summary refs log tree commit diff stats
path: root/results/classifier/105/instruction/1240669
diff options
context:
space:
mode:
authorChristian Krinitsin <mail@krinitsin.com>2025-06-03 12:04:13 +0000
committerChristian Krinitsin <mail@krinitsin.com>2025-06-03 12:04:13 +0000
commit256709d2eb3fd80d768a99964be5caa61effa2a0 (patch)
tree05b2352fba70923126836a64b6a0de43902e976a /results/classifier/105/instruction/1240669
parent2ab14fa96a6c5484b5e4ba8337551bb8dcc79cc5 (diff)
downloademulator-bug-study-256709d2eb3fd80d768a99964be5caa61effa2a0.tar.gz
emulator-bug-study-256709d2eb3fd80d768a99964be5caa61effa2a0.zip
add new classifier result
Diffstat (limited to 'results/classifier/105/instruction/1240669')
-rw-r--r--results/classifier/105/instruction/124066955
1 files changed, 55 insertions, 0 deletions
diff --git a/results/classifier/105/instruction/1240669 b/results/classifier/105/instruction/1240669
new file mode 100644
index 00000000..e6c683be
--- /dev/null
+++ b/results/classifier/105/instruction/1240669
@@ -0,0 +1,55 @@
+instruction: 0.745
+graphic: 0.698
+semantic: 0.656
+device: 0.651
+socket: 0.512
+boot: 0.506
+mistranslation: 0.453
+network: 0.389
+assembly: 0.253
+vnc: 0.240
+other: 0.178
+KVM: 0.173
+
+sd_init() generates SIGSEGV when passed NULL
+
+Ran into a bug following the following tutorial:
+http://balau82.wordpress.com/2010/03/10/u-boot-for-arm-on-qemu/ 
+
+I built QEMU from a clone of master and became stuck at the beginning part of the tutorial where only u-boot.bin is exectuted.
+
+http://git.qemu.org/?p=qemu.git;a=commitdiff;h=4f8a066b5fc254eeaabbbde56ba4f5b29cc68fdf 
+See the modifications to sd.c specifically. 
+
+When sd_init (sd.c) is called from pl181_init(), bs is potentially null:
+s->card = sd_init(dinfo ? dinfo->bdrv : NULL, false); 
+
+sd_init()  :
+SDState *sd_init(BlockDriverState *bs, bool is_spi) 
+{ 
+    SDState *sd; 
+ 
+    sd = (SDState *) g_malloc0(sizeof(SDState)); 
+    sd->buf = qemu_blockalign(bs, 512); 
+    sd->spi = is_spi; 
+    sd->enable = true; 
+    sd_reset(sd, bs); 
+    if (sd->bdrv) { 
+        bdrv_attach_dev_nofail(sd->bdrv, sd); 
+        bdrv_set_dev_ops(sd->bdrv, &sd_block_ops, sd); 
+    } 
+    vmstate_register(NULL, -1, &sd_vmstate, sd); 
+    return sd; 
+}
+
+Line 497 calls bdrv_is_read_only(bs) (from block.c)and this generates a SEGSIGV.
+
+int bdrv_is_read_only(BlockDriverState *bs)                                                           
+{                                                                                                     
+    return bs->read_only;                                                                             
+} 
+
+Checking out tag v1.6.1 reverted the problem.  Thanks!
+
+Fixed with commit 794cbc26eb94ce13c75d105eea9ff0afff56e2c2.
+