From mboxrd@z Thu Jan 1 00:00:00 1970 From: Marcelo Tosatti Subject: Re: [PATCH 2/3] KVM: Emulate MSI-X table in kernel Date: Wed, 2 Feb 2011 23:05:55 -0200 Message-ID: <20110203010555.GA20541@amt.cnet> References: <1296364276-2351-1-git-send-email-sheng@linux.intel.com> <1296364276-2351-3-git-send-email-sheng@linux.intel.com> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Cc: Avi Kivity , "Michael S. Tsirkin" , kvm@vger.kernel.org, Alex Williamson To: Sheng Yang Return-path: Received: from mx1.redhat.com ([209.132.183.28]:50057 "EHLO mx1.redhat.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1750930Ab1BCBGI (ORCPT ); Wed, 2 Feb 2011 20:06:08 -0500 Content-Disposition: inline In-Reply-To: <1296364276-2351-3-git-send-email-sheng@linux.intel.com> Sender: kvm-owner@vger.kernel.org List-ID: On Sun, Jan 30, 2011 at 01:11:15PM +0800, Sheng Yang wrote: > Then we can support mask bit operation of assigned devices now. > > Signed-off-by: Sheng Yang > +int kvm_vm_ioctl_register_msix_mmio(struct kvm *kvm, > + struct kvm_msix_mmio_user *mmio_user) > +{ > + struct kvm_msix_mmio_dev *mmio_dev = &kvm->msix_mmio_dev; > + struct kvm_msix_mmio *mmio = NULL; > + int r = 0, i; > + > + mutex_lock(&mmio_dev->lock); > + for (i = 0; i < mmio_dev->mmio_nr; i++) { > + if (mmio_dev->mmio[i].dev_id == mmio_user->dev_id && > + (mmio_dev->mmio[i].type & KVM_MSIX_MMIO_TYPE_DEV_MASK) == > + (mmio_user->type & KVM_MSIX_MMIO_TYPE_DEV_MASK)) { > + mmio = &mmio_dev->mmio[i]; > + if (mmio->max_entries_nr != mmio_user->max_entries_nr) { > + r = -EINVAL; > + goto out; > + } > + break; > + } Why allow this ioctl to succeed if there's an entry already present? This case is broken as mmio_dev->mmio_nr is increased below. PCI bits must be reviewed...