[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Qemu-devel] [PATCH v6 01/10] l2cap: fix access freed memory
From: |
zhanghailiang |
Subject: |
[Qemu-devel] [PATCH v6 01/10] l2cap: fix access freed memory |
Date: |
Thu, 14 Aug 2014 15:29:12 +0800 |
Pointer 'ch' will be used in function 'l2cap_channel_open_req_msg' after
it was previously freed in 'l2cap_channel_open'.
Assigned it to NULL after it is freed.
Reviewed-by: Alex Bennée <address@hidden>
Signed-off-by: zhanghailiang <address@hidden>
---
hw/bt/l2cap.c | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/hw/bt/l2cap.c b/hw/bt/l2cap.c
index 2301d6f..591e047 100644
--- a/hw/bt/l2cap.c
+++ b/hw/bt/l2cap.c
@@ -429,7 +429,7 @@ static struct l2cap_chan_s *l2cap_channel_open(struct
l2cap_instance_s *l2cap,
status = L2CAP_CS_NO_INFO;
} else {
g_free(ch);
-
+ ch = NULL;
result = L2CAP_CR_NO_MEM;
status = L2CAP_CS_NO_INFO;
}
--
1.7.12.4
- Re: [Qemu-devel] [PATCH v6 02/10] monitor: fix access freed memory, (continued)
[Qemu-devel] [PATCH v6 08/10] tests/bios-tables-test: check the value returned by fopen(), zhanghailiang, 2014/08/14
[Qemu-devel] [PATCH v6 10/10] block/vvfat: fix setbuf stream parameter may be NULL, zhanghailiang, 2014/08/14
[Qemu-devel] [PATCH v6 01/10] l2cap: fix access freed memory,
zhanghailiang <=
Re: [Qemu-devel] [PATCH v6 00/10] fix three bugs about use-after-free and several api abuse, Michael S. Tsirkin, 2014/08/14
Re: [Qemu-devel] [PATCH v6 00/10] fix three bugs about use-after-free and several api abuse, Michael S. Tsirkin, 2014/08/14