]> git.proxmox.com Git - pve-qemu-kvm.git/blame - debian/patches/extra/CVE-2016-9907-usbredir-free-vm_change_state_handler-in-usbredir-de.patch
bump version to 2.7.1-501
[pve-qemu-kvm.git] / debian / patches / extra / CVE-2016-9907-usbredir-free-vm_change_state_handler-in-usbredir-de.patch
CommitLineData
f262231e
WB
1From 5bbb994dd062eb3950d67db3c6189dab0df7ec9b Mon Sep 17 00:00:00 2001
2From: Li Qiang <liqiang6-s@360.cn>
3Date: Mon, 7 Nov 2016 21:57:46 -0800
4Subject: [PATCH 04/12] usbredir: free vm_change_state_handler in usbredir
5 destroy dispatch
6MIME-Version: 1.0
7Content-Type: text/plain; charset=UTF-8
8Content-Transfer-Encoding: 8bit
9
10In usbredir destroy dispatch function, it doesn't free the vm change
11state handler once registered in usbredir_realize function. This will
12lead a memory leak issue. This patch avoid this.
13
14Signed-off-by: Li Qiang <liqiang6-s@360.cn>
15Reviewed-by: Marc-André Lureau <marcandre.lureau@redhat.com>
16Message-id: 58216976.d0236b0a.77b99.bcd6@mx.google.com
17Signed-off-by: Gerd Hoffmann <kraxel@redhat.com>
18---
19 hw/usb/redirect.c | 5 ++++-
20 1 file changed, 4 insertions(+), 1 deletion(-)
21
22diff --git a/hw/usb/redirect.c b/hw/usb/redirect.c
23index 444672a..42aeaa4 100644
24--- a/hw/usb/redirect.c
25+++ b/hw/usb/redirect.c
26@@ -132,6 +132,7 @@ struct USBRedirDevice {
27 struct usbredirfilter_rule *filter_rules;
28 int filter_rules_count;
29 int compatible_speedmask;
30+ VMChangeStateEntry *vmstate;
31 };
32
33 #define TYPE_USB_REDIR "usb-redir"
34@@ -1409,7 +1410,8 @@ static void usbredir_realize(USBDevice *udev, Error **errp)
35 qemu_chr_add_handlers(dev->cs, usbredir_chardev_can_read,
36 usbredir_chardev_read, usbredir_chardev_event, dev);
37
38- qemu_add_vm_change_state_handler(usbredir_vm_state_change, dev);
39+ dev->vmstate =
40+ qemu_add_vm_change_state_handler(usbredir_vm_state_change, dev);
41 }
42
43 static void usbredir_cleanup_device_queues(USBRedirDevice *dev)
44@@ -1446,6 +1448,7 @@ static void usbredir_handle_destroy(USBDevice *udev)
45 }
46
47 free(dev->filter_rules);
48+ qemu_del_vm_change_state_handler(dev->vmstate);
49 }
50
51 static int usbredir_check_filter(USBRedirDevice *dev)
52--
532.1.4
54