summary refs log tree commit diff stats
path: root/gitlab/issues/target_missing/host_arm/accel_HVF/2895.toml
blob: 55d11eba989440c0f838412a2c7e1c08c9ec37e4 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
id = 2895
title = "qemu-system-aarch64: Error: r = HV_BAD_ARGUMENT (0xfae94003, at ../target/arm/hvf/hvf.c:2259)"
state = "closed"
created_at = "2025-03-31T12:47:56.375Z"
closed_at = "2025-05-07T20:09:29.328Z"
labels = ["accel: HVF", "host: arm"]
url = "https://gitlab.com/qemu-project/qemu/-/issues/2895"
host-os = "macOS 15.3.2 (24D81)"
host-arch = "arm64"
qemu-version = "0f15892acaf3f50ecc20c6dad4b3ebdd701aa93e"
guest-os = "Linux"
guest-arch = "arm64"
description = """When I launch a Linux guest in QEMU with `-accel hvf` + `-gdb "tcp::1234"`, and I try to debug the kernel with `lldb`, QEMU crashes with the following report:

```
qemu-system-aarch64: Error: r = HV_BAD_ARGUMENT (0xfae94003, at ../target/arm/hvf/hvf.c:2259)
```"""
reproduce = """1. Run QEMU with `-accel hvf` + `-gdb "tcp::1234"` and a custom kernel (`-kernel Image`)
2. Try to attach using `lldb vmlinux` + `(lldb) gdb-remote 1234`"""
additional = """Debugging QEMU I see the crash is due to the `cpu->accel->fd` file descriptor being `0`:

```
warning: qemu-system-aarch64 was compiled with optimization - stepping may behave oddly; variables may not be available.
frame #4: 0x00000001003dd24c qemu-system-aarch64`hvf_arch_update_guest_debug [inlined] hvf_put_guest_debug_registers(cpu=0x0000000158118000) at hvf.c:2259:9 [opt]
   2256     for (i = 0; i < max_hw_bps; i++) {
   2257         r = hv_vcpu_set_sys_reg(cpu->accel->fd, dbgbcr_regs[i],
   2258                                 env->cp15.dbgbcr[i]);
-> 2259         assert_hvf_ok(r);
   2260         r = hv_vcpu_set_sys_reg(cpu->accel->fd, dbgbvr_regs[i],
   2261                                 env->cp15.dbgbvr[i]);
   2262         assert_hvf_ok(r);
(lldb) print cpu->accel->fd
(hvf_vcpuid) 0
(lldb) print dbgbcr_regs[i]
(const uint16_t) 32773
(lldb) print env->cp15.dbgbcr[i]
(uint64_t) 480
```"""