diff options
Diffstat (limited to 'results/classifier/105/graphic/1353456')
| -rw-r--r-- | results/classifier/105/graphic/1353456 | 45 |
1 files changed, 45 insertions, 0 deletions
diff --git a/results/classifier/105/graphic/1353456 b/results/classifier/105/graphic/1353456 new file mode 100644 index 000000000..700f166b4 --- /dev/null +++ b/results/classifier/105/graphic/1353456 @@ -0,0 +1,45 @@ +graphic: 0.764 +semantic: 0.737 +instruction: 0.727 +device: 0.656 +mistranslation: 0.596 +network: 0.475 +vnc: 0.469 +socket: 0.455 +boot: 0.275 +KVM: 0.228 +assembly: 0.196 +other: 0.118 + +qemu-io: Failure on a qcow2 image with the fuzzed refcount table + +'qemu-io -c write' and 'qemu-io -c aio_write' crashes on a qcow2 image with a fuzzed refcount table. + +Sequence: + 1. Unpack the attached archive, make a copy of test.img + 2. Put copy.img and backing_img.file in the same directory + 3. Execute + qemu-io copy.img -c write 279552 322560 + or + qemu-io copy.img -c aio_write 836608 166400 + +Result: qemu-io was killed by SIGIOT with the reason: + +qemu-io: block/qcow2-cluster.c:1291: qcow2_alloc_cluster_offset: Assertion `*host_offset != 0' failed. + +qemu.git HEAD 69f87f713069f1f + + + +Hi, + +this has been fixed in upstream master (5f77ef69a195098baddfdc6d189f1b4a94587378): + +$ ./qemu-io copy.img -c 'aio_write 836608 166400' +qcow2: Marking image as corrupt: Preventing invalid write on metadata (overlaps with qcow2_header); further corruption events will be suppressed +aio_write failed: Input/output error + +Thanks for your report, + +Max + |