[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Qemu-stable] [PATCH-for-4.1 v3 1/6] virtio-balloon: Fix wrong sign exte
From: |
David Hildenbrand |
Subject: |
[Qemu-stable] [PATCH-for-4.1 v3 1/6] virtio-balloon: Fix wrong sign extension of PFNs |
Date: |
Mon, 22 Jul 2019 15:41:03 +0200 |
If we directly cast from int to uint64_t, we will first sign-extend to
an int64_t, which is wrong. We actually want to treat the PFNs like
unsigned values.
As far as I can see, this dates back to the initial virtio-balloon
commit, but wasn't triggered as fairly big guests would be required.
Cc: address@hidden
Reported-by: Michael S. Tsirkin <address@hidden>
Signed-off-by: David Hildenbrand <address@hidden>
---
hw/virtio/virtio-balloon.c | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/hw/virtio/virtio-balloon.c b/hw/virtio/virtio-balloon.c
index e85d1c0d5c..515abf6553 100644
--- a/hw/virtio/virtio-balloon.c
+++ b/hw/virtio/virtio-balloon.c
@@ -343,8 +343,8 @@ static void virtio_balloon_handle_output(VirtIODevice
*vdev, VirtQueue *vq)
}
while (iov_to_buf(elem->out_sg, elem->out_num, offset, &pfn, 4) == 4) {
+ unsigned int p = virtio_ldl_p(vdev, &pfn);
hwaddr pa;
- int p = virtio_ldl_p(vdev, &pfn);
pa = (hwaddr) p << VIRTIO_BALLOON_PFN_SHIFT;
offset += 4;
--
2.21.0
- [Qemu-stable] [PATCH-for-4.1 v3 0/6] virtio-balloon: fixes, David Hildenbrand, 2019/07/22
- [Qemu-stable] [PATCH-for-4.1 v3 1/6] virtio-balloon: Fix wrong sign extension of PFNs,
David Hildenbrand <=
- [Qemu-stable] [PATCH-for-4.1 v3 2/6] virtio-balloon: Fix QEMU crashes on pagesize > BALLOON_PAGE_SIZE, David Hildenbrand, 2019/07/22
- [Qemu-stable] [PATCH-for-4.1 v3 3/6] virtio-balloon: Simplify deflate with pbp, David Hildenbrand, 2019/07/22
- [Qemu-stable] [PATCH-for-4.1 v3 4/6] virtio-balloon: Better names for offset variables in inflate/deflate code, David Hildenbrand, 2019/07/22
- [Qemu-stable] [PATCH-for-4.1 v3 5/6] virtio-balloon: Rework pbp tracking data, David Hildenbrand, 2019/07/22
- [Qemu-stable] [PATCH-for-4.1 v3 6/6] virtio-balloon: Use temporary PBP only, David Hildenbrand, 2019/07/22