summaryrefslogtreecommitdiffstats
path: root/results/classifier/105/device/1890157
diff options
context:
space:
mode:
Diffstat (limited to 'results/classifier/105/device/1890157')
-rw-r--r--results/classifier/105/device/189015754
1 files changed, 54 insertions, 0 deletions
diff --git a/results/classifier/105/device/1890157 b/results/classifier/105/device/1890157
new file mode 100644
index 00000000..48178dd4
--- /dev/null
+++ b/results/classifier/105/device/1890157
@@ -0,0 +1,54 @@
+device: 0.388
+graphic: 0.329
+vnc: 0.291
+instruction: 0.205
+semantic: 0.200
+network: 0.187
+mistranslation: 0.109
+boot: 0.089
+other: 0.083
+socket: 0.083
+assembly: 0.076
+KVM: 0.074
+
+Assertion failure in net_tx_pkt_reset through vmxnet3
+
+Hello,
+Reproducer:
+
+cat << EOF | ./i386-softmmu/qemu-system-i386 \
+-device vmxnet3 -m 64 -nodefaults -qtest stdio -nographic
+outl 0xcf8 0x80001014
+outl 0xcfc 0xe0001000
+outl 0xcf8 0x80001018
+outl 0xcf8 0x80001004
+outw 0xcfc 0x7
+outl 0xcf8 0x80001083
+write 0x0 0x1 0xe1
+write 0x1 0x1 0xfe
+write 0x2 0x1 0xbe
+write 0x3 0x1 0xba
+writeq 0xe0001020 0xefefff5ecafe0000
+writeq 0xe0001020 0xffff5e5ccafe0002
+EOF
+
+==============================================================
+qemu-system-i386: /home/alxndr/Development/qemu/general-fuzz/hw/net/net_tx_pkt.c:450: void net_tx_pkt_reset(struct NetTxPkt *): Assertion `pkt->raw' failed.
+
+ #9 0x564838761930 in net_tx_pkt_reset /home/alxndr/Development/qemu/general-fuzz/hw/net/net_tx_pkt.c:450:5
+ #10 0x564838881749 in vmxnet3_deactivate_device /home/alxndr/Development/qemu/general-fuzz/hw/net/vmxnet3.c:1159:9
+ #11 0x56483888cf71 in vmxnet3_reset /home/alxndr/Development/qemu/general-fuzz/hw/net/vmxnet3.c:1170:5
+ #12 0x564838882124 in vmxnet3_handle_command /home/alxndr/Development/qemu/general-fuzz/hw/net/vmxnet3.c:1610:9
+ #13 0x56483887f10f in vmxnet3_io_bar1_write /home/alxndr/Development/qemu/general-fuzz/hw/net/vmxnet3.c:1772:9
+ #14 0x56483738f193 in memory_region_write_accessor /home/alxndr/Development/qemu/general-fuzz/softmmu/memory.c:483:5
+ #15 0x56483738e637 in access_with_adjusted_size /home/alxndr/Development/qemu/general-fuzz/softmmu/memory.c:544:18
+ #16 0x56483738c256 in memory_region_dispatch_write /home/alxndr/Development/qemu/general-fuzz/softmmu/memory.c:1466:16
+ #17 0x56483673d4a6 in flatview_write_continue /home/alxndr/Development/qemu/general-fuzz/exec.c:3176:23
+
+-Alex
+
+This can still be reproduced with the current version of QEMU. Marking as "Confirmed"
+
+Fixed here:
+https://gitlab.com/qemu-project/qemu/-/commit/283f0a05e24a5e5fab783
+