summary refs log tree commit diff stats
path: root/results/classifier/118/peripherals/1907938
diff options
context:
space:
mode:
authorChristian Krinitsin <mail@krinitsin.com>2025-06-16 16:59:00 +0000
committerChristian Krinitsin <mail@krinitsin.com>2025-06-16 16:59:33 +0000
commit9aba81d8eb048db908c94a3c40c25a5fde0caee6 (patch)
treeb765e7fb5e9a3c2143c68b0414e0055adb70e785 /results/classifier/118/peripherals/1907938
parentb89a938452613061c0f1f23e710281cf5c83cb29 (diff)
downloademulator-bug-study-9aba81d8eb048db908c94a3c40c25a5fde0caee6.tar.gz
emulator-bug-study-9aba81d8eb048db908c94a3c40c25a5fde0caee6.zip
add 18th iteration of classifier
Diffstat (limited to 'results/classifier/118/peripherals/1907938')
-rw-r--r--results/classifier/118/peripherals/1907938114
1 files changed, 114 insertions, 0 deletions
diff --git a/results/classifier/118/peripherals/1907938 b/results/classifier/118/peripherals/1907938
new file mode 100644
index 00000000..b916448c
--- /dev/null
+++ b/results/classifier/118/peripherals/1907938
@@ -0,0 +1,114 @@
+mistranslation: 0.947
+peripherals: 0.920
+user-level: 0.919
+permissions: 0.900
+device: 0.892
+register: 0.888
+performance: 0.878
+x86: 0.871
+assembly: 0.856
+virtual: 0.852
+hypervisor: 0.842
+architecture: 0.841
+graphic: 0.837
+TCG: 0.824
+files: 0.820
+ppc: 0.814
+debug: 0.810
+semantic: 0.806
+arm: 0.795
+VMM: 0.792
+vnc: 0.784
+socket: 0.781
+PID: 0.778
+risc-v: 0.765
+boot: 0.764
+network: 0.762
+kernel: 0.761
+KVM: 0.757
+i386: 0.732
+
+[OSS-Fuzz] Issue 28524 virtio-blk: ASSERT: !s->dataplane_started
+
+ affects qemu
+
+=== Reproducer ===
+
+cat << EOF |./qemu-system-i386 -display none -m 512M -machine q35 \
+-device virtio-blk,drive=disk0 \
+-drive file=null-co://,id=disk0,if=none,format=raw -qtest stdio
+outl 0xcf8 0x8000181f
+outl 0xcfc 0xa044d79
+outl 0xcf8 0x80001802
+outl 0xcf8 0x80001804
+outl 0xcfc 0xb9045dff
+outl 0xcf8 0x8000180e
+outl 0xcfc 0xfb9465a
+outl 0xf85 0x9e1ea5c2
+write 0x9f002 0x1 0x04
+write 0x9f004 0x1 0x04
+write 0x9e040 0x1 0x04
+write 0x9e043 0x1 0x01
+write 0x9e048 0x1 0x10
+write 0x9e04c 0x1 0x01
+write 0x9e04e 0x1 0x6e
+write 0x1000004 0x1 0x01
+write 0x9e6e3 0x1 0x01
+write 0x9e6eb 0x1 0x04
+write 0x9e6ec 0x1 0x6e
+write 0x9f006 0x1 0x04
+write 0x9f008 0x1 0x04
+write 0x9f00a 0x1 0x04
+outl 0xf8f 0xc
+EOF
+
+=== Stack Trace ===
+
+qemu-fuzz-i386: ../hw/block/virtio-blk.c:917: void virtio_blk_reset(VirtIODevice *): Assertion `!s->dataplane_started' failed.
+==702068== ERROR: libFuzzer: deadly signal
+#0 0x55bd6fc9f311 in __sanitizer_print_stack_trace (fuzz-i386+0x2b16311)
+#1 0x55bd6fbe83d8 in fuzzer::PrintStackTrace() (fuzz-i386+0x2a5f3d8)
+#2 0x55bd6fbce413 in fuzzer::Fuzzer::CrashCallback() (fuzz-i386+0x2a45413)
+#3 0x7ff5241b813f  (/lib/x86_64-linux-gnu/libpthread.so.0+0x1413f)
+#4 0x7ff523feddb0 in __libc_signal_restore_set signal/../sysdeps/unix/sysv/linux/internal-signals.h:86:3
+#5 0x7ff523feddb0 in raise signal/../sysdeps/unix/sysv/linux/raise.c:48:3
+#6 0x7ff523fd7536 in abort stdlib/abort.c:79:7
+#7 0x7ff523fd740e in __assert_fail_base assert/assert.c:92:3
+#8 0x7ff523fe65b1 in __assert_fail assert/assert.c:101:3
+#9 0x55bd7116c435 in virtio_blk_reset hw/block/virtio-blk.c:917:5
+#10 0x55bd710c94a2 in virtio_reset hw/virtio/virtio.c:2001:9
+#11 0x55bd6ff0e0a5 in virtio_pci_reset hw/virtio/virtio-pci.c:1886:5
+#12 0x55bd6ff10686 in virtio_ioport_write hw/virtio/virtio-pci.c:339:13
+#13 0x55bd6ff10686 in virtio_pci_config_write hw/virtio/virtio-pci.c:456:9
+#14 0x55bd713fd025 in memory_region_write_accessor softmmu/memory.c:491:5
+#15 0x55bd713fca93 in access_with_adjusted_size softmmu/memory.c:552:18
+#16 0x55bd713fc2f0 in memory_region_dispatch_write softmmu/memory.c
+#17 0x55bd70e4bf36 in flatview_write_continue softmmu/physmem.c:2759:23
+#18 0x55bd70e41bbb in flatview_write softmmu/physmem.c:2799:14
+#19 0x55bd70e41bbb in address_space_write softmmu/physmem.c:2891:18
+#20 0x55bd71153462 in cpu_outl softmmu/ioport.c:80:5
+#21 0x55bd712d586e in qtest_process_command softmmu/qtest.c:483:13
+#22 0x55bd712d35bf in qtest_process_inbuf softmmu/qtest.c:797:9
+#23 0x55bd712d3315 in qtest_server_inproc_recv softmmu/qtest.c:904:9
+#24 0x55bd71910df8 in qtest_sendf tests/qtest/libqtest.c:438:5
+#25 0x55bd71911fae in qtest_out tests/qtest/libqtest.c:952:5
+#26 0x55bd71911fae in qtest_outl tests/qtest/libqtest.c:968:5
+#27 0x55bd6fcd1aa2 in op_out tests/qtest/fuzz/generic_fuzz.c:395:13
+#28 0x55bd6fcd04e9 in generic_fuzz tests/qtest/fuzz/generic_fuzz.c:680:17
+#29 0x55bd6fcc9723 in LLVMFuzzerTestOneInput tests/qtest/fuzz/fuzz.c:151:5
+
+OSS-Fuzz Report:
+https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=28524
+
+
+
+This still reproduces with the current git version of QEMU.
+
+I moved this report over to QEMU's new bug tracker on gitlab.com.
+Please continue with the discussion here:
+
+https://gitlab.com/qemu-project/qemu/-/issues/543
+
+Thanks for moving it over! ... let's close this one here on Launchpad now.
+
+