From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from eggs.gnu.org ([2001:4830:134:3::10]:47616) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1cBRII-00016N-Bx for qemu-devel@nongnu.org; Mon, 28 Nov 2016 14:08:54 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1cBRIE-0001DW-Av for qemu-devel@nongnu.org; Mon, 28 Nov 2016 14:08:50 -0500 Received: from mx1.redhat.com ([209.132.183.28]:43486) by eggs.gnu.org with esmtps (TLS1.0:DHE_RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1cBRIE-0001DF-4J for qemu-devel@nongnu.org; Mon, 28 Nov 2016 14:08:46 -0500 From: P J P Date: Tue, 29 Nov 2016 00:38:39 +0530 Message-Id: <1480360119-12316-1-git-send-email-ppandit@redhat.com> Subject: [Qemu-devel] [PATCH] net: mcf: check receive buffer size register value List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , To: Qemu Developers Cc: Jason Wang , Wjjzhang , Prasad J Pandit From: Prasad J Pandit ColdFire Fast Ethernet Controller uses a receive buffer size register(EMRBR) to hold maximum size of all receive buffers. It is set by a user before any operation. If it was set to be zero, ColdFire emulator would go into an infinite loop while receiving data in mcf_fec_receive. Add check to avoid it. Reported-by: Wjjzhang Signed-off-by: Prasad J Pandit --- hw/net/mcf_fec.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/hw/net/mcf_fec.c b/hw/net/mcf_fec.c index 0ee8ad9..13631e0 100644 --- a/hw/net/mcf_fec.c +++ b/hw/net/mcf_fec.c @@ -392,7 +392,7 @@ static void mcf_fec_write(void *opaque, hwaddr addr, s->tx_descriptor = s->etdsr; break; case 0x188: - s->emrbr = value & 0x7f0; + s->emrbr = value > 0 ? value & 0x7F0 : 0x7F0; break; default: hw_error("mcf_fec_write Bad address 0x%x\n", (int)addr); -- 2.7.4