Crash in cfgrelayex, Analyzed 4 dumps, total processed 39, rate equals 10.26%



Top 1: Version = 2.7224.1000.620, Total count = 4


dump count = 1

ChildEBP RetAddr  
03e7e19c 7705e5e0 ntdll!RtlpAllocateHeap+0x1e
03e7e240 7705d34e ntdll!RtlpAllocateHeapInternal+0x1280
03e7e25c 74f9383e ntdll!RtlAllocateHeap+0x3e
03e7e394 74f65aef KERNELBASE!BaseRegEnumValueOld+0x1d2
03e7e410 74ac3ad9 KERNELBASE!RegEnumValueW+0xcf
03e7e528 74ace9d2 gdi32full!CacheFontLinkingData+0x1c8
03e7e548 74acc925 gdi32full!IsFontRegLinked+0x28
03e7eae8 74acc5eb gdi32full!LoadFont+0x275
03e7eb0c 74ac22a2 gdi32full!FindOrCreateFaceCache+0x98
03e7ec10 74aca184 gdi32full!FindOrCreateSizeCacheWithoutRealizationID+0x7f
03e7efb8 74ac857a gdi32full!FindOrCreateSizeCacheUsingRealizationID+0x284
03e7f0c4 74ac7071 gdi32full!ScriptStringAnalyse+0x76a
03e7f254 74ac68a0 gdi32full!LpkCharsetDraw+0x611
03e7f280 764af122 gdi32full!LpkDrawTextEx+0x30
03e7f30c 764aeb1d user32!DT_GetLineBreak+0x122
03e7f3cc 764ae91e user32!DrawTextExWorker+0x1ed
03e7f3e8 6f763dbc user32!DrawTextExW+0x1e
03e7f838 6f7664fb uxtheme!CThemeWnd::GetNcWindowMetrics+0x87c
03e7f8e4 6f76658f uxtheme!_WindowPosChangedWorker+0x77
03e7f8f0 6f762c56 uxtheme!OnOwpPostWindowPosChanged+0x1f
03e7f944 764a6ec3 uxtheme!ThemePostWndProc+0x406
03e7fa2c 764a69aa user32!UserCallWinProcCheckWow+0x463
03e7fa90 764b4047 user32!DispatchClientMessage+0xea
03e7fad0 77093aed user32!__fnINLPWINDOWPOS+0x37
03e7fb20 6f78440f ntdll!KiUserCallbackDispatcher+0x4d
03e7fb4c 6f76334e uxtheme!OnOwpPreDwmCompositionChanged+0x4f
03e7fba8 764a6e96 uxtheme!ThemePreWndProc+0x60e
03e7fc90 764a5f4b user32!UserCallWinProcCheckWow+0x436
03e7fd04 764a5d20 user32!DispatchMessageWorker+0x21b
03e7fd10 5b61f5a1 user32!DispatchMessageW+0x10
03e7fd34 5b61f2f7 CfgRelayEx!WTL::CMessageLoop::Run+0xc1
03e7fd94 5b62196f CfgRelayEx!CConfigCenterStub::Process+0xa7
03e7fda0 5b63ffcb CfgRelayEx!CThread::ThreadProc+0x1f
03e7fddc 749505c9 CfgRelayEx!thread_start<unsigned int (__stdcall*)(void *)>+0x57
03e7fdec 770878bd kernel32!BaseThreadInitThunk+0x19
03e7fe48 7708788d ntdll!__RtlUserThreadStart+0x2f
03e7fe58 00000000 ntdll!_RtlUserThreadStart+0x1b
f510d9e19c8f3b6cad34c78e937fb2ae_000.dmp

dump count = 1

ChildEBP RetAddr  
04d2e280 758f412a gdi32full!GetFontRealizationInfo+0x15
04d2e2b0 758f31f8 gdi32full!GdiRealizationInfo+0x2a
04d2e36c 758f34a9 gdi32full!GetFaceAndSizeMetrics+0x5e
04d2e470 758fadf4 gdi32full!FindOrCreateSizeCacheWithoutRealizationID+0x35
04d2e818 758f91f6 gdi32full!FindOrCreateSizeCacheUsingRealizationID+0x284
04d2ec84 758f82ef gdi32full!ScriptStringAnalyse+0xa16
04d2ee2c 758f7b40 gdi32full!LpkCharsetDraw+0x60f
04d2ee58 7562d37d gdi32full!LpkDrawTextEx+0x30
04d2eeb4 7562d214 user32!DT_DrawStr+0x5f
04d2ef14 7562cd4b user32!DT_GetLineBreak+0xa2
04d2efe4 7562cb4e user32!DrawTextExWorker+0x1f9
04d2f000 7030e6ca user32!DrawTextExW+0x1e
04d2f064 7030dd34 uxtheme!CTextDraw::GetTextExtent+0xa4
04d2f0ac 703043c9 uxtheme!GetThemeTextExtent+0x74
04d2f100 70310f87 uxtheme!_GetNcCaptionTextSize+0x61
04d2f1f0 7031293c uxtheme!CThemeWnd::GetNcWindowMetrics+0x307
04d2f29c 703129ef uxtheme!_WindowPosChangedWorker+0x7c
04d2f2a8 7030f545 uxtheme!OnOwpPostWindowPosChanged+0x1f
04d2f2f8 75637ff3 uxtheme!ThemePostWndProc+0x355
04d2f3e4 75637bca user32!UserCallWinProcCheckWow+0x363
04d2f448 7563fc37 user32!DispatchClientMessage+0xea
04d2f488 776a54ed user32!__fnINLPWINDOWPOS+0x37
04d2f4d8 76e6124c ntdll!KiUserCallbackDispatcher+0x4d
04d2f4dc 7032d44f win32u!NtUserSetWindowPos+0xc
04d2f508 703100ef uxtheme!OnOwpPreDwmCompositionChanged+0x4f
04d2f564 75637f9f uxtheme!ThemePreWndProc+0x43f
04d2f650 75636901 user32!UserCallWinProcCheckWow+0x30f
04d2f6cc 75636420 user32!DispatchMessageWorker+0x4d1
04d2f6d8 7900f5a1 user32!DispatchMessageW+0x10
04d2f6fc 7900f2f7 CfgRelayEx!WTL::CMessageLoop::Run+0xc1
04d2f75c 7901196f CfgRelayEx!CConfigCenterStub::Process+0xa7
04d2f768 7902ffcb CfgRelayEx!CThread::ThreadProc+0x1f
04d2f7a4 7701fcc9 CfgRelayEx!thread_start<unsigned int (__stdcall*)(void *)>+0x57
04d2f7b4 776980ce kernel32!BaseThreadInitThunk+0x19
04d2f810 7769809e ntdll!__RtlUserThreadStart+0x2f
04d2f820 00000000 ntdll!_RtlUserThreadStart+0x1b
2cf60f993478d0e4d991c8d8b8bc660d_001.dmp

dump count = 1

ChildEBP RetAddr  
0040f6e8 774fe0c3 ntdll!RtlpLowFragHeapFree+0x2b0
0040f700 775048e6 ntdll!RtlFreeHeap+0x105
0040f714 77503e55 ntdll!RtlpFreeDebugInfo+0x3c
0040f754 743ec99f ntdll!RtlDeleteCriticalSection+0xd6
0040f76c 743e513d CfgRelayEx!__acrt_lowio_destroy_handle_array+0x22
0040f778 743e81c5 CfgRelayEx!__acrt_uninitialize_lowio+0x15
0040f790 743e12e7 CfgRelayEx!__acrt_execute_uninitializers+0x2f
0040f79c 743c8fac CfgRelayEx!__acrt_uninitialize+0xf
0040f7a8 743c92fe CfgRelayEx!__scrt_uninitialize_crt+0x1a
0040f7e4 743c918f CfgRelayEx!dllmain_crt_process_detach+0x60
0040f7f0 743c93df CfgRelayEx!dllmain_crt_dispatch+0x4e
0040f830 743c947d CfgRelayEx!dllmain_dispatch+0xaf
0040f844 77509264 CfgRelayEx!_DllMainCRTStartup+0x1c
0040f864 77528fa8 ntdll!LdrpCallInitRoutine+0x14
0040f908 77528e4a ntdll!LdrShutdownProcess+0x1aa
0040f91c 76ff7a3c ntdll!RtlExitUserProcess+0x74
0040f930 0007275a kernel32!ExitProcessStub+0x12
0040f93c 000726ef srvhost!exit_or_terminate_process+0x40
0040f974 00072895 srvhost!common_exit+0xee
0040f988 00067e90 srvhost!exit+0x11
0040f9c8 76ff344d srvhost!__scrt_common_main_seh+0x179
0040f9d4 77509802 kernel32!BaseThreadInitThunk+0xe
0040fa14 775097d5 ntdll!__RtlUserThreadStart+0x70
0040fa2c 00000000 ntdll!_RtlUserThreadStart+0x1b
bb341913312a2c6864c1d407ce45402b_000.dmp

dump count = 1

ChildEBP RetAddr  
0032fb9c 77532d1a ntdll!RtlpCoalesceFreeBlocks+0x702
0032fc94 77532c05 ntdll!RtlpFreeHeap+0x1f4
0032fcb4 76c014bd ntdll!RtlFreeHeap+0x142
0032fcc8 0fb62d01 kernel32!HeapFree+0x14
0032fcdc 0fb6c9ac CfgRelayEx!_free_base+0x1c
0032fcf4 0fb6513d CfgRelayEx!__acrt_lowio_destroy_handle_array+0x2f
0032fd00 0fb681c5 CfgRelayEx!__acrt_uninitialize_lowio+0x15
0032fd18 0fb612e7 CfgRelayEx!__acrt_execute_uninitializers+0x2f
0032fd24 0fb48fac CfgRelayEx!__acrt_uninitialize+0xf
0032fd30 0fb492fe CfgRelayEx!__scrt_uninitialize_crt+0x1a
0032fd6c 0fb4918f CfgRelayEx!dllmain_crt_process_detach+0x60
0032fd78 0fb493df CfgRelayEx!dllmain_crt_dispatch+0x4e
0032fdb8 0fb4947d CfgRelayEx!dllmain_dispatch+0xaf
0032fdcc 77539264 CfgRelayEx!_DllMainCRTStartup+0x1c
0032fdec 77558fa8 ntdll!LdrpCallInitRoutine+0x14
0032fe90 77558e4a ntdll!LdrShutdownProcess+0x1aa
0032fea4 76c07a3c ntdll!RtlExitUserProcess+0x74
0032feb8 00ae275a kernel32!ExitProcessStub+0x12
0032fec4 00ae26ef srvhost!exit_or_terminate_process+0x40
0032fefc 00ae2895 srvhost!common_exit+0xee
0032ff10 00ad7e90 srvhost!exit+0x11
0032ff50 76c0344d srvhost!__scrt_common_main_seh+0x179
0032ff5c 77539802 kernel32!BaseThreadInitThunk+0xe
0032ff9c 775397d5 ntdll!__RtlUserThreadStart+0x70
0032ffb4 00000000 ntdll!_RtlUserThreadStart+0x1b
6762b48911d08676e78d86cfcd27b752_001.dmp