Go to file
Prasad J Pandit 7bd9275630 9pfs: use g_malloc0 to allocate space for xattr
9p back-end first queries the size of an extended attribute,
allocates space for it via g_malloc() and then retrieves its
value into allocated buffer. Race between querying attribute
size and retrieving its could lead to memory bytes disclosure.
Use g_malloc0() to avoid it.

Reported-by: Tuomas Tynkkynen <tuomas.tynkkynen@iki.fi>
Signed-off-by: Prasad J Pandit <pjp@fedoraproject.org>
Signed-off-by: Greg Kurz <groug@kaod.org>
2017-10-16 14:21:59 +02:00
accel exec-all: extract tb->tc_* into a separate struct tc_tb 2017-10-10 07:37:10 -07:00
audio buildsys: Move audio libs to per object 2017-09-22 10:20:34 +08:00
backends hostmem-file: Add "discard-data" option 2017-09-19 09:09:23 -03:00
block config: qemu_config_parse() return number of config groups 2017-10-09 23:21:52 -03:00
bsd-user cpu: make cpu_generic_init() abort QEMU on error 2017-09-19 09:09:32 -03:00
chardev chardev/baum: fix baum that releases brlapi twice 2017-09-26 09:11:22 +03:00
contrib libvhost-user: Support VHOST_USER_SET_SLAVE_REQ_FD 2017-10-12 16:57:50 +02:00
crypto block: convert qcrypto_block_encrypt|decrypt to take bytes offset 2017-10-06 16:30:47 +02:00
default-configs msf2: Add Smartfusion2 SoC 2017-09-21 16:36:56 +01:00
disas disas/i386: Add disassembly of rorx 2017-09-06 07:19:00 -07:00
docs Migration pull 2017-09-27 2017-09-27 22:44:51 +01:00
dtc@558cd81bdd dtc: Revert unintentional submodule downgrade from commit c2cabb3422 2017-03-16 14:11:15 +00:00
fpu softfloat: define floatx80_round() 2017-06-29 20:27:39 +02:00
fsdev fsdev: fix memory leak in main() 2017-09-05 14:01:16 +02:00
gdb-xml s390x/gdb: add gs registers 2017-07-14 12:29:49 +02:00
hw 9pfs: use g_malloc0 to allocate space for xattr 2017-10-16 14:21:59 +02:00
include arm: fix armv7m_init() declaration to match definition 2017-10-12 13:20:07 +01:00
io io: add trace events for websockets frame handling 2017-10-04 13:21:53 +01:00
libdecnumber decnumber: use DIV_ROUND_UP 2017-08-31 12:29:07 +02:00
linux-headers linux-headers: sync against v4.14-rc1 2017-09-29 10:58:31 +02:00
linux-user cpu: make cpu_generic_init() abort QEMU on error 2017-09-19 09:09:32 -03:00
migration dirty-bitmap: Change bdrv_[re]set_dirty_bitmap() to use bytes 2017-10-06 16:28:58 +02:00
nbd nbd: Use new qio_channel_*_all() functions 2017-09-06 10:11:54 -05:00
net slirp: Add explanation for hostfwd parsing failure 2017-09-24 20:04:09 +02:00
pc-bios s390: set DHCP client architecure id for netboot 2017-09-19 18:21:33 +02:00
po po: add missing translations in de, fr, it, zh 2016-12-14 18:47:19 +00:00
qapi block: Add blkdebug hook for copy-on-read 2017-10-06 16:28:58 +02:00
qga Convert single line fprintf(.../n) to warn_report() 2017-09-19 14:09:34 +02:00
qobject qlit: Tighten QLit list vs QList comparison 2017-09-04 13:09:12 +02:00
qom qom/cpu: move cpu_model null check to cpu_class_by_name() 2017-10-09 23:21:52 -03:00
replay migration: pre_save return int 2017-09-27 11:35:59 +01:00
roms Update OpenBIOS images to 314d4f8 built from submodule. 2017-09-11 07:43:34 +01:00
scripts scripts: Remove debug parameter from QEMUMachine 2017-10-11 15:15:17 -03:00
scsi scsi: add persistent reservation manager using qemu-pr-helper 2017-09-22 21:07:27 +02:00
slirp migration: pre_save return int 2017-09-27 11:35:59 +01:00
stubs qmp: introduce query-memory-size-summary command 2017-09-14 15:52:10 +01:00
target target/arm: Implement SG instruction corner cases 2017-10-12 13:23:14 +01:00
tcg tcg/mips: delete commented out extern keyword. 2017-10-10 09:45:01 -07:00
tests vhost-user-bridge: Only process received packets on started queues 2017-10-12 16:57:42 +02:00
trace Convert single line fprintf(.../n) to warn_report() 2017-09-19 14:09:34 +02:00
ui ui: Always remove an old VNC channel watch before adding a new one 2017-10-04 13:21:53 +01:00
util util: move qemu_real_host_page_size/mask to osdep.h 2017-10-10 09:45:00 -07:00
.dir-locals.el
.editorconfig add editorconfig 2017-07-20 09:56:56 +02:00
.exrc
.gdbinit .gdbinit: load QEMU sub-commands when gdb starts 2017-06-07 14:38:45 +01:00
.gitignore scsi: Ignore executable for in-tree builds 2017-09-29 10:56:56 +02:00
.gitmodules pixman: drop submodule 2017-09-13 10:15:43 +02:00
.mailmap
.shippable.yml shippable: add win32/64 targets 2017-07-18 10:58:36 +01:00
.travis.yml travis: move make -j flag out of script 2017-07-18 09:39:19 +01:00
arch_init.c audio: Rename hw/audio/audio.h to hw/audio/soundhw.h 2017-05-19 10:48:54 +02:00
balloon.c trace: switch to modular code generation for sub-directories 2017-01-31 17:11:18 +00:00
block.c commit: Remove overlay_bs 2017-10-06 16:28:58 +02:00
blockdev-nbd.c nbd: Fix regression on resiliency to port scan 2017-06-15 11:04:05 +02:00
blockdev.c block: move ThrottleGroup membership to ThrottleGroupMember 2017-09-05 16:47:51 +02:00
blockjob.c qapi: Mechanically convert FOO_lookup[...] to FOO_str(...) 2017-09-04 13:09:13 +02:00
bootdevice.c Makefile: Move bootdevice.o to common-obj-y 2017-07-04 14:39:27 +02:00
bt-host.c
bt-vhci.c
Changelog
CODING_STYLE coding_style: add point about 0x in trace-events 2017-08-01 12:13:07 +01:00
configure add --firmwarepath to configure 2017-09-26 22:07:02 +01:00
COPYING
COPYING.LIB
COPYING.PYTHON scripts: add argparse module for Python 2.6 compatibility 2017-08-30 12:02:11 +01:00
cpus-common.c *_run_on_cpu: introduce run_on_cpu_data type 2016-10-31 15:00:25 +01:00
cpus.c memory: Get rid of address_space_init_shareable 2017-09-22 01:06:51 +02:00
device_tree.c device_tree: fix compiler warnings (clang 5) 2017-05-07 09:57:51 +03:00
device-hotplug.c blockdev: Split monitor reference from BB creation 2016-03-17 15:47:56 +01:00
disas.c tcg: Remove support for ia64 as host 2017-09-05 12:39:25 -07:00
dma-helpers.c block: explicitly acquire aiocontext in bottom halves that need it 2017-02-21 11:39:39 +00:00
dump.c exec,dump,i386,ppc,s390x: don't include exec/cpu-all.h explicitly 2017-09-19 18:21:33 +02:00
exec.c util: move qemu_real_host_page_size/mask to osdep.h 2017-10-10 09:45:00 -07:00
gdbstub.c Use qemu_tolower() and qemu_toupper(), not tolower() and toupper() 2017-07-21 10:32:41 +01:00
HACKING HACKING: document #include order 2017-01-03 16:38:47 +00:00
hmp-commands-info.hx hmp-commands-info: Change "@findex FOO" to "@findex info FOO" 2017-10-05 10:08:39 +01:00
hmp-commands.hx s390x/kvm/migration/cpumodel: fixes, enhancements and cleanups 2017-07-14 14:19:35 +01:00
hmp.c hmp: Missing handle_errors 2017-10-05 10:01:03 +01:00
hmp.h hmp: introduce 'info memory_size_summary' command 2017-09-14 15:52:10 +01:00
ioport.c trace: switch to modular code generation for sub-directories 2017-01-31 17:11:18 +00:00
iothread.c iothread: delay the context release to finalize 2017-10-03 14:36:19 -04:00
LICENSE
MAINTAINERS MAINTAINERS: use KVM s390x maintainers for kvm-stubs.c and kvm_s390x.h 2017-10-06 10:53:02 +02:00
Makefile build-sys: make vhost-user-scsi depend on libvhost-user.a 2017-10-10 23:31:08 +02:00
Makefile.objs build-sys: make vhost-user-scsi depend on libvhost-user.a 2017-10-10 23:31:08 +02:00
Makefile.target accel/hax: move hax-stub.c to accel/stubs/ 2017-09-19 16:20:49 +02:00
memory_ldst.inc.c exec: introduce memory_ldst.inc.c 2016-12-22 16:00:23 +01:00
memory_mapping.c dump: fix memory_mapping_filter leak 2017-06-04 18:42:55 +03:00
memory.c memory: Share special empty FlatView 2017-09-22 01:06:51 +02:00
module-common.c
monitor.c hmp: Fix unknown command for subtable 2017-10-05 10:01:21 +01:00
numa.c NUMA: Replace MAX_NODES with nb_numa_nodes in for loop 2017-09-19 16:51:33 -03:00
os-posix.c Revert "rcu: do not create thread in pthread_atfork callback" 2017-08-08 10:40:19 +02:00
os-win32.c shutdown: Add source information to SHUTDOWN and RESET 2017-05-23 13:28:17 +02:00
qapi-schema.json watchdog: Allow setting action on the fly 2017-10-02 13:09:09 +02:00
qdev-monitor.c migration: Move remaining exported functions to migration/misc.h 2017-06-13 11:00:45 +02:00
qdict-test-data.txt
qemu-bridge-helper.c all: Remove unnecessary glib.h includes 2016-06-07 18:19:24 +03:00
qemu-doc.texi qemu-options: Deprecate -nodefconfig 2017-10-09 23:21:52 -03:00
qemu-ga.texi qemu-ga: Remove stray 'q' in documentation 2016-10-28 18:17:23 +03:00
qemu-img-cmds.hx qemu-img: add --shrink flag for resize 2017-09-26 15:00:32 +02:00
qemu-img.c qemu-img: add --shrink flag for resize 2017-09-26 15:00:32 +02:00
qemu-img.texi qemu-img: add --shrink flag for resize 2017-09-26 15:00:32 +02:00
qemu-io-cmds.c qemu-io: Drop write permissions before read-only reopen 2017-09-26 14:46:23 +02:00
qemu-io.c qemu-io: Add -C for opening with copy-on-read 2017-10-06 16:28:58 +02:00
qemu-nbd.c qapi: Change data type of the FOO_lookup generated for enum FOO 2017-09-04 13:09:13 +02:00
qemu-nbd.texi nbd: Add qemu-nbd -D for human-readable description 2016-11-02 09:28:55 +01:00
qemu-option-trace.texi docs: update manpage for stderr->log rename 2017-02-13 13:38:31 +00:00
qemu-options-wrapper.h hxtool: emit Texinfo headings as @subsection 2017-01-16 17:52:35 +01:00
qemu-options.h Clean up ill-advised or unusual header guards 2016-07-12 16:20:46 +02:00
qemu-options.hx qemu-options: Deprecate -nodefconfig 2017-10-09 23:21:52 -03:00
qemu-seccomp.c seccomp: add resourcecontrol argument to command line 2017-09-15 10:15:06 +02:00
qemu-tech.texi qemu-doc: merge qemu-tech and qemu-doc 2016-10-07 10:05:54 +02:00
qemu.nsi qemu-doc: merge qemu-tech and qemu-doc 2016-10-07 10:05:54 +02:00
qemu.sasl Default to GSSAPI (Kerberos) instead of DIGEST-MD5 for SASL 2017-05-09 14:41:47 +01:00
qmp.c qmp: introduce query-memory-size-summary command 2017-09-14 15:52:10 +01:00
qtest.c qtest: Don't perform side effects inside assertion 2017-09-15 09:05:19 +02:00
README README: Add linux to macOS build info 2017-01-24 23:26:52 +03:00
replication.c replication: Introduce new APIs to do replication operation 2016-09-13 11:00:56 +01:00
replication.h replication: Introduce new APIs to do replication operation 2016-09-13 11:00:56 +01:00
rules.mak docs: create interop/ subdirectory 2017-06-15 11:18:39 +02:00
thunk.c thunk: assert nb_fields is valid 2017-07-31 13:06:39 +03:00
tpm.c qapi: Change data type of the FOO_lookup generated for enum FOO 2017-09-04 13:09:13 +02:00
trace-events memory: trace FlatView creation and destruction 2017-09-22 01:06:51 +02:00
VERSION Open 2.11 development tree 2017-08-30 23:10:38 +01:00
version.rc
vl.c vl: exit if maxcpus is negative 2017-10-09 23:21:52 -03:00

         QEMU README
         ===========

QEMU is a generic and open source machine & userspace emulator and
virtualizer.

QEMU is capable of emulating a complete machine in software without any
need for hardware virtualization support. By using dynamic translation,
it achieves very good performance. QEMU can also integrate with the Xen
and KVM hypervisors to provide emulated hardware while allowing the
hypervisor to manage the CPU. With hypervisor support, QEMU can achieve
near native performance for CPUs. When QEMU emulates CPUs directly it is
capable of running operating systems made for one machine (e.g. an ARMv7
board) on a different machine (e.g. an x86_64 PC board).

QEMU is also capable of providing userspace API virtualization for Linux
and BSD kernel interfaces. This allows binaries compiled against one
architecture ABI (e.g. the Linux PPC64 ABI) to be run on a host using a
different architecture ABI (e.g. the Linux x86_64 ABI). This does not
involve any hardware emulation, simply CPU and syscall emulation.

QEMU aims to fit into a variety of use cases. It can be invoked directly
by users wishing to have full control over its behaviour and settings.
It also aims to facilitate integration into higher level management
layers, by providing a stable command line interface and monitor API.
It is commonly invoked indirectly via the libvirt library when using
open source applications such as oVirt, OpenStack and virt-manager.

QEMU as a whole is released under the GNU General Public License,
version 2. For full licensing details, consult the LICENSE file.


Building
========

QEMU is multi-platform software intended to be buildable on all modern
Linux platforms, OS-X, Win32 (via the Mingw64 toolchain) and a variety
of other UNIX targets. The simple steps to build QEMU are:

  mkdir build
  cd build
  ../configure
  make

Additional information can also be found online via the QEMU website:

  http://qemu-project.org/Hosts/Linux
  http://qemu-project.org/Hosts/Mac
  http://qemu-project.org/Hosts/W32


Submitting patches
==================

The QEMU source code is maintained under the GIT version control system.

   git clone git://git.qemu-project.org/qemu.git

When submitting patches, the preferred approach is to use 'git
format-patch' and/or 'git send-email' to format & send the mail to the
qemu-devel@nongnu.org mailing list. All patches submitted must contain
a 'Signed-off-by' line from the author. Patches should follow the
guidelines set out in the HACKING and CODING_STYLE files.

Additional information on submitting patches can be found online via
the QEMU website

  http://qemu-project.org/Contribute/SubmitAPatch
  http://qemu-project.org/Contribute/TrivialPatches


Bug reporting
=============

The QEMU project uses Launchpad as its primary upstream bug tracker. Bugs
found when running code built from QEMU git or upstream released sources
should be reported via:

  https://bugs.launchpad.net/qemu/

If using QEMU via an operating system vendor pre-built binary package, it
is preferable to report bugs to the vendor's own bug tracker first. If
the bug is also known to affect latest upstream code, it can also be
reported via launchpad.

For additional information on bug reporting consult:

  http://qemu-project.org/Contribute/ReportABug


Contact
=======

The QEMU community can be contacted in a number of ways, with the two
main methods being email and IRC

 - qemu-devel@nongnu.org
   http://lists.nongnu.org/mailman/listinfo/qemu-devel
 - #qemu on irc.oftc.net

Information on additional methods of contacting the community can be
found online via the QEMU website:

  http://qemu-project.org/Contribute/StartHere

-- End