Session Error

General questions relating to Joomla! 3.x.

Moderator: General Support Moderators

Forum rules
Forum Rules
Absolute Beginner's Guide to Joomla! <-- please read before posting.
Forum Post Assistant - If you are serious about wanting help, you should use this tool to help you post.
Post Reply
wolfy60
Joomla! Apprentice
Joomla! Apprentice
Posts: 10
Joined: Tue Sep 03, 2019 8:54 am

Session Error

Post by wolfy60 » Tue Sep 03, 2019 12:39 pm

Hello

I'm on PHP7.3 with Joomla 3.9.11 ,

An error appear sometimes (http://www.database-memoire.eu/prive/en-us/) and a blank page is displayed , the message is :

Warning: session_start(): Failed to read session data: user (path: /var/www/database-memoire.eu/tmp/.php-session) in /htdocs/prive/libraries/joomla/session/handler/native.php on line 260
Error: Failed to start application: Failed to start the session

She dissappear after a few minutes without action. Did someone have the same issue ???

User avatar
pe7er
Joomla! Master
Joomla! Master
Posts: 22322
Joined: Thu Aug 18, 2005 8:55 pm
Location: Nijmegen, The Netherlands
Contact:

Re: Session Error

Post by pe7er » Tue Sep 03, 2019 1:16 pm

wolfy60 wrote:
Tue Sep 03, 2019 12:39 pm
Did someone have the same issue ???
Yes, see similar topics:
viewtopic.php?t=966186
viewtopic.php?t=968807
viewtopic.php?t=965328

Please use the Forum Post Assistant https://forumpostassistant.github.io/docs/ to give somewhat more information about your setup.

PS: good to see that you are running the latest Joomla 3.9.11 and PHP 7.3.
A lot of errors are caused by outdated software, and that is not the case here :)
Kind Regards,
Peter Martin, Global Moderator
https://db8.nl - Joomla specialist, Nijmegen, Nederland
Co-developer of d2 Content https://data2site.com/joomla-extensions/d2-content

wolfy60
Joomla! Apprentice
Joomla! Apprentice
Posts: 10
Joined: Tue Sep 03, 2019 8:54 am

Re: Session Error

Post by wolfy60 » Tue Sep 03, 2019 4:36 pm

Thanks for answer but the ForumPostAssistant embed a trojan !!!

Backdoor:PHP/Yorcirekrikseng.E

After a few discussion with our technical support for the webserver , he downgraded the server in PHP 7.2 ...
I read all the three posts but i didn't find a similar case.
We didn't implement nothing on our website , and the problem appear during the week-end and disappear alone

gws
Joomla! Virtuoso
Joomla! Virtuoso
Posts: 3940
Joined: Tue Aug 23, 2005 1:56 pm
Location: South coast, UK
Contact:

Re: Session Error

Post by gws » Tue Sep 03, 2019 4:48 pm

There is no Trojan in the official FPA.

wolfy60
Joomla! Apprentice
Joomla! Apprentice
Posts: 10
Joined: Tue Sep 03, 2019 8:54 am

Re: Session Error

Post by wolfy60 » Tue Sep 03, 2019 7:03 pm

Sorry my antivirus detect one ... See the capture under

https://imgur.com/zrfeIIG

gws
Joomla! Virtuoso
Joomla! Virtuoso
Posts: 3940
Joined: Tue Aug 23, 2005 1:56 pm
Location: South coast, UK
Contact:

Re: Session Error

Post by gws » Tue Sep 03, 2019 8:53 pm

Are you using a windows server?

wolfy60
Joomla! Apprentice
Joomla! Apprentice
Posts: 10
Joined: Tue Sep 03, 2019 8:54 am

Re: Session Error

Post by wolfy60 » Wed Sep 04, 2019 9:07 am

No i'm on an apache Linux

Linux webdb47.lws-hosting.com 4.9.0-9-amd64 #1 SMP Debian 4.9.168-1+deb9u2 (2019-05-13) x86_64

User avatar
leolam
Joomla! Master
Joomla! Master
Posts: 19739
Joined: Mon Aug 29, 2005 10:17 am
Location: Netherlands/ UK/ S'pore/Jakarta/ North America
Contact:

Re: Session Error

Post by leolam » Wed Sep 04, 2019 3:41 pm

wolfy60 wrote:
Tue Sep 03, 2019 7:03 pm
Sorry my antivirus detect one
Than anti-virus is throwing a false-positive. We get daily hundreds of FPA results on these forums and we never get a 'virus-alert' so you are a first. I just downloaded the file(s) and my Panda-Pro does not throws me anything nor 2 other virusscanners get awake. You can run the zip online as well and you will see a clean file

Your virus scanner is playing ball with you

Leo 8)
Joomla's #1 Professional Support Provider:
-> Joomla Professional Support: https://gws-desk.com -
-> Joomla Specialized Hosting Solutions: https://gws-host.com -
-> Joomla Webmaster Services: gws-webmaster.services

wolfy60
Joomla! Apprentice
Joomla! Apprentice
Posts: 10
Joined: Tue Sep 03, 2019 8:54 am

Re: Session Error

Post by wolfy60 » Sat Sep 07, 2019 11:49 am

Hello

I put the FORUM Post Assistant in image under ...

https://ibb.co/wCbVcrx

Since i downgraded in PHP 7.2 no more problem , the bug seems relative to the PHP 7.3 version ...

Any Ideas ?

gws
Joomla! Virtuoso
Joomla! Virtuoso
Posts: 3940
Joined: Tue Aug 23, 2005 1:56 pm
Location: South coast, UK
Contact:

Re: Session Error

Post by gws » Sat Sep 07, 2019 12:38 pm

wolfy60 wrote:
Sat Sep 07, 2019 11:49 am
Hello

I put the FORUM Post Assistant in image under ...

https://ibb.co/wCbVcrx

Since i downgraded in PHP 7.2 no more problem , the bug seems relative to the PHP 7.3 version ...

Any Ideas ?
Yes post the FPA properly so we can see the relevant info if you want help. Read the FPA docs.

wolfy60
Joomla! Apprentice
Joomla! Apprentice
Posts: 10
Joined: Tue Sep 03, 2019 8:54 am

Re: Session Error

Post by wolfy60 » Sat Sep 07, 2019 12:49 pm

Each time i post the FPA the website remove the html tag

wolfy60
Joomla! Apprentice
Joomla! Apprentice
Posts: 10
Joined: Tue Sep 03, 2019 8:54 am

Re: Session Error

Post by wolfy60 » Sat Sep 07, 2019 12:52 pm

APPLICATION INSTANCE :: DISCOVERY
CMS FOUND
Joomla!
3.9.11
Stable
PLATFORM
Joomla Platform
13.1.0
Stable
CONFIG EXISTS
Yes
CONFIG VERSION
3.9
Matches CMS
CONFIG VALID
Yes
CONFIG MODE
444
Read-Only
CONFIG OWNER
database
CONFIG GROUP
database
APPLICATION INSTANCE :: CONFIGURATION
OFFLINE
false
SEF URL'S
Enabled:true
Suffix:false
ReWrite:true
COMPRESSION
GZip:false
Cache:false
DEBUGGING
ErrorRep:default
Site Debug:falseLang Debug:false
DATABASE
Type:mysqli
Version:5.5.5-10.1.40-MariaDB-1~jessie
CharSet:latin1
DATABASE CREDENTIALS
Appear Complete
SECURITY
SSL:0
Def' Access:1
FEATURES
FTP:false
Unicode Slug:false
DATABASE INSTANCE :: DISCOVERY
MYSQLI VERSION:Server: 5.5.5-10.1.40-MariaDB-1~jessie Client: mysqlnd 5.0.12-dev - 20150407 - $Id: 3591daad22de08524295e1bd073aceeff11e6579 $
MYSQLI HOSTNAME:[ -- protected -- ]
CONNECTION TYPE:(Remote) 185.98.131.93 via TCP/IP
PHP SUPPORT:mysqli is supported by PHP 7.2.22
CONNECT TO MYSQLI: Yes, Connected
MYSQLI CHARACTER SET: latin1
DEFAULT CHARACTER SET: latin1
DATABASE COLLATION:
latin1_swedish_ci
DATABASE SIZE: 160.89 MiB
DATABASE INSTANCE :: PERFORMANCE
UPTIME:23255 seconds
THREADS:45
QUESTIONS:63362231
SLOW QUERIES:272
OPENS:1882778
FLUSH TABLES:1
OPEN TABLES:7917
QUERIES PER SECOND AVG:2724.671
# OF TABLE: 249 tables
PHP ENVIRONMENT :: DISCOVERY
PHP VERSION:7.2.22
PHP API:fpm-fcgi
DISPLAY ERRORS:1
ERROR REPORT LEVEL:22519
MYSQLI SUPPORT:Yes
MAGIC QUOTES:
SAFE MODE:
MEMORY LIMIT:128M
UPLOADS ENABLED:1
MAX. UPLOAD SIZE:64M
MAX. POST SIZE:65M
MAX. INPUT TIME:120 seconds
MAX. EXECUTION TIME:60 seconds
REGISTER GLOBALS:
ALLOW URL FOPEN:1

OPEN BASE PATH:/htdocs:/var/www/database-memoire.eu/htdocs:/var/www/database-memoire.eu/tmp:/var/www/database-memoire.eu/exec_dir:/var/www/database-memoire.eu/php-session:/var/lib/lws/:/usr/base/var/lib/lws:/var/lib/apps/:/usr/base/var/lib/apps:/htdocs:/tmp:/exec_dir:/php-session:/usr/share/php:/etc/pki/tls/certs:/etc/ssl/certs:/var/www/database-memoire.eu/log/access.log:/var/www/database-memoire.eu/log/access.log:/var/www/database-memoire.eu/log/error.log:/var/www/database-memoire.eu/log/error.log
SESSION PATH:/var/www/database-memoire.eu/tmp/.php-session
SESSION PATH WRITABLE:Yes
INI FILE PATH:/opt/php7.2/etc/php.ini
LAST KNOWN PHP ERROR:
[Thu Sep 05 18:26:39.086553 2019] [:error] [pid 11919:tid 140035271542528] [client 78.126.176.31:59472] [client 78.126.176.31] ModSecurity: Warning. Matched phrase "require_once" at ARGS:probMSG2. [file "/usr/share/modsecurity-crs/rules/REQUEST-933-APPLICATION-ATTACK-PHP.conf"] [line "283"] [id "933150"] [rev "1"] [msg "PHP Injection Attack: High-Risk PHP Function Name Found"] [data "Matched Data: require_once found within ARGS:probMSG2: [thu sep 05 17:57:50.276936 2019] [proxy_fcgi:error] [pid 3599:tid 140035110164224] [client 207.46.13.77:7020] ah01071: got error 'php message: php warning: require_once(../../lien/29th_infantry_division.php): failed to open stream: no such file or directory in /htdocs/old/stj/a/arthur_earl.php on line 222\\x5cnphp message: php fatal error: require_once(): failed opening required '../../lien/29th_infantry_division.php' (include_path='.:/usr/share/ph..."] [severity "CRITICAL"] [ver "OWASP_CRS/3.0.0"] [maturity "1"] [accuracy "9"] [tag "application-multi"] [tag "language-php"] [tag "platform-multi"] [tag "attack-injection-php"] [tag "OWASP_CRS/WEB_ATTACK/PHP_INJECTION"] [tag "OWASP_TOP_10/A1"] [hostname "www.database-memoire.eu"] [uri "/prive/fpa-en.php"] [unique_id "XXE3P38AAQEAAC6PwPMAAAJB"], referer: http://www.database-memoire.eu/prive/fpa-en.php
SYSTEM ENVIRONMENT :: DISCOVERY
PLATFORM:Linux
KERNEL VERSION:4.9.0-9-amd64
TECHNOLOGY:x86_64
HOSTNAME:[ -- protected -- ]
TOTAL DISK SPACE:Unknown
FREE DISK SPACE:547.83 GiB
SERVER:[ -- protected -- ]
SERVER IP:[ -- protected -- ]
SERVER SIGNATURE:Apache/2.4.25 (Debian)
SERVER ENCODING:gzip, deflate
EXECUTING USER:database
SERVER USER:

DOC ROOT:/var/www/database-memoire.eu/htdocs
SERVER TEMP:/tmp
SERVER TEMP WRITABLE:Yes
SWITCH USER CONFIGURATION
SUEXEC
NOPHP SUEXEC
NOCUSTOM SU
YESOWNERSHIP PROBS
NO


PHP EXTENSIONS :: DISCOVERY
Core
7.2.22date
7.2.22libxml
7.2.22openssl
7.2.22pcre
7.2.22sqlite3
7.2.22zlib
7.2.22bcmath
7.2.22bz2
7.2.22calendar
7.2.22ctype
7.2.22curl
7.2.22dba
7.2.22dom
20031129hash
1.0fileinfo
1.0.5filter
7.2.22ftp
7.2.22gd
7.2.22gettext
7.2.22SPL
7.2.22iconv
7.2.22session
7.2.22standard
7.2.22intl
1.1.0json
1.6.0mbstring
7.2.22mcrypt
1.0.2mysqlnd
mysqlnd 5.0.12-dev - 20150407 - $Id: 3591daad22de08524295e1bd073aceeff11e6579 $mysqli
7.2.22pcntl
7.2.22imap
7.2.22PDO
7.2.22pdo_mysql
7.2.22pdo_pgsql
7.2.22pdo_sqlite
7.2.22pgsql
7.2.22Phar
2.0.2posix
7.2.22ps
1.4.1pspell
7.2.22Reflection
7.2.22imagick
3.4.4shmop
7.2.22SimpleXML
7.2.22snmp
0.1soap
7.2.22sockets
7.2.22exif
7.2.22sysvsem
7.2.22sysvshm
7.2.22tidy
7.2.22tokenizer
7.2.22wddx
7.2.22xml
7.2.22xmlreader
7.2.22xmlrpc
7.2.22xmlwriter
7.2.22xsl
7.2.22zip
1.15.4cgi-fcgi
recode
7.2.22ionCube Loader
Zend OPcache
7.2.22Zend Engine
3.2.0

DISABLED FUNCTIONS:

pcntl_alarmpcntl_forkpcntl_waitpidpcntl_waitpcntl_wifexitedpcntl_wifstoppedpcntl_wifsignaledpcntl_wexitstatuspcntl_wtermsigpcntl_wstopsigpcntl_signalpcntl_signal_dispatchpcntl_get_last_errorpcntl_strerrorpcntl_sigprocmaskpcntl_sigwaitinfopcntl_sigtimedwaitpcntl_execpcntl_getprioritypcntl_setprioritypassthrusystempcntl_execproc_openproc_niceproc_terminateproc_get_statusproc_closeleakapache_child_terminateposix_killposix_mkfifoposix_setpgidposix_setsidposix_setuidhighlight_filepopenshow_sourceini_alterdiskfreespacedisk_total_spacesourceproc_execsymlinkdlftp_execapache_setenvdefine_syslog_variablesopenlogsyslogvirtualbzopenpspell_config_personal

CORE FOLDERS PERMISSIONS CHECKS
MODEWRITABLEFOLDERGROUPOWNER
755Yesimages/databasedatabase
755Yescomponents/databasedatabase
755Yesmodules/databasedatabase
755Yesplugins/databasedatabase
755Yeslanguage/databasedatabase
755Yestemplates/databasedatabase
755Yescache/databasedatabase
755Yeslogs/databasedatabase
755Yestmp/databasedatabase
755Yesadministrator/components/databasedatabase
755Yesadministrator/modules/databasedatabase
755Yesadministrator/language/databasedatabase
755Yesadministrator/templates/databasedatabase
----administrator/logs/Does Not Exist-

User avatar
Per Yngve Berg
Joomla! Master
Joomla! Master
Posts: 26124
Joined: Mon Oct 27, 2008 9:27 pm
Location: Akershus, Norway

Re: Session Error

Post by Per Yngve Berg » Sat Sep 07, 2019 2:18 pm

Post the FPA with the BB code. There is no html in it.

wolfy60
Joomla! Apprentice
Joomla! Apprentice
Posts: 10
Joined: Tue Sep 03, 2019 8:54 am

Re: Session Error

Post by wolfy60 » Sat Sep 07, 2019 3:19 pm

Forum Post Assistant (v1.4.9 (lambrusca) : 7th September 2019 wrote:
Last PHP Error(s) Reported :: wrote:[Sat Sep 07 17:16:54.025580 2019] [:error] [pid 22766:tid 140635734529792] [client 78.126.176.31:52584] [client 78.126.176.31] ModSecurity: Warning. Pattern match
Basic Environment :: wrote:Joomla! Instance :: Joomla! 3.9.11-Stable (Amani) 13-August-2019
Joomla! Platform :: Joomla Platform 13.1.0-Stable (Curiosity) 24-Apr-2013
Joomla! Configured :: Yes | Read-Only (444) | Owner: --protected-- . (uid: 1/gid: 1) | Group: --protected-- (gid: 1) | Valid For: 3.9
Configuration Options :: Offline: false | SEF: true | SEF Suffix: false | SEF ReWrite: true | .htaccess/web.config: Yes | GZip: false | Cache: false | CacheTime: 15 | CacheHandler: file | CachePlatformPrefix: false | FTP Layer: false | Proxy: false | LiveSite: | Session lifetime: 100 | Session handler: none | Shared sessions: false | SSL: 0 | Error Reporting: default | Site Debug: false | Language Debug: false | Default Access: 1 | Unicode Slugs: false | dbConnection Type: mysqli | PHP Supports J! 3.9.11: Yes | Database Supports J! 3.9.11: Yes | Database Credentials Present: Yes |

Host Configuration :: OS: Linux | OS Version: 4.9.0-9-amd64 | Technology: x86_64 | Web Server: Apache/2.4.25 (Debian) | Encoding: gzip, deflate | Doc Root: --protected-- | System TMP Writable: Yes | Free Disk Space : 541.99 GiB |

PHP Configuration :: Version: 7.2.22 | PHP API: fpm-fcgi | Session Path Writable: Yes | Display Errors: 1 | Error Reporting: 22519 | Log Errors To: /var/www/database-memoire.eu/log/error.log | Last Known Error: 07th September 2019 17:18:03. | Register Globals: | Magic Quotes: | Safe Mode: | Allow url fopen: 1 | Open Base: /htdocs:/var/www/database-memoire.eu/htdocs:/var/www/database-memoire.eu/tmp:/var/www/database-memoire.eu/exec_dir:/var/www/database-memoire.eu/php-session:/var/lib/lws/:/usr/base/var/lib/lws:/var/lib/apps/:/usr/base/var/lib/apps:/htdocs:/tmp:/exec_dir:/php-session:/usr/share/php:/etc/pki/tls/certs:/etc/ssl/certs:/var/www/database-memoire.eu/log/access.log:/var/www/database-memoire.eu/log/access.log:/var/www/database-memoire.eu/log/error.log:/var/www/database-memoire.eu/log/error.log | Uploads: 1 | Max. Upload Size: 64M | Max. POST Size: 65M | Max. Input Time: 120 | Max. Execution Time: 60 | Memory Limit: 128M

Database Configuration :: Version: 5.5.5-10.1.40-MariaDB-1~jessie (Client:mysqlnd 5.0.12-dev - 20150407 - $Id: 3591daad22de08524295e1bd073aceeff11e6579 $) | Host: --protected-- (--protected--) | default Collation: latin1_swedish_ci (default Character Set: latin1) | Database Size: 160.91 MiB | #of Tables:  249
Detailed Environment :: wrote:PHP Extensions :: Core (7.2.22) | date (7.2.22) | libxml (7.2.22) | openssl (7.2.22) | pcre (7.2.22) | sqlite3 (7.2.22) | zlib (7.2.22) | bcmath (7.2.22) | bz2 (7.2.22) | calendar (7.2.22) | ctype (7.2.22) | curl (7.2.22) | dba (7.2.22) | dom (20031129) | hash (1.0) | fileinfo (1.0.5) | filter (7.2.22) | ftp (7.2.22) | gd (7.2.22) | gettext (7.2.22) | SPL (7.2.22) | iconv (7.2.22) | session (7.2.22) | standard (7.2.22) | intl (1.1.0) | json (1.6.0) | mbstring (7.2.22) | mcrypt (1.0.2) | mysqlnd (mysqlnd 5.0.12-dev - 20150407 - $Id: 3591daad22de08524295e1bd073aceeff11e6579 $) | mysqli (7.2.22) | pcntl (7.2.22) | imap (7.2.22) | PDO (7.2.22) | pdo_mysql (7.2.22) | pdo_pgsql (7.2.22) | pdo_sqlite (7.2.22) | pgsql (7.2.22) | Phar (2.0.2) | posix (7.2.22) | ps (1.4.1) | pspell (7.2.22) | Reflection (7.2.22) | imagick (3.4.4) | shmop (7.2.22) | SimpleXML (7.2.22) | snmp (0.1) | soap (7.2.22) | sockets (7.2.22) | exif (7.2.22) | sysvsem (7.2.22) | sysvshm (7.2.22) | tidy (7.2.22) | tokenizer (7.2.22) | wddx (7.2.22) | xml (7.2.22) | xmlreader (7.2.22) | xmlrpc (7.2.22) | xmlwriter (7.2.22) | xsl (7.2.22) | zip (1.15.4) | cgi-fcgi () | recode (7.2.22) | ionCube Loader () | Zend OPcache (7.2.22) | Zend Engine (3.2.0) |
Potential Missing Extensions ::
Disabled Functions :: pcntl_alarm | pcntl_fork | pcntl_waitpid | pcntl_wait | pcntl_wifexited | pcntl_wifstopped | pcntl_wifsignaled | pcntl_wexitstatus | pcntl_wtermsig | pcntl_wstopsig | pcntl_signal | pcntl_signal_dispatch | pcntl_get_last_error | pcntl_strerror | pcntl_sigprocmask | pcntl_sigwaitinfo | pcntl_sigtimedwait | pcntl_exec | pcntl_getpriority | pcntl_setpriority | passthru | system | pcntl_exec | proc_open | proc_nice | proc_terminate | proc_get_status | proc_close | leak | apache_child_terminate | posix_kill | posix_mkfifo | posix_setpgid | posix_setsid | posix_setuid | highlight_file | popen | show_source | ini_alter | diskfreespace | disk_total_space | source | proc_exec | symlink | dl | ftp_exec | apache_setenv | define_syslog_variables | openlog | syslog | virtual | bzopen | pspell_config_personal |

Switch User Environment (Experimental) :: PHP CGI: No | Server SU: No | PHP SU: No | Custom SU (LiteSpeed/Cloud/Grid): Yes
Potential Ownership Issues: No
Folder Permissions :: wrote:Core Folders :: images/ (755) | components/ (755) | modules/ (755) | plugins/ (755) | language/ (755) | templates/ (755) | cache/ (755) | logs/ (755) | tmp/ (755) | administrator/components/ (755) | administrator/modules/ (755) | administrator/language/ (755) | administrator/templates/ (755) | administrator/logs/ (---) |

Elevated Permissions (First 10) ::
Database Information :: wrote:Database statistics :: Uptime: 190084 | Threads: 30 | Questions: 458984298 | Slow queries: 808 | Opens: 14463518 | Flush tables: 1 | Open tables: 7916 | Queries per second avg: 2414.639 |

User avatar
Per Yngve Berg
Joomla! Master
Joomla! Master
Posts: 26124
Joined: Mon Oct 27, 2008 9:27 pm
Location: Akershus, Norway

Re: Session Error

Post by Per Yngve Berg » Sat Sep 07, 2019 3:42 pm

SESSION PATH:/var/www/database-memoire.eu/tmp/.php-session
SESSION PATH WRITABLE:Yes
Probably set to another folder with php 7.3 that is not writable. Open Base is also set that can block access.

wolfy60
Joomla! Apprentice
Joomla! Apprentice
Posts: 10
Joined: Tue Sep 03, 2019 8:54 am

Re: Session Error

Post by wolfy60 » Sat Sep 07, 2019 6:36 pm

I'll try monday to put the 7.3 version and verify that there's no modification for this directory ...

wolfy60
Joomla! Apprentice
Joomla! Apprentice
Posts: 10
Joined: Tue Sep 03, 2019 8:54 am

Re: Session Error

Post by wolfy60 » Sat Sep 14, 2019 11:35 am

After one week of test , no more problem the only thing i change is to switch from database to a directory for the session ...

Can you switch this subject to resolved ?


Post Reply

Return to “General Questions/New to Joomla! 3.x”