| Summary: | dev-qt/qtwayland-5.15.10: use after free memory corruption (from 0027-Reduce-memory-leakage.patch) | ||
|---|---|---|---|
| Product: | Gentoo Linux | Reporter: | Михаил <spike> |
| Component: | Current packages | Assignee: | Qt Bug Alias <qt> |
| Status: | RESOLVED FIXED | ||
| Severity: | normal | CC: | sam |
| Priority: | Normal | ||
| Version: | unspecified | ||
| Hardware: | All | ||
| OS: | Linux | ||
| See Also: |
https://codereview.qt-project.org/c/qt/qtwayland/+/471416 https://invent.kde.org/qt/qt/qtwayland/-/merge_requests/73 https://bugs.gentoo.org/show_bug.cgi?id=910416 |
||
| Whiteboard: | |||
| Package list: | Runtime testing required: | --- | |
|
Description
Михаил
2023-07-14 06:37:14 UTC
Thanks. asturm is away, so I'll handle it. Fixed upstream in: commit a76bf824fcd1cc3789f0d3454a0423c0241d9718 Author: David Redondo <qt@david-redondo.de> Date: Tue Apr 11 14:27:27 2023 +0200 Destroy frame queue before display wl_event_queue_destroy accesses the display. Found by running a test under valgrind. Pick-to: 6.5 Change-Id: Ic89cbd3b6e98b4fc9561b0e63b5fab4886a1ec50 Reviewed-by: David Edmundson <davidedmundson@kde.org> i.e. https://codereview.qt-project.org/c/qt/qtwayland/+/471416. I'll get this backported in Qt5PatchCollection first. Qt5PatchCollection backport: https://invent.kde.org/qt/qt/qtwayland/-/merge_requests/73 The bug has been closed via the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=efca1f2c0288304eb5cc06500d01d9847da48dc7 commit efca1f2c0288304eb5cc06500d01d9847da48dc7 Author: Sam James <sam@gentoo.org> AuthorDate: 2023-07-14 07:29:04 +0000 Commit: Sam James <sam@gentoo.org> CommitDate: 2023-07-14 07:29:41 +0000 dev-qt/qtwayland: backport use-after-free fix to 5.15.10-r1 Closes: https://bugs.gentoo.org/910315 Signed-off-by: Sam James <sam@gentoo.org> ....15.10-Destroy-frame-queue-before-display.patch | 34 +++++++++++++ dev-qt/qtwayland/qtwayland-5.15.10-r1.ebuild | 57 ++++++++++++++++++++++ 2 files changed, 91 insertions(+) Many thanks for the report and analysis! The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=a7f4aecbf52c48a09536a13e85122ddae60613e4 commit a7f4aecbf52c48a09536a13e85122ddae60613e4 Author: Sam James <sam@gentoo.org> AuthorDate: 2023-07-14 07:31:09 +0000 Commit: Sam James <sam@gentoo.org> CommitDate: 2023-07-14 07:31:09 +0000 dev-qt/qtwayland: throw in some more detail to patch description I've put this in the MR but not in the commit message for the MR because I'm not sure they want commentary there. Bug: https://bugs.gentoo.org/910315 Signed-off-by: Sam James <sam@gentoo.org> .../qtwayland-5.15.10-Destroy-frame-queue-before-display.patch | 9 +++++++++ 1 file changed, 9 insertions(+) |