summary refs log tree commit diff stats
path: root/gitlab/issues/target_missing/host_missing/accel_missing/1381.toml
diff options
context:
space:
mode:
authorChristian Krinitsin <mail@krinitsin.com>2025-05-21 21:21:26 +0200
committerChristian Krinitsin <mail@krinitsin.com>2025-05-21 21:21:26 +0200
commit4b927bc37359dec23f67d3427fc982945f24f404 (patch)
tree245449ef9146942dc7fffd0235b48b7e70a00bf2 /gitlab/issues/target_missing/host_missing/accel_missing/1381.toml
parentaa8bd79cec7bf6790ddb01d156c2ef2201abbaab (diff)
downloadqemu-analysis-4b927bc37359dec23f67d3427fc982945f24f404.tar.gz
qemu-analysis-4b927bc37359dec23f67d3427fc982945f24f404.zip
add gitlab issues in toml format
Diffstat (limited to 'gitlab/issues/target_missing/host_missing/accel_missing/1381.toml')
-rw-r--r--gitlab/issues/target_missing/host_missing/accel_missing/1381.toml15
1 files changed, 15 insertions, 0 deletions
diff --git a/gitlab/issues/target_missing/host_missing/accel_missing/1381.toml b/gitlab/issues/target_missing/host_missing/accel_missing/1381.toml
new file mode 100644
index 000000000..540b4e730
--- /dev/null
+++ b/gitlab/issues/target_missing/host_missing/accel_missing/1381.toml
@@ -0,0 +1,15 @@
+id = 1381
+title = "plugins: plugin_mem_cbs is not consistently NULL'ed when returning from execution"
+state = "closed"
+created_at = "2022-12-18T05:02:50.298Z"
+closed_at = "2023-03-22T22:10:45.989Z"
+labels = ["Closed::Fixed", "TCG plugins"]
+url = "https://gitlab.com/qemu-project/qemu/-/issues/1381"
+host-os = "n/a"
+host-arch = "n/a"
+qemu-version = "n/a"
+guest-os = "n/a"
+guest-arch = "n/a"
+description = """This is an invariant that we should have been checking for; when returning from execution, cpu->plugin_mem_cbs should be NULL. Otherwise we open a door for a use-after-free; admittedly this door isn't that large (it requires a tb_flush to occur while we have the dangling plugin_mem_cbs), but at least one plugin user has encountered this problem: https://lists.nongnu.org/archive/html/qemu-devel/2022-11/msg02703.html"""
+reproduce = "n/a"
+additional = "n/a"