* Vladimir Sementsov-Ogievskiy (vsement...@virtuozzo.com) wrote:
> hmp_savevm calls qemu_savevm_state(f), which sets to_dst_file=f in
> global migration state. Then hmp_savevm closes f (g_free called).
>
> Next access to to_dst_file in migration state (for example,
> qmp_migrate_set_speed) will us
* Vladimir Sementsov-Ogievskiy (vsement...@virtuozzo.com) wrote:
> hmp_savevm calls qemu_savevm_state(f), which sets to_dst_file=f in
> global migration state. Then hmp_savevm closes f (g_free called).
>
> Next access to to_dst_file in migration state (for example,
> qmp_migrate_set_speed) will us
hmp_savevm calls qemu_savevm_state(f), which sets to_dst_file=f in
global migration state. Then hmp_savevm closes f (g_free called).
Next access to to_dst_file in migration state (for example,
qmp_migrate_set_speed) will use it after it was freed.
Signed-off-by: Vladimir Sementsov-Ogievskiy
---