Hi Mark, On 210316 2330, Mark Cave-Ayland wrote: > When about to execute a SCSI command, ensure that cmdfifo is not empty and > current_dev is non-NULL. This can happen if the guest tries to execute a TI > (Transfer Information) command without issuing one of the select commands > first. > > Buglink: https://bugs.launchpad.net/qemu/+bug/1910723
^ Can't reproduce this one anymore > Buglink: https://bugs.launchpad.net/qemu/+bug/1909247 However, this still seems to cause a UAF: https://bugs.launchpad.net/qemu/+bug/1909247/comments/6 -Alex > Signed-off-by: Mark Cave-Ayland <mark.cave-ayl...@ilande.co.uk> > --- > hw/scsi/esp.c | 3 +++ > 1 file changed, 3 insertions(+)