qemu-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Bug 1892761] Re: Heap-use-after-free through double-fetch in ehci


From: Thomas Huth
Subject: [Bug 1892761] Re: Heap-use-after-free through double-fetch in ehci
Date: Fri, 16 Jul 2021 17:22:50 -0000

Ok, let's close this one since it was not reproducible. If you find a
reproducer, please open a new ticket in the gitlab tracker instead.

** Changed in: qemu
       Status: Incomplete => Won't Fix

-- 
You received this bug notification because you are a member of qemu-
devel-ml, which is subscribed to QEMU.
https://bugs.launchpad.net/bugs/1892761

Title:
  Heap-use-after-free through double-fetch in ehci

Status in QEMU:
  Won't Fix

Bug description:
  Hello,
  I don't have a qtest reproducer for this crash because it involves a DMA 
double-fetch, and I don't think we can reproduce those with qtest.

  Instead, I attached the pseudo-qtest trace produced by the fuzzer, along with 
some trace events.
  The lines annotated with [DMA] are write commands that were triggered by a 
callback from a DMA read by the device. The lines annotated with [DOUBLE-FETCH] 
are DMA accesses that hit the same address more than once (possible 
double-fetches).

  I am still thinking of nicer ways of presenting this trace and providing a 
reproducer.
  -Alex

To manage notifications about this bug go to:
https://bugs.launchpad.net/qemu/+bug/1892761/+subscriptions




reply via email to

[Prev in Thread] Current Thread [Next in Thread]