qemu-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Qemu-devel] [Bug 1527322] Re: segfault in thread-pool.c:246:5:


From: Greg Kurz
Subject: [Qemu-devel] [Bug 1527322] Re: segfault in thread-pool.c:246:5:
Date: Sat, 25 Jun 2016 08:22:25 -0000

This issue was fixed with the following upstream commit:

http://git.qemu.org/?p=qemu.git;a=commit;h=4b3a4f2d458ca5a7c6c16ac36a8d9ac22cc253d6

Shipped in QEMU 2.5.1 and 2.6.


** Changed in: qemu
       Status: New => Fix Released

-- 
You received this bug notification because you are a member of qemu-
devel-ml, which is subscribed to QEMU.
https://bugs.launchpad.net/bugs/1527322

Title:
  segfault in thread-pool.c:246:5:

Status in QEMU:
  Fix Released

Bug description:
  Building qemu-2.5.0 with -fsanitize=undefined shows, e.g.:

  address@hidden linux % qemu-system-x86_64 -s -enable-kvm -net 
nic,vlan=0,model=virtio -net user -fsdev 
local,security_model=none,id=root,path=/ -device virtio-9p-pci,id=root,fsdev
  =root,mount_tag=/dev/root -m 512 -smp 2 -kernel 
/usr/src/linux/arch/x86/boot/bzImage -nographic -append "init=/bin/zsh 
root=/dev/root console=ttyS0 kgdboc=ttyS0 rootflags=rw,
  trans=virtio rootfstype=9p ip=dhcp earlyprintk=ttyS0"
  /var/tmp/portage/app-emulation/qemu-2.5.0/work/qemu-2.5.0/exec.c:307:5: 
runtime error: variable length array bound evaluates to non-positive value 0
  
/var/tmp/portage/app-emulation/qemu-2.5.0/work/qemu-2.5.0/hw/i386/kvm/apic.c:37:47:
 runtime error: left shift of 15 by 28 places cannot be represented in type 
'int'
  
/var/tmp/portage/app-emulation/qemu-2.5.0/work/qemu-2.5.0/include/qemu/rcu.h:85:21:
 runtime error: member access within null pointer of type 'struct 
rcu_reader_data'
  
/var/tmp/portage/app-emulation/qemu-2.5.0/work/qemu-2.5.0/include/qemu/rcu.h:101:5:
 runtime error: member access within null pointer of type 'struct 
rcu_reader_data'
  
/var/tmp/portage/app-emulation/qemu-2.5.0/work/qemu-2.5.0/include/qemu/rcu.h:102:8:
 runtime error: member access within null pointer of type 'struct 
rcu_reader_data'
  ...
  ALSA device list:
    No soundcards found.
  
/var/tmp/portage/app-emulation/qemu-2.5.0/work/qemu-2.5.0/thread-pool.c:246:5: 
runtime error: member access within null pointer of type 'struct ThreadPool'
  [1]    9295 segmentation fault  qemu-system-x86_64 -s -enable-kvm -net 
nic,vlan=0,model=virtio -net user  

  As you can see it segfaults when build with upcoming gcc-6, that is more 
aggressive when it comes to undefined behavior.
  The compiler just assumes that "this" can never be NULL and optimizes 
accordingly.

To manage notifications about this bug go to:
https://bugs.launchpad.net/qemu/+bug/1527322/+subscriptions



reply via email to

[Prev in Thread] Current Thread [Next in Thread]