From: Kevin Wolf Date: Thu, 6 Mar 2014 14:47:32 +0000 (+0100) Subject: blockdev: Fix NULL pointer dereference in blockdev-add X-Git-Url: http://git.maquefel.me/?a=commitdiff_plain;h=c6e0bd9b7037937aafeb1d34ec17975a7d685bb7;p=qemu.git blockdev: Fix NULL pointer dereference in blockdev-add If aio=native, we check that cache.direct is set as well. If however cache wasn't specified at all, qemu just segfaulted. The old condition didn't make any sense anyway because it effectively only checked for the default cache mode case, but not for an explicitly set cache.direct=off mode. Signed-off-by: Kevin Wolf Reviewed-by: Benoit Canet Reviewed-by: Eric Blake --- diff --git a/blockdev.c b/blockdev.c index 561cb816e4..c3422a1d41 100644 --- a/blockdev.c +++ b/blockdev.c @@ -2283,8 +2283,10 @@ void qmp_blockdev_add(BlockdevOptions *options, Error **errp) * * For now, simply forbidding the combination for all drivers will do. */ if (options->has_aio && options->aio == BLOCKDEV_AIO_OPTIONS_NATIVE) { - bool direct = options->cache->has_direct && options->cache->direct; - if (!options->has_cache && !direct) { + bool direct = options->has_cache && + options->cache->has_direct && + options->cache->direct; + if (!direct) { error_setg(errp, "aio=native requires cache.direct=true"); goto fail; }