summary refs log tree commit diff stats
path: root/results/classifier/105/instruction/1412
diff options
context:
space:
mode:
Diffstat (limited to 'results/classifier/105/instruction/1412')
-rw-r--r--results/classifier/105/instruction/141218
1 files changed, 18 insertions, 0 deletions
diff --git a/results/classifier/105/instruction/1412 b/results/classifier/105/instruction/1412
new file mode 100644
index 000000000..19cbb7365
--- /dev/null
+++ b/results/classifier/105/instruction/1412
@@ -0,0 +1,18 @@
+instruction: 0.943
+device: 0.794
+graphic: 0.745
+network: 0.666
+vnc: 0.606
+socket: 0.527
+semantic: 0.404
+assembly: 0.397
+other: 0.306
+boot: 0.260
+mistranslation: 0.190
+KVM: 0.057
+
+QEMU segfault (null pointer dereference) in sve_probe_page from ldff1* instructions
+Description of problem:
+After upgrading to QEMU v7.2.0 from v7.1.0, when executing any SVE ldff1* instructions with a faulting address, QEMU crashes due to a null pointer dereference at target/arm/sve_helper.c:5364
+
+I believe this was introduced in b8967ddf393aaf35fdbc07b4cb538a40f8b6fe37 (@rth7680), since in that commit `full` is dereferenced before the `flags & TLB_INVALID_MASK` check at line 5369, and full is set to null by `probe_access_full` when `TLB_INVALID_MASK` is given.