diff --git a/src/core/object.c b/src/core/object.c
index 177ac4c3ada9a76009805187d0a0cd4eda322b9e..c39faf4aed2c89f684a3e2c0c947b0eba7fe2d18 100644 (file)
--- a/src/core/object.c
+++ b/src/core/object.c
{
sdb_object_t *obj;
- if (type.size <= sizeof(sdb_object_t))
+ if (type.size < sizeof(sdb_object_t))
return NULL;
obj = malloc(type.size);
if (obj->ref_cnt > 0)
return;
+ /* we'd access free'd memory in case ref_cnt < 0 */
+ assert(! obj->ref_cnt);
+
if (obj->type.destroy)
obj->type.destroy(obj);