summary refs log tree commit diff stats
path: root/results/classifier/semantic-bugs/semantic/1370
diff options
context:
space:
mode:
authorChristian Krinitsin <mail@krinitsin.com>2025-06-12 09:56:59 +0200
committerChristian Krinitsin <mail@krinitsin.com>2025-06-12 09:56:59 +0200
commitb89a938452613061c0f1f23e710281cf5c83cb29 (patch)
treed5faecfd167e088848cad894f8dc9cfef3352e3b /results/classifier/semantic-bugs/semantic/1370
parent7b681b9f9eedaad2f081ae11a32f459f5a1312ff (diff)
downloadqemu-analysis-b89a938452613061c0f1f23e710281cf5c83cb29.tar.gz
qemu-analysis-b89a938452613061c0f1f23e710281cf5c83cb29.zip
add manually reviewed semantic bugs
Diffstat (limited to 'results/classifier/semantic-bugs/semantic/1370')
-rw-r--r--results/classifier/semantic-bugs/semantic/137026
1 files changed, 26 insertions, 0 deletions
diff --git a/results/classifier/semantic-bugs/semantic/1370 b/results/classifier/semantic-bugs/semantic/1370
new file mode 100644
index 000000000..c7f125abf
--- /dev/null
+++ b/results/classifier/semantic-bugs/semantic/1370
@@ -0,0 +1,26 @@
+semantic: 0.986
+instruction: 0.949
+graphic: 0.878
+assembly: 0.842
+device: 0.806
+socket: 0.681
+vnc: 0.658
+network: 0.606
+boot: 0.546
+mistranslation: 0.502
+other: 0.474
+KVM: 0.210
+
+x86 BLSI and BLSR semantic bug
+Description of problem:
+The result of instruction BLSI and BLSR is different from the CPU. The value of CF is different.
+Steps to reproduce:
+1. Compile this code
+```
+void main() {
+    asm("blsi rax, rbx");
+}
+```
+2. Execute and compare the result with the CPU. The value of `CF` is exactly the opposite. This problem happens with BLSR, too.
+Additional information:
+This bug is discovered by research conducted by KAIST SoftSec.