Loading commit data...
SDL_blit_1.c Loading commit data...
SDL_blit_A.c Loading commit data...
SDL_blit_N.c Loading commit data...
SDL_bmp.c Loading commit data...
SDL_cursor.c Loading commit data...
SDL_cursor_c.h Loading commit data...
SDL_gamma.c Loading commit data...
SDL_glfuncs.h Loading commit data...
SDL_leaks.h Loading commit data...
SDL_pixels.c Loading commit data...
SDL_pixels_c.h Loading commit data...
SDL_stretch.c Loading commit data...
SDL_stretch_c.h Loading commit data...
SDL_surface.c Loading commit data...
SDL_sysvideo.h Loading commit data...
SDL_video.c Loading commit data...
SDL_yuv.c Loading commit data...
SDL_yuv_mmx.c Loading commit data...
SDL_yuv_sw.c Loading commit data...
SDL_yuv_sw_c.h Loading commit data...
SDL_yuvfuncs.h Loading commit data...
blank_cursor.h Loading commit data...
default_cursor.h Loading commit data...
e_log.h Loading commit data...
e_pow.h Loading commit data...
e_sqrt.h Loading commit data...
math_private.h Loading commit data...
mmx.h Loading commit data...