About
Core Explorer
Core Explorer is a core dump analyzer.
A core dump analyzer is like a debugger that can only open core dumps. It has no state, no commands. You can make no mistakes. Try it now
It presents files, types, objects, and the relationships between them.
Features:
- ELF parser for executables, shared libraries and core dumps.
- DWARF parser for debug information. Presents files, namespaces, types and variables in a manner similar to doxygen.
- supports the debuginfod protocol to download debug information
- Coredump parser:
- can identify all C++ objects in memory that possess virtual methods. This works even for stripped binaries.
- can identify all allocations allocated or freed by glibc malloc. This requires debug information for the C library and ld.so
- can identify memory leaks and references into freed allocations
Work in progress:
- stack unwinder and identify all local variables
- using debug information, recursively follow all pointers in identified objects on the stack, heap, global variables and thread local storage
- search and queries
Limitations:
- Platform dependent features have only been implemented for x86-64 and aarch64.
- Only tested with user space applications and only on Linux.
- If you run this in your web browser, you are limited to 2GB total memory.
- It does not have progress bars.
If you don’t have a linux core dump available, I created one:
Try it with example core dump
Standalone Application
There is also a standalone node.js application cdx.js.