imap/2746: segfault in imap_unquote_string()
>Number: 2746
>Notify-List: j+mutt@xxxxxxxxxxxxx
>Category: imap
>Synopsis: segfault in imap_unquote_string()
>Confidential: no
>Severity: normal
>Priority: medium
>Responsible: mutt-dev
>State: open
>Keywords:
>Class: sw-bug
>Submitter-Id: net
>Arrival-Date: Wed Feb 07 17:31:40 +0100 2007
>Originator: Jukka Salmi
>Release: Mutt 1.5.13 (2007-01-26)
>Organization:
>Environment:
NetBSD/i386 4.99.9
>Description:
$ gdb mutt mutt.core
GNU gdb 6.5
[...]
Core was generated by `mutt'.
Program terminated with signal 11, Segmentation fault.
#0 imap_unquote_string (s=0x0) at util.c:481
481 if (*s == '\"')
(gdb) bt
#0 imap_unquote_string (s=0x0) at util.c:481
#1 0x080c147e in imap_unmunge_mbox_name (s=0x0) at util.c:527
#2 0x080bde34 in imap_subscribe (path=0x820c120 "imap://mx1.salmi.ch/",
subscribe=1) at imap.c:1770
#3 0x08051099 in _mutt_select_file (f=0xbfbfd920 "", flen=1024, flags=4,
files=0x0, numfiles=0x0) at browser.c:846
#4 0x0805e144 in _mutt_enter_fname (prompt=0x80c69a0 "Open mailbox",
buf=0xbfbfd920 "", blen=1024, redraw=0x8184e94, buffy=1, multiple=0, files=0x0,
numfiles=0x0) at curs_lib.c:513
#5 0x0805f07d in mutt_index_menu () at curs_main.c:1065
#6 0x0807717f in main (argc=2, argv=0x0) at main.c:963
(gdb)
>How-To-Repeat:
couldn't reproduce the fault so far
>Fix:
Unknown
>Add-To-Audit-Trail:
>Unformatted: