From: Kevin Wolf Date: Mon, 31 Oct 2011 10:49:21 +0000 (+0100) Subject: qemu-io: Fix multiwrite_f error handling X-Git-Tag: v1.0-rc1~9^2~9 X-Git-Url: http://git.ipfire.org/?a=commitdiff_plain;h=67403dbba76fb294fb3a2317227f4b77037145cc;p=thirdparty%2Fqemu.git qemu-io: Fix multiwrite_f error handling Without this fix, some qiovs can be leaked if an error occurs. Also a semicolon at the end of the command line would make the code walk beyond the end of argv. Signed-off-by: Kevin Wolf --- diff --git a/qemu-io.c b/qemu-io.c index 1c49d447aa1..de26422fcfb 100644 --- a/qemu-io.c +++ b/qemu-io.c @@ -960,21 +960,21 @@ static int multiwrite_f(int argc, char **argv) buf = g_malloc0(nr_reqs * sizeof(*buf)); qiovs = g_malloc(nr_reqs * sizeof(*qiovs)); - for (i = 0; i < nr_reqs; i++) { + for (i = 0; i < nr_reqs && optind < argc; i++) { int j; /* Read the offset of the request */ offset = cvtnum(argv[optind]); if (offset < 0) { printf("non-numeric offset argument -- %s\n", argv[optind]); - return 0; + goto out; } optind++; if (offset & 0x1ff) { printf("offset %lld is not sector aligned\n", (long long)offset); - return 0; + goto out; } if (i == 0) { @@ -1005,6 +1005,9 @@ static int multiwrite_f(int argc, char **argv) pattern++; } + /* If there were empty requests at the end, ignore them */ + nr_reqs = i; + gettimeofday(&t1, NULL); cnt = do_aio_multiwrite(reqs, nr_reqs, &total); gettimeofday(&t2, NULL);