提交 38d840e6 编写于 作者: A aurel32

linuw-user fix: read() and acct() on NULL arguments

Returning efault in these cases is not correct. Originally
proposed by Thayne Harbaugh in 2007:
http://www.mail-archive.com/qemu-devel@nongnu.org/msg14658.htmlSigned-off-by: NRiku Voipio <riku.voipio@iki.fi>
Signed-off-by: NAurelien Jarno <aurelien@aurel32.net>

git-svn-id: svn://svn.savannah.nongnu.org/qemu/trunk@6481 c046a42c-6fe2-441c-8c8c-71466251a162
上级 a516e72d
...@@ -3437,10 +3437,14 @@ abi_long do_syscall(void *cpu_env, int num, abi_long arg1, ...@@ -3437,10 +3437,14 @@ abi_long do_syscall(void *cpu_env, int num, abi_long arg1,
ret = 0; /* avoid warning */ ret = 0; /* avoid warning */
break; break;
case TARGET_NR_read: case TARGET_NR_read:
if (arg3 == 0)
ret = 0;
else {
if (!(p = lock_user(VERIFY_WRITE, arg2, arg3, 0))) if (!(p = lock_user(VERIFY_WRITE, arg2, arg3, 0)))
goto efault; goto efault;
ret = get_errno(read(arg1, p, arg3)); ret = get_errno(read(arg1, p, arg3));
unlock_user(p, arg2, ret); unlock_user(p, arg2, ret);
}
break; break;
case TARGET_NR_write: case TARGET_NR_write:
if (!(p = lock_user(VERIFY_READ, arg2, arg3, 1))) if (!(p = lock_user(VERIFY_READ, arg2, arg3, 1)))
...@@ -3941,10 +3945,14 @@ abi_long do_syscall(void *cpu_env, int num, abi_long arg1, ...@@ -3941,10 +3945,14 @@ abi_long do_syscall(void *cpu_env, int num, abi_long arg1,
goto unimplemented; goto unimplemented;
#endif #endif
case TARGET_NR_acct: case TARGET_NR_acct:
if (arg1 == 0) {
ret = get_errno(acct(NULL));
} else {
if (!(p = lock_user_string(arg1))) if (!(p = lock_user_string(arg1)))
goto efault; goto efault;
ret = get_errno(acct(path(p))); ret = get_errno(acct(path(p)));
unlock_user(p, arg1, 0); unlock_user(p, arg1, 0);
}
break; break;
#ifdef TARGET_NR_umount2 /* not on alpha */ #ifdef TARGET_NR_umount2 /* not on alpha */
case TARGET_NR_umount2: case TARGET_NR_umount2:
......
Markdown is supported
0% .
You are about to add 0 people to the discussion. Proceed with caution.
先完成此消息的编辑!
想要评论请 注册