[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Qemu-devel] [PATCH v5 00/10] fix three bugs about use-after-free and se
From: |
zhanghailiang |
Subject: |
[Qemu-devel] [PATCH v5 00/10] fix three bugs about use-after-free and several api abuse |
Date: |
Mon, 11 Aug 2014 16:52:59 +0800 |
This patch set fix three bugs about accessing freed memory and several api
abuse.
In qemu, there are serveral places that do not check
the return value of fstat()/fopen()/malloc(),etc.
Though it is a small probability for the these functions to fail,
but it is better to fix them, Or there may be a serious segmentfault.
v4 -> v5:
util/path:
* Use the GLib memory APIs g_malloc/g_strdup/g_realloc
which would abort on failure (Thanks for the suggestion of Alex Bennée)
slirp:
* Again use of g_malloc to replace malloc(based on the review of Alex Bennée)
bios-tables-test:
* Correct the wrong use of g_assert
v3 -> v4:
slirp:
* Check return value of '*ex_ptr', not 'ex_ptr',also add error message
(basedon the review of GongLei)
linux-user:
* It should call unlock_user_struct() before return
(based on the review of Richard Henderson)
tests/bios-tables-test:
* Remove unnecessary check then return value of fopen() in qtest_init()
v2 -> v3:
ivshmem:
* Change the error message which advised by Levente Kurusa
others:
* Add six new patches which check the return value of malloc() and fopen(),
which may be failed.
v1 -> v2:
ivshmem:
* Modified the log message according to reviewing suggestion of Michael
Li Liu (3):
tcg: check return value of fopen()
block/vvfat: fix setbuf stream parameter may be NULL
qtest: check the value returned by fopen()
zhanghailiang (7):
l2cap: fix access freed memory
monitor: fix access freed memory
virtio-blk: fix reference a pointer which might be freed
ivshmem: check the value returned by fstat()
util/path: check return value of malloc()
slirp: check return value of malloc()
linux-user: check return value of malloc()
block/vvfat.c | 5 ++++-
hw/block/virtio-blk.c | 5 +++--
hw/bt/l2cap.c | 2 +-
hw/misc/ivshmem.c | 6 +++++-
linux-user/syscall.c | 4 ++++
monitor.c | 4 +++-
slirp/misc.c | 4 ++--
tcg/tcg.c | 4 ++++
tests/bios-tables-test.c | 5 +++++
util/path.c | 6 +++---
10 files changed, 34 insertions(+), 11 deletions(-)
--
1.7.12.4
- [Qemu-devel] [PATCH v5 00/10] fix three bugs about use-after-free and several api abuse,
zhanghailiang <=
- [Qemu-devel] [PATCH v5 04/10] ivshmem: check the value returned by fstat(), zhanghailiang, 2014/08/11
- [Qemu-devel] [PATCH v5 03/10] virtio-blk: fix reference a pointer which might be freed, zhanghailiang, 2014/08/11
- [Qemu-devel] [PATCH v5 06/10] slirp/misc: Use g_malloc() instead of malloc(), zhanghailiang, 2014/08/11
- [Qemu-devel] [PATCH v5 05/10] util/path: Use the GLib memory allocation routines, zhanghailiang, 2014/08/11
- [Qemu-devel] [PATCH v5 08/10] tests/bios-tables-test: check the value returned by fopen(), zhanghailiang, 2014/08/11
- [Qemu-devel] [PATCH v5 02/10] monitor: fix access freed memory, zhanghailiang, 2014/08/11
- [Qemu-devel] [PATCH v5 01/10] l2cap: fix access freed memory, zhanghailiang, 2014/08/11