Ok, I installed dbg packages to allow source resolution:

$ valgrind evince DrayTek_RMA.pdf
==10824== Memcheck, a memory error detector
==10824== Copyright (C) 2002-2010, and GNU GPL'd, by Julian Seward et al.
==10824== Using Valgrind-3.6.0.SVN-Debian and LibVEX; rerun with -h for 
copyright info
==10824== Command: evince DrayTek_RMA.pdf
==10824== 
==10824== Conditional jump or move depends on uninitialised value(s)
==10824==    at 0x8B05E40: inflateReset2 (inflate.c:157)
==10824==    by 0x8B05F2F: inflateInit2_ (inflate.c:193)
==10824==    by 0x8B001BC: gz_open (gzio.c:186)
==10824==    by 0x5712605: ??? (in /usr/lib/libxml2.so.2.7.7)
==10824==    by 0x5711FF7: __xmlParserInputBufferCreateFilename (in 
/usr/lib/libxml2.so.2.7.7)
==10824==    by 0x56E70EC: xmlNewInputFromFile (in /usr/lib/libxml2.so.2.7.7)
==10824==    by 0x56EB525: xmlCreateURLParserCtxt (in /usr/lib/libxml2.so.2.7.7)
==10824==    by 0x57023FD: xmlSAXParseFileWithData (in 
/usr/lib/libxml2.so.2.7.7)
==10824==    by 0x14DD67: egg_toolbars_model_load_names 
(egg-toolbars-model.c:659)
==10824==    by 0x13D0E7: ev_window_init (ev-window.c:6504)
==10824==    by 0x7DD49F4: g_type_create_instance (gtype.c:1887)
==10824==    by 0x7DB6EA8: g_object_constructor (gobject.c:1482)
==10824== 
==10824== Thread 3:
==10824== Conditional jump or move depends on uninitialised value(s)
==10824==    at 0x8B05E40: inflateReset2 (inflate.c:157)
==10824==    by 0x8B05F2F: inflateInit2_ (inflate.c:193)
==10824==    by 0x8B001BC: gz_open (gzio.c:186)
==10824==    by 0x5055361: __synctex_open (synctex_parser.c:2595)
==10824==    by 0x5055544: _synctex_open (synctex_parser.c:2667)
==10824==    by 0x50596C3: synctex_scanner_new_with_output_file 
(synctex_parser.c:2514)
==10824==    by 0x504A96A: ev_document_load (ev-document.c:332)
==10824==    by 0x504C318: ev_document_factory_get_document 
(ev-document-factory.c:235)
==10824==    by 0x528178E: ev_job_load_run (ev-jobs.c:951)
==10824==    by 0x5282F8F: ev_job_thread_proxy (ev-job-scheduler.c:183)
==10824==    by 0x8885393: g_thread_create_proxy (gthread.c:1897)
==10824==    by 0x8F9E970: start_thread (pthread_create.c:304)
==10824== 
==10824== Conditional jump or move depends on uninitialised value(s)
==10824==    at 0x8B05E40: inflateReset2 (inflate.c:157)
==10824==    by 0x8B05F2F: inflateInit2_ (inflate.c:193)
==10824==    by 0x8B001BC: gz_open (gzio.c:186)
==10824==    by 0x50554D7: __synctex_open (synctex_parser.c:2614)
==10824==    by 0x5055544: _synctex_open (synctex_parser.c:2667)
==10824==    by 0x50596C3: synctex_scanner_new_with_output_file 
(synctex_parser.c:2514)
==10824==    by 0x504A96A: ev_document_load (ev-document.c:332)
==10824==    by 0x504C318: ev_document_factory_get_document 
(ev-document-factory.c:235)
==10824==    by 0x528178E: ev_job_load_run (ev-jobs.c:951)
==10824==    by 0x5282F8F: ev_job_thread_proxy (ev-job-scheduler.c:183)
==10824==    by 0x8885393: g_thread_create_proxy (gthread.c:1897)
==10824==    by 0x8F9E970: start_thread (pthread_create.c:304)
==10824== 
==10824== Thread 1:
==10824== Invalid read of size 8
==10824==    at 0x528DA6A: ev_view_get_height_to_page (ev-view.c:388)
==10824==    by 0x528FEC3: get_page_y_offset (ev-view.c:1089)
==10824==    by 0x5298055: ev_view_size_request (ev-view.c:2954)
==10824==    by 0x7DB0618: g_closure_invoke (gclosure.c:766)
==10824==    by 0x7DC8822: signal_emit_unlocked_R (gsignal.c:3182)
==10824==    by 0x7DCA6D5: g_signal_emit_valist (gsignal.c:2983)
==10824==    by 0x7DCA9FC: g_signal_emit_by_name (gsignal.c:3077)
==10824==    by 0x6108717: _gtk_size_group_compute_requisition 
(gtksizegroup.c:828)
==10824==    by 0x60FD905: gtk_scrolled_window_size_request 
(gtkscrolledwindow.c:1265)
==10824==    by 0x7DB0618: g_closure_invoke (gclosure.c:766)
==10824==    by 0x7DC8822: signal_emit_unlocked_R (gsignal.c:3182)
==10824==    by 0x7DCA6D5: g_signal_emit_valist (gsignal.c:2983)
==10824==  Address 0x15f1c630 is 0 bytes after a block of size 32 alloc'd
==10824==    at 0x4C27480: calloc (vg_replace_malloc.c:467)
==10824==    by 0x8864BD9: g_malloc0 (gmem.c:157)
==10824==    by 0x528D5F3: build_height_to_page (ev-view.c:307)
==10824==    by 0x5292E41: ev_view_document_changed_cb (ev-view.c:418)
==10824==    by 0x7DB06CD: g_closure_invoke (gclosure.c:766)
==10824==    by 0x7DC8F58: signal_emit_unlocked_R (gsignal.c:3252)
==10824==    by 0x7DCA6D5: g_signal_emit_valist (gsignal.c:2983)
==10824==    by 0x7DCAF42: g_signal_emit (gsignal.c:3040)
==10824==    by 0x7DB4BB8: g_object_dispatch_properties_changed (gobject.c:799)
==10824==    by 0x7DB8133: g_object_notify (gobjectnotifyqueue.c:132)
==10824==    by 0x13631C: ev_window_load_job_cb (ev-window.c:1534)
==10824==    by 0x7DB06CD: g_closure_invoke (gclosure.c:766)
==10824== 
==10824== Invalid read of size 8
==10824==    at 0x528DA6A: ev_view_get_height_to_page (ev-view.c:388)
==10824==    by 0x528FEC3: get_page_y_offset (ev-view.c:1089)
==10824==    by 0x5298055: ev_view_size_request (ev-view.c:2954)
==10824==    by 0x52985B7: ev_view_size_allocate (ev-view.c:3124)
==10824==    by 0x7DB0618: g_closure_invoke (gclosure.c:766)
==10824==    by 0x7DC8822: signal_emit_unlocked_R (gsignal.c:3182)
==10824==    by 0x7DCA6D5: g_signal_emit_valist (gsignal.c:2983)
==10824==    by 0x7DCAF42: g_signal_emit (gsignal.c:3040)
==10824==    by 0x61C8E86: gtk_widget_size_allocate (gtkwidget.c:4088)
==10824==    by 0x60FD282: gtk_scrolled_window_size_allocate 
(gtkscrolledwindow.c:1437)
==10824==    by 0x7DB0618: g_closure_invoke (gclosure.c:766)
==10824==    by 0x7DC8822: signal_emit_unlocked_R (gsignal.c:3182)
==10824==  Address 0x15f1c630 is 0 bytes after a block of size 32 alloc'd
==10824==    at 0x4C27480: calloc (vg_replace_malloc.c:467)
==10824==    by 0x8864BD9: g_malloc0 (gmem.c:157)
==10824==    by 0x528D5F3: build_height_to_page (ev-view.c:307)
==10824==    by 0x5292E41: ev_view_document_changed_cb (ev-view.c:418)
==10824==    by 0x7DB06CD: g_closure_invoke (gclosure.c:766)
==10824==    by 0x7DC8F58: signal_emit_unlocked_R (gsignal.c:3252)
==10824==    by 0x7DCA6D5: g_signal_emit_valist (gsignal.c:2983)
==10824==    by 0x7DCAF42: g_signal_emit (gsignal.c:3040)
==10824==    by 0x7DB4BB8: g_object_dispatch_properties_changed (gobject.c:799)
==10824==    by 0x7DB8133: g_object_notify (gobjectnotifyqueue.c:132)
==10824==    by 0x13631C: ev_window_load_job_cb (ev-window.c:1534)
==10824==    by 0x7DB06CD: g_closure_invoke (gclosure.c:766)
==10824== 
==10824== Invalid read of size 4
==10824==    at 0x65D6842: gdk_region_intersect (gdkregion-generic.c:605)
==10824==    by 0x65E63E4: gdk_window_invalidate_maybe_recurse_full 
(gdkwindow.c:5786)
==10824==    by 0x7DB06CD: g_closure_invoke (gclosure.c:766)
==10824==    by 0x7DC8F58: signal_emit_unlocked_R (gsignal.c:3252)
==10824==    by 0x7DCA6D5: g_signal_emit_valist (gsignal.c:2983)
==10824==    by 0x7DCAF42: g_signal_emit (gsignal.c:3040)
==10824==    by 0x7DB06CD: g_closure_invoke (gclosure.c:766)
==10824==    by 0x7DC8F58: signal_emit_unlocked_R (gsignal.c:3252)
==10824==    by 0x7DCA6D5: g_signal_emit_valist (gsignal.c:2983)
==10824==    by 0x7DCAF42: g_signal_emit (gsignal.c:3040)
==10824==    by 0x527F8DF: emit_finished (ev-jobs.c:179)
==10824==    by 0x885BCB1: g_main_context_dispatch (gmain.c:2119)
==10824==  Address 0xcbdeb30 is 0 bytes after a block of size 32 alloc'd
==10824==    at 0x4C2815C: malloc (vg_replace_malloc.c:236)
==10824==    by 0x741E52A: cairo_region_create_rectangle (cairo-region.c:287)
==10824==    by 0x5290EBC: ev_view_form_field_get_region (ev-view.c:1946)
==10824==    by 0x5290F65: ev_view_form_field_text_save (ev-view.c:2041)
==10824==    by 0x7DB1E6F: weak_refs_notify (gobject.c:2090)
==10824==    by 0x88477ED: g_datalist_id_set_data_full (gdataset.c:345)
==10824==    by 0x7DB2729: g_object_unref (gobject.c:2543)
==10824==    by 0x7DD66C2: g_value_unset (gvalue.c:275)
==10824==    by 0x7DCA6F8: g_signal_emit_valist (gsignal.c:3012)
==10824==    by 0x7DCAF42: g_signal_emit (gsignal.c:3040)
==10824==    by 0x528DB50: ev_view_remove_all (ev-view.c:3626)
==10824==    by 0x5295105: ev_view_button_press_event (ev-view.c:3572)
==10824== 

GLib-ERROR **: /build/buildd/glib2.0-2.25.14/glib/gmem.c:140: failed to 
allocate 8658654070048 bytes
aborting...
==10824== 
==10824== Process terminating with default action of signal 5 (SIGTRAP)
==10824==    at 0x8866592: g_logv (gmessages.c:554)
==10824==    by 0x8866972: g_log (gmessages.c:568)
==10824==    by 0x8864CDD: g_malloc (gmem.c:139)
==10824==    by 0x65D7A2C: miRegionCopy (gdkregion-generic.c:632)
==10824==    by 0x65D8058: gdk_region_copy (gdkregion-generic.c:199)
==10824==    by 0x65E64E7: gdk_window_invalidate_maybe_recurse_full 
(gdkwindow.c:5812)
==10824==    by 0x7DB06CD: g_closure_invoke (gclosure.c:766)
==10824==    by 0x7DC8F58: signal_emit_unlocked_R (gsignal.c:3252)
==10824==    by 0x7DCA6D5: g_signal_emit_valist (gsignal.c:2983)
==10824==    by 0x7DCAF42: g_signal_emit (gsignal.c:3040)
==10824==    by 0x7DB06CD: g_closure_invoke (gclosure.c:766)
==10824==    by 0x7DC8F58: signal_emit_unlocked_R (gsignal.c:3252)
==10824== 
==10824== HEAP SUMMARY:
==10824==     in use at exit: 14,460,201 bytes in 32,943 blocks
==10824==   total heap usage: 391,947 allocs, 359,003 frees, 73,917,390 bytes 
allocated
==10824== 
==10824== LEAK SUMMARY:
==10824==    definitely lost: 7,600 bytes in 25 blocks
==10824==    indirectly lost: 17,360 bytes in 544 blocks
==10824==      possibly lost: 8,366,412 bytes in 24,173 blocks
==10824==    still reachable: 6,021,157 bytes in 7,744 blocks
==10824==         suppressed: 47,672 bytes in 457 blocks
==10824== Rerun with --leak-check=full to see details of leaked memory
==10824== 
==10824== For counts of detected and suppressed errors, rerun with: -v
==10824== Use --track-origins=yes to see where uninitialised values come from
==10824== ERROR SUMMARY: 16 errors from 6 contexts (suppressed: 37 from 9)
Killed

-- 
evince crashes with SIGTRAP when filling form in
https://bugs.launchpad.net/bugs/628263
You received this bug notification because you are a member of Ubuntu
Desktop Bugs, which is subscribed to evince in ubuntu.

-- 
desktop-bugs mailing list
desktop-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/desktop-bugs

Reply via email to