JP Mattia d22fcfeb85 Fix use-after-free of destroyed IPC socket on the shared event handler
wxTCPEventHandler is a process-wide singleton shared by every IPC
connection and it lives until the program exits. Socket events queued on
it can still be pending after the wxSocketBase they refer to has been
destroyed (e.g. a wxSOCKET_LOST generated while a connection is torn
down). Because wxSocketBase::IsOk() only checks m_impl != nullptr, a
freed socket with a dangling m_impl passes that check and
Client_OnRequest() goes on to call socket->Peek(), dereferencing freed
memory.

This use-after-free crashed reliably under the MSVC debug heap (freed
memory poisoned to 0xFEEEFEEE) and was otherwise silent, manifesting as
an intermittent SIGSEGV in the IPC unit tests on Windows when a stale
event left by one test case was dispatched during the next test's setup.

Track the set of sockets that currently have a live connection in the
handler and ignore socket events for any socket not in that set. The
check only compares pointer values and never dereferences a
possibly-freed socket. Sockets are registered when a connection is
established (client MakeConnection and server Server_OnRequest) and
unregistered when it is torn down (HandleDisconnect and
~wxTCPConnection).
2026-07-09 17:53:51 -07:00
2026-07-09 15:08:08 +02:00
2026-07-09 15:08:08 +02:00
2026-07-09 15:08:08 +02:00
2026-07-09 15:08:08 +02:00
2026-07-09 15:08:08 +02:00
2025-12-03 15:20:12 +01:00
2026-05-08 15:48:35 +02:00
2026-07-09 15:08:08 +02:00
2026-07-09 15:08:08 +02:00
2026-07-09 15:08:08 +02:00
2026-07-09 15:08:08 +02:00

About

wxWidgets is a free and open source cross-platform C++ framework for writing advanced GUI applications using native controls.

wxWidgets Logo

wxWidgets allows you to write native-looking GUI applications for all the major desktop platforms and also helps with abstracting the differences in the non-GUI aspects between them. It is free for the use in both open source and commercial applications, comes with the full, easy to read and modify, source and extensive documentation and a collection of more than a hundred examples. You can learn more about wxWidgets at https://www.wxwidgets.org/ and read its documentation online at https://docs.wxwidgets.org/

Platforms

AppVeyor Unix (make) Unix (CMake) MSW (MSVC) MSW (gcc) Mac OSS-Fuzz

This version of wxWidgets supports the following primary platforms:

  • Windows 7, 8, 10 and 11 (32/64 bit Intel and ARM64).
  • Most Unix variants using the GTK+ toolkit (version 2.6 or newer or 3.x).
  • macOS (10.10 or newer) using Cocoa under both amd64 and ARM platforms.

All C++11 compilers are supported including but not limited to:

  • Microsoft Visual C++ 2015 or later (up to 2026).
  • g++ 4.8 or later (up to 15), including MinGW/MinGW-64/TDM under Windows.
  • Clang (up to 19/Xcode 16).

Please use 3.2 branch if you must use wxWidgets with a C++98 compiler or support Windows XP.

Licence

wxWidgets licence is a modified version of LGPL explicitly allowing not distributing the sources of an application using the library even in the case of static linking.

Building

For building the library, please see platform-specific documentation under docs/<port> directory, e.g. here are the instructions for wxGTK, wxMSW and wxOSX.

If you're building the sources checked out from Git, and not from a released version, please see these additional Git-specific notes.

Contributing

Contributions to wxWidgets are always welcome, please don't hesitate to submit your patches or pull requests! If you are not sure how to do this, please check our guidelines explaining it.

Not all contributions have to be code, you can also help by improving documentation or translations, for which we have a separate page with more details.

Thank you in advance for your help in making wxWidgets better!

Further information

If you are looking for community support, you can get it from

Commercial support is also available.

Finally, keep in mind that wxWidgets is an open source project collaboratively developed by its users and your contributions to it are always welcome. Please check our guidelines if you'd like to do it.

Have fun!

The wxWidgets Team.

Languages
C++ 69.4%
Objective-C 12.3%
C 7.8%
Makefile 4.3%
Objective-C++ 2.2%
Other 3.8%