diff options
author | Avi Kivity <avi@redhat.com> | 2012-08-06 15:49:03 +0300 |
---|---|---|
committer | Kevin Wolf <kwolf@redhat.com> | 2012-08-10 10:25:11 +0200 |
commit | 730a9c53b4e52681fcfe31cf38854cbf91e132c7 (patch) | |
tree | aa4ca246c15bd0e8bf1bbb339ab0c0f4e4028bb7 /hw/acpi.c | |
parent | 3d1d9652978ac5a32a0beb4bdf6065ca39440d89 (diff) | |
download | qemu-730a9c53b4e52681fcfe31cf38854cbf91e132c7.zip qemu-730a9c53b4e52681fcfe31cf38854cbf91e132c7.tar.gz qemu-730a9c53b4e52681fcfe31cf38854cbf91e132c7.tar.bz2 |
virtio-blk: fix use-after-free while handling scsi commands
The scsi passthrough handler falls through after completing a
request into the failure path, resulting in a use after free.
Reproducible by running a guest with aio=native on a block device.
Reported-by: Stefan Priebe <s.priebe@profihost.ag>
Signed-off-by: Avi Kivity <avi@redhat.com>
Signed-off-by: Stefan Hajnoczi <stefanha@linux.vnet.ibm.com>
Signed-off-by: Kevin Wolf <kwolf@redhat.com>
Diffstat (limited to 'hw/acpi.c')
0 files changed, 0 insertions, 0 deletions