summary refs log tree commit diff stats
path: root/results/classifier/105/graphic/2648
diff options
context:
space:
mode:
Diffstat (limited to 'results/classifier/105/graphic/2648')
-rw-r--r--results/classifier/105/graphic/264824
1 files changed, 24 insertions, 0 deletions
diff --git a/results/classifier/105/graphic/2648 b/results/classifier/105/graphic/2648
new file mode 100644
index 000000000..2f2413558
--- /dev/null
+++ b/results/classifier/105/graphic/2648
@@ -0,0 +1,24 @@
+graphic: 0.580
+device: 0.525
+instruction: 0.485
+semantic: 0.439
+network: 0.342
+vnc: 0.315
+other: 0.132
+mistranslation: 0.123
+boot: 0.121
+socket: 0.111
+KVM: 0.084
+assembly: 0.015
+
+Possible dereference of NULL in block/qapi.c
+Description of problem:
+qdict_get can return NULL if the "data" key is not found in the obj dictionary. Then if NULL is passed to the qobject_is_empty_dump function, it will be dereferenced when calling the qobject_type function.
+
+https://github.com/qemu/qemu/blob/92ec7805190313c9e628f8fc4eb4f932c15247bd/block/qapi.c#L891-L892
+
+I think that data check for NULL should be added.
+
+Found by Linux Verification Center (portal.linuxtesting.ru) with SVACE.
+
+Author A. Burke.