Go to file
Mark Cave-Ayland 54a53a006e scsi-disk: fix overflow when block size is not a multiple of BDRV_SECTOR_SIZE
In scsi_disk_emulate_write_same() the number of host sectors to transfer is
calculated as (s->qdev.blocksize / BDRV_SECTOR_SIZE) which is then used to
copy data in block size chunks to the iov buffer.

Since the loop copying the data to the iov buffer uses a fixed increment of
s->qdev.blocksize then using a block size that isn't a multiple of
BDRV_SECTOR_SIZE introduces a rounding error in the iov buffer size calculation
such that the iov buffer copy overflows the space allocated.

Update the iov buffer copy for() loop so that it will use the smallest of either
the current block size or the remaining transfer count to prevent the overflow.

Signed-off-by: Mark Cave-Ayland <mark.cave-ayland@ilande.co.uk>
Message-Id: <20220730122656.253448-2-mark.cave-ayland@ilande.co.uk>
Signed-off-by: Paolo Bonzini <pbonzini@redhat.com>
2022-08-01 15:22:39 +02:00
.github/workflows github: fix config mistake preventing repo lockdown commenting 2022-04-26 16:12:26 +01:00
.gitlab/issue_templates
.gitlab-ci.d ci: Upgrade msys2 release to 20220603 2022-07-29 10:33:29 -07:00
accel kvm: don't use perror() without useful errno 2022-07-29 00:15:02 +02:00
audio audio/dbus: fix building 2022-07-08 11:03:36 +02:00
authz
backends crypto: Introduce RSA algorithm 2022-06-16 12:54:58 -04:00
block block/parallels: Fix buffer-based write call 2022-07-26 22:04:59 +03:00
bsd-user bsd-user: Remove stray 'inline' from do_bsd_close 2022-07-02 07:52:48 -06:00
chardev QIOChannel: Add flags on io_writev and introduce io_flush callback 2022-05-16 13:56:24 +01:00
common-user common-user: Only compile the common user code if have_user is set 2022-06-28 11:12:05 +02:00
configs hw/loongarch: Add fdt support 2022-07-19 22:55:10 +05:30
contrib contrib/vhost-user-blk: fix 32 bit build and enable 2022-06-27 18:53:18 -04:00
crypto crypto: Make block callbacks return 0 on success 2022-07-12 12:14:55 +02:00
disas disas: Remove libvixl disassembler 2022-07-05 10:15:49 +02:00
docs docs/devel: fix description of OBJECT_DECLARE_SIMPLE_TYPE 2022-07-29 09:48:01 +01:00
dtc@b6910bec11
dump dump/win_dump: add 32-bit guest Windows support 2022-04-22 13:41:56 +04:00
ebpf ebpf: replace deprecated bpf_program__set_socket_filter 2022-07-06 11:39:09 +08:00
fpu * Fixes for s390x floating point vector instructions 2022-07-20 14:13:32 +01:00
fsdev Remove qemu-common.h include from most units 2022-04-06 14:31:55 +02:00
gdb-xml target/loongarch: Add gdb support. 2022-06-06 18:14:13 +00:00
hw scsi-disk: fix overflow when block size is not a multiple of BDRV_SECTOR_SIZE 2022-08-01 15:22:39 +02:00
include hw/loongarch: Change macro name 'LS7A_XXX' to 'VIRT_XXX' 2022-07-29 15:07:55 -07:00
io QIOChannelSocket: Fix zero-copy flush returning code 1 when nothing sent 2022-07-20 12:15:09 +01:00
libdecnumber
linux-headers kvm: add support for boolean statistics 2022-07-18 18:51:32 +02:00
linux-user linux-user: Use target abi_int type for pipefd[1] in pipe() 2022-07-25 10:42:11 +02:00
meson@12f9f04ba0
migration migration: Avoid false-positive on non-supported scenarios for zero-copy-send 2022-07-20 12:15:09 +01:00
monitor * Boolean statistics for KVM 2022-07-21 11:13:01 +01:00
nbd block: Change blk_{pread,pwrite}() param order 2022-07-12 12:14:56 +02:00
net net/colo.c: fix segmentation fault when packet is not parsed correctly 2022-07-20 16:58:08 +08:00
pc-bios pc-bios/s390-ccw: add -Wno-array-bounds 2022-07-13 16:58:58 +02:00
plugins Clean up header guards that don't match their file name 2022-05-11 16:49:06 +02:00
po po: add ukrainian translation 2022-07-05 10:15:49 +02:00
python python/qemu/qmp/legacy: Replace 'returns-whitelist' with the correct type 2022-07-18 20:28:06 +02:00
qapi qapi: Add exit-failure PanicAction 2022-07-29 09:48:01 +01:00
qga qga: treat get-guest-fsinfo as "best effort" 2022-07-18 20:24:36 +02:00
qobject include/qapi: add g_autoptr support for qobject types 2022-04-06 10:50:38 +02:00
qom include: add qemu/keyval.h 2022-04-21 17:03:51 +04:00
replay replay: simplify async event processing 2022-06-06 09:26:53 +02:00
roms New SeaBIOS-hppa version 6 2022-05-26 12:54:29 +02:00
scripts scripts/coverity-scan/COMPONENTS.md: Update slirp component info 2022-07-26 13:37:44 +01:00
scsi QIOChannel: Add flags on io_writev and introduce io_flush callback 2022-05-16 13:56:24 +01:00
semihosting semihosting: Fix handling of buffer in TARGET_SYS_TMPNAM 2022-07-29 09:48:01 +01:00
slirp@9d59bb775d slirp: bump submodule past 4.7 release 2022-05-12 12:29:44 +02:00
softmmu qapi: Add exit-failure PanicAction 2022-07-29 09:48:01 +01:00
storage-daemon qsd: Unlink absolute PID file path 2022-07-12 14:30:38 +02:00
stubs stubs: update replay-tools to match replay.h types 2022-07-28 15:36:17 +02:00
subprojects libvhost-user: Fix VHOST_USER_ADD_MEM_REG reply 2022-06-27 18:53:18 -04:00
target hw/loongarch: Rename file 'loongson3.XXX' to 'virt.XXX' 2022-07-29 15:07:55 -07:00
tcg tcg: Fix returned type in alloc_code_gen_buffer_splitwx_memfd() 2022-07-12 10:30:10 +05:30
tests tests/tcg/s390x: Test unaligned accesses to lowcore 2022-07-29 09:48:01 +01:00
tools Trivial: 3 char repeat typos 2022-06-28 11:06:02 +02:00
trace error: use GLib to remember the program name 2022-03-22 14:46:18 +04:00
ui ui: dbus-display requires CONFIG_GBM 2022-07-28 13:08:29 +02:00
util util: Fix broken build on Haiku 2022-07-19 11:32:21 +02:00
.cirrus.yml ci: Upgrade msys2 release to 20220603 2022-07-29 10:33:29 -07:00
.dir-locals.el
.editorconfig
.exrc
.gdbinit
.gitattributes gitattributes: Cover Objective-C source files 2022-03-29 00:15:14 +02:00
.gitignore .gitignore: add .gcov pattern 2022-02-09 12:08:41 +00:00
.gitlab-ci.yml
.gitmodules vfio-user: build library 2022-06-15 16:42:33 +01:00
.gitpublish
.mailmap MAINTAINERS/.mailmap: update email for Leif Lindholm 2022-05-09 11:47:53 +01:00
.patchew.yml
.readthedocs.yml
.travis.yml Revert "gitlab: disable accelerated zlib for s390x" 2022-07-20 12:15:09 +01:00
block.c block: Change blk_{pread,pwrite}() param order 2022-07-12 12:14:56 +02:00
blockdev-nbd.c nbd/server: Allow MULTI_CONN for shared writable exports 2022-05-12 13:10:52 +02:00
blockdev.c Replace qemu_gettimeofday() with g_get_real_time() 2022-04-06 10:50:37 +02:00
blockjob.c assertions for blockjob.h global state API 2022-03-04 18:18:25 +01:00
configure configure: pass correct cflags to container-based cross compilers 2022-07-29 00:22:19 +02:00
COPYING
COPYING.LIB
cpu.c util/log: Remove qemu_log_close 2022-04-20 10:51:11 -07:00
cpus-common.c cpus: Introduce cpu_list_generation_id 2022-07-20 12:15:08 +01:00
disas.c disas: Remove libvixl disassembler 2022-07-05 10:15:49 +02:00
event-loop-base.c util/event-loop-base: Introduce options to set the thread pool size 2022-05-09 10:43:23 +01:00
gdbstub.c gdbstub: Adjust gdb_syscall_complete_cb declaration 2022-06-28 04:35:52 +05:30
gitdm.config
hmp-commands-info.hx softmmu/dirtylimit: Implement dirty page rate limit 2022-07-20 12:15:08 +01:00
hmp-commands.hx softmmu/dirtylimit: Implement dirty page rate limit 2022-07-20 12:15:08 +01:00
iothread.c util/event-loop-base: Introduce options to set the thread pool size 2022-05-09 10:43:23 +01:00
job-qmp.c
job.c job.h: assertions in the callers of JobDriver function pointers 2022-03-04 18:18:26 +01:00
Kconfig
Kconfig.host vfio-user: build library 2022-06-15 16:42:33 +01:00
LICENSE
MAINTAINERS hw/loongarch: Rename file 'loongson3.XXX' to 'virt.XXX' 2022-07-29 15:07:55 -07:00
Makefile cutils: Introduce bundle mechanism 2022-07-13 16:58:57 +02:00
memory_ldst.c.inc
meson_options.txt meson: Prefix each element of firmware path 2022-07-13 16:58:57 +02:00
meson.build ui: dbus-display requires CONFIG_GBM 2022-07-28 13:08:29 +02:00
module-common.c
os-posix.c os-posix: replace pipe()+cloexec with g_unix_open_pipe(CLOEXEC) 2022-05-03 15:46:17 +04:00
os-win32.c Remove qemu-common.h include from most units 2022-04-06 14:31:55 +02:00
page-vary-common.c Remove qemu-common.h include from most units 2022-04-06 14:31:55 +02:00
page-vary.c include: move target page bits declaration to page-vary.h 2022-04-06 14:31:43 +02:00
qemu-bridge-helper.c
qemu-edid.c
qemu-img-cmds.hx qemu-img: Unify [-b [-F]] documentation 2022-02-01 13:49:15 +01:00
qemu-img.c block: Change blk_pwrite_compressed() param order 2022-07-12 12:14:56 +02:00
qemu-io-cmds.c block: Change blk_pwrite_compressed() param order 2022-07-12 12:14:56 +02:00
qemu-io.c include: move qemu_*_exec_dir() to cutils 2022-05-28 11:42:56 +02:00
qemu-keymap.c
qemu-nbd.c qemu-nbd: Pass max connections to blockdev layer 2022-05-12 13:10:52 +02:00
qemu-options.hx qemu-options: bring the kernel and image options together 2022-07-29 09:48:01 +01:00
qemu.nsi nsis installer: Fix mouse-over descriptions for emulators 2022-03-18 10:55:15 +00:00
qemu.sasl
README.rst
replication.c
trace-events tracing: remove TCG memory access tracing 2022-02-09 12:08:42 +00:00
VERSION Update version for v7.1.0-rc0 release 2022-07-26 18:03:16 -07:00
version.rc

===========
QEMU README
===========

QEMU is a generic and open source machine & userspace emulator and
virtualizer.

QEMU is capable of emulating a complete machine in software without any
need for hardware virtualization support. By using dynamic translation,
it achieves very good performance. QEMU can also integrate with the Xen
and KVM hypervisors to provide emulated hardware while allowing the
hypervisor to manage the CPU. With hypervisor support, QEMU can achieve
near native performance for CPUs. When QEMU emulates CPUs directly it is
capable of running operating systems made for one machine (e.g. an ARMv7
board) on a different machine (e.g. an x86_64 PC board).

QEMU is also capable of providing userspace API virtualization for Linux
and BSD kernel interfaces. This allows binaries compiled against one
architecture ABI (e.g. the Linux PPC64 ABI) to be run on a host using a
different architecture ABI (e.g. the Linux x86_64 ABI). This does not
involve any hardware emulation, simply CPU and syscall emulation.

QEMU aims to fit into a variety of use cases. It can be invoked directly
by users wishing to have full control over its behaviour and settings.
It also aims to facilitate integration into higher level management
layers, by providing a stable command line interface and monitor API.
It is commonly invoked indirectly via the libvirt library when using
open source applications such as oVirt, OpenStack and virt-manager.

QEMU as a whole is released under the GNU General Public License,
version 2. For full licensing details, consult the LICENSE file.


Documentation
=============

Documentation can be found hosted online at
`<https://www.qemu.org/documentation/>`_. The documentation for the
current development version that is available at
`<https://www.qemu.org/docs/master/>`_ is generated from the ``docs/``
folder in the source tree, and is built by `Sphinx
<https://www.sphinx-doc.org/en/master/>_`.


Building
========

QEMU is multi-platform software intended to be buildable on all modern
Linux platforms, OS-X, Win32 (via the Mingw64 toolchain) and a variety
of other UNIX targets. The simple steps to build QEMU are:


.. code-block:: shell

  mkdir build
  cd build
  ../configure
  make

Additional information can also be found online via the QEMU website:

* `<https://wiki.qemu.org/Hosts/Linux>`_
* `<https://wiki.qemu.org/Hosts/Mac>`_
* `<https://wiki.qemu.org/Hosts/W32>`_


Submitting patches
==================

The QEMU source code is maintained under the GIT version control system.

.. code-block:: shell

   git clone https://gitlab.com/qemu-project/qemu.git

When submitting patches, one common approach is to use 'git
format-patch' and/or 'git send-email' to format & send the mail to the
qemu-devel@nongnu.org mailing list. All patches submitted must contain
a 'Signed-off-by' line from the author. Patches should follow the
guidelines set out in the `style section
<https://www.qemu.org/docs/master/devel/style.html>` of
the Developers Guide.

Additional information on submitting patches can be found online via
the QEMU website

* `<https://wiki.qemu.org/Contribute/SubmitAPatch>`_
* `<https://wiki.qemu.org/Contribute/TrivialPatches>`_

The QEMU website is also maintained under source control.

.. code-block:: shell

  git clone https://gitlab.com/qemu-project/qemu-web.git

* `<https://www.qemu.org/2017/02/04/the-new-qemu-website-is-up/>`_

A 'git-publish' utility was created to make above process less
cumbersome, and is highly recommended for making regular contributions,
or even just for sending consecutive patch series revisions. It also
requires a working 'git send-email' setup, and by default doesn't
automate everything, so you may want to go through the above steps
manually for once.

For installation instructions, please go to

*  `<https://github.com/stefanha/git-publish>`_

The workflow with 'git-publish' is:

.. code-block:: shell

  $ git checkout master -b my-feature
  $ # work on new commits, add your 'Signed-off-by' lines to each
  $ git publish

Your patch series will be sent and tagged as my-feature-v1 if you need to refer
back to it in the future.

Sending v2:

.. code-block:: shell

  $ git checkout my-feature # same topic branch
  $ # making changes to the commits (using 'git rebase', for example)
  $ git publish

Your patch series will be sent with 'v2' tag in the subject and the git tip
will be tagged as my-feature-v2.

Bug reporting
=============

The QEMU project uses GitLab issues to track bugs. Bugs
found when running code built from QEMU git or upstream released sources
should be reported via:

* `<https://gitlab.com/qemu-project/qemu/-/issues>`_

If using QEMU via an operating system vendor pre-built binary package, it
is preferable to report bugs to the vendor's own bug tracker first. If
the bug is also known to affect latest upstream code, it can also be
reported via GitLab.

For additional information on bug reporting consult:

* `<https://wiki.qemu.org/Contribute/ReportABug>`_


ChangeLog
=========

For version history and release notes, please visit
`<https://wiki.qemu.org/ChangeLog/>`_ or look at the git history for
more detailed information.


Contact
=======

The QEMU community can be contacted in a number of ways, with the two
main methods being email and IRC

* `<mailto:qemu-devel@nongnu.org>`_
* `<https://lists.nongnu.org/mailman/listinfo/qemu-devel>`_
* #qemu on irc.oftc.net

Information on additional methods of contacting the community can be
found online via the QEMU website:

* `<https://wiki.qemu.org/Contribute/StartHere>`_