<feed xmlns='http://www.w3.org/2005/Atom'>
<title>qemu/scripts/coverity-scan, branch master</title>
<subtitle>QEMU development tree</subtitle>
<id>https://git.zx2c4.com/qemu/atom/scripts/coverity-scan?h=master</id>
<link rel='self' href='https://git.zx2c4.com/qemu/atom/scripts/coverity-scan?h=master'/>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/qemu/'/>
<updated>2024-06-21T13:01:59Z</updated>
<entry>
<title>scripts/coverity-scan/COMPONENTS.md: Include libqmp in testlibs</title>
<updated>2024-06-21T13:01:59Z</updated>
<author>
<name>Peter Maydell</name>
<email>peter.maydell@linaro.org</email>
</author>
<published>2024-06-18T15:22:22Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/qemu/commit/?id=5d173f30f6828a1a4e6133eb324cc4ab0277a06d'/>
<id>urn:sha1:5d173f30f6828a1a4e6133eb324cc4ab0277a06d</id>
<content type='text'>
Add libqmp to the testlibs component.

Signed-off-by: Peter Maydell &lt;peter.maydell@linaro.org&gt;
Reviewed-by: Philippe Mathieu-Daudé &lt;philmd@linaro.org&gt;
Message-id: 20240604145934.1230583-6-peter.maydell@linaro.org
</content>
</entry>
<entry>
<title>scripts/coverity-scan/COMPONENTS.md: Fix monitor component</title>
<updated>2024-06-21T13:01:59Z</updated>
<author>
<name>Peter Maydell</name>
<email>peter.maydell@linaro.org</email>
</author>
<published>2024-06-18T15:22:22Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/qemu/commit/?id=8e055eab4fea581644cd6df28984f1a2a5fde08e'/>
<id>urn:sha1:8e055eab4fea581644cd6df28984f1a2a5fde08e</id>
<content type='text'>
Update the 'monitor' component:
 * qapi/ and monitor/ are now subdirectories
 * add job-qmp.c

Signed-off-by: Peter Maydell &lt;peter.maydell@linaro.org&gt;
Reviewed-by: Philippe Mathieu-Daudé &lt;philmd@linaro.org&gt;
Message-id: 20240604145934.1230583-5-peter.maydell@linaro.org
</content>
</entry>
<entry>
<title>scripts/coverity-scan/COMPONENTS.md: Add crypto headers in host/include to the crypto component</title>
<updated>2024-06-21T13:01:59Z</updated>
<author>
<name>Peter Maydell</name>
<email>peter.maydell@linaro.org</email>
</author>
<published>2024-06-18T15:22:22Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/qemu/commit/?id=9c43c934d1a998d46a4a15675950f0c5eccb6b4c'/>
<id>urn:sha1:9c43c934d1a998d46a4a15675950f0c5eccb6b4c</id>
<content type='text'>
host/include/*/host/crypto/ are relatively new headers; add them
to the crypto component.

Signed-off-by: Peter Maydell &lt;peter.maydell@linaro.org&gt;
Reviewed-by: Philippe Mathieu-Daudé &lt;philmd@linaro.org&gt;
Message-id: 20240604145934.1230583-4-peter.maydell@linaro.org
</content>
</entry>
<entry>
<title>scripts/coverity-scan/COMPONENTS.md: Fix 'char' component</title>
<updated>2024-06-21T13:01:59Z</updated>
<author>
<name>Peter Maydell</name>
<email>peter.maydell@linaro.org</email>
</author>
<published>2024-06-18T15:22:21Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/qemu/commit/?id=7966cf71d36560024f07863fef26e265b2941f25'/>
<id>urn:sha1:7966cf71d36560024f07863fef26e265b2941f25</id>
<content type='text'>
The 'char' component:
 * includes the no-longer-present qemu-char.c, which has been
   long since split into the chardev/ backend code
 * also includes the hw/char devices

Split it into two components:
 * char is the hw/char devices
 * chardev is the chardev backends
with regexes matching our current sources.

Signed-off-by: Peter Maydell &lt;peter.maydell@linaro.org&gt;
Reviewed-by: Philippe Mathieu-Daudé &lt;philmd@linaro.org&gt;
Message-id: 20240604145934.1230583-3-peter.maydell@linaro.org
</content>
</entry>
<entry>
<title>scripts/coverity-scan/COMPONENTS.md: Update paths to match gitlab CI</title>
<updated>2024-06-21T13:01:59Z</updated>
<author>
<name>Peter Maydell</name>
<email>peter.maydell@linaro.org</email>
</author>
<published>2024-06-18T15:22:21Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/qemu/commit/?id=057f7680f4ed1cc27a0520c0628bfb94f850c56a'/>
<id>urn:sha1:057f7680f4ed1cc27a0520c0628bfb94f850c56a</id>
<content type='text'>
Since commit 83aa1baa069c we have been running the build for Coverity
Scan as a Gitlab CI job, rather than the old setup where it was run
on a local developer's machine.  This is working well, but the
absolute paths of files are different for the Gitlab CI job, which
means that the regexes we use to identify Coverity components no
longer work. With Gitlab CI builds the file paths are of the form
 /builds/qemu-project/qemu/accel/kvm/kvm-all.c

rather than the old
 /qemu/accel/kvm/kvm-all.c

and our regexes all don't match.

Update all the regexes to start with .*/qemu/ . This will hopefully
avoid the need to change them again in future if the build path
changes again.

This change was made with a search-and-replace of (/qemu)?
to .*/qemu .

Signed-off-by: Peter Maydell &lt;peter.maydell@linaro.org&gt;
Reviewed-by: Philippe Mathieu-Daudé &lt;philmd@linaro.org&gt;
Message-id: 20240604145934.1230583-2-peter.maydell@linaro.org
</content>
</entry>
<entry>
<title>coverity: Update user emulation regexp</title>
<updated>2024-05-03T15:21:20Z</updated>
<author>
<name>Philippe Mathieu-Daudé</name>
<email>philmd@linaro.org</email>
</author>
<published>2024-03-22T10:13:22Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/qemu/commit/?id=bf0bcac890cc7b4c9e52c9e94817897ce73b69a8'/>
<id>urn:sha1:bf0bcac890cc7b4c9e52c9e94817897ce73b69a8</id>
<content type='text'>
All user emulation headers are now under include/user/.

Signed-off-by: Philippe Mathieu-Daudé &lt;philmd@linaro.org&gt;
Reviewed-by: Richard Henderson &lt;richard.henderson@linaro.org&gt;
Message-Id: &lt;20240428221450.26460-3-philmd@linaro.org&gt;
</content>
</entry>
<entry>
<title>target/nios2: Remove the deprecated Nios II target</title>
<updated>2024-04-24T14:03:38Z</updated>
<author>
<name>Philippe Mathieu-Daudé</name>
<email>philmd@linaro.org</email>
</author>
<published>2024-03-27T11:10:58Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/qemu/commit/?id=6c3014858c4c0024dd0560f08a6eda0f92f658d6'/>
<id>urn:sha1:6c3014858c4c0024dd0560f08a6eda0f92f658d6</id>
<content type='text'>
The Nios II target is deprecated since v8.2 in commit 9997771bc1
("target/nios2: Deprecate the Nios II architecture").

Remove:
- Buildsys / CI infra
- User emulation
- System emulation (10m50-ghrd &amp; nios2-generic-nommu machines)
- Tests

Signed-off-by: Philippe Mathieu-Daudé &lt;philmd@linaro.org&gt;
Reviewed-by: Richard Henderson &lt;richard.henderson@linaro.org&gt;
Acked-by: Marek Vasut &lt;marex@denx.de&gt;
Message-Id: &lt;20240327144806.11319-3-philmd@linaro.org&gt;
</content>
</entry>
<entry>
<title>run-coverity-scan: add --check-upload-only option</title>
<updated>2024-03-08T18:08:23Z</updated>
<author>
<name>Paolo Bonzini</name>
<email>pbonzini@redhat.com</email>
</author>
<published>2024-03-04T18:06:57Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/qemu/commit/?id=2f3e5e4c08c43daeec144adeeae9138176039b60'/>
<id>urn:sha1:2f3e5e4c08c43daeec144adeeae9138176039b60</id>
<content type='text'>
Add an option to check if upload is permitted without actually
attempting a build.  This can be useful to add a third outcome
beyond success and failure---namely, a CI job can self-cancel
if the uploading quota has been reached.

There is a small change here in that a failure to do the upload
check changes the exit code from 1 to 99.  99 was chosen because
it is what Autotools and Meson use to represent a problem in the
setup (as opposed to a failure in the test).

Reviewed-by: Peter Maydell &lt;peter.maydell@linaro.org&gt;
Signed-off-by: Paolo Bonzini &lt;pbonzini@redhat.com&gt;
</content>
</entry>
<entry>
<title>scripts: adjust url to Coverity tools</title>
<updated>2023-11-24T15:21:55Z</updated>
<author>
<name>Paolo Bonzini</name>
<email>pbonzini@redhat.com</email>
</author>
<published>2023-11-20T21:04:31Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/qemu/commit/?id=81a541e9f0838753d06d61b026688bea1eba7c0b'/>
<id>urn:sha1:81a541e9f0838753d06d61b026688bea1eba7c0b</id>
<content type='text'>
The URL to the Coverity tools download has changed; the old one points
to an obsolete version that is not supported anymore.  Adjust to point
to the correct and supported tools.

Suggested-by: Peter Maydell &lt;peter.maydell@linaro.org&gt;
Signed-off-by: Paolo Bonzini &lt;pbonzini@redhat.com&gt;
</content>
</entry>
<entry>
<title>coverity: physmem: use simple assertions instead of modelling</title>
<updated>2023-11-24T11:07:47Z</updated>
<author>
<name>Vladimir Sementsov-Ogievskiy</name>
<email>vsementsov@yandex-team.ru</email>
</author>
<published>2023-10-05T14:03:26Z</published>
<link rel='alternate' type='text/html' href='https://git.zx2c4.com/qemu/commit/?id=adff55b520ef9ad2907a91409b152220c1ba8051'/>
<id>urn:sha1:adff55b520ef9ad2907a91409b152220c1ba8051</id>
<content type='text'>
Unfortunately Coverity doesn't follow the logic aroung "len" and "l"
variables in stacks finishing with flatview_{read,write}_continue() and
generate a lot of OVERRUN false-positives. When small buffer (2 or 4
bytes) is passed to mem read/write path, Coverity assumes the worst
case of sz=8 in stn_he_p()/ldn_he_p() (defined in
include/qemu/bswap.h), and reports buffer overrun.

To silence these false-positives we have model functions, which hide
real logic from Coverity.

However, it turned out that these new two assertions are enough to
quiet Coverity.

Assertions are better than hiding the logic, so let's drop the
modelling and move to assertions for memory r/w call stacks.

After patch, the sequence

 cov-make-library --output-file /tmp/master.xmldb \
    scripts/coverity-scan/model.c
 cov-build --dir ~/covtmp/master make -j9
 cov-analyze --user-model-file /tmp/master.xmldb \
    --dir ~/covtmp/master --all --strip-path "$(pwd)
 cov-format-errors --dir ~/covtmp/master \
    --html-output ~/covtmp/master_html_report

Generate for me the same big set of CIDs excepept for 6 disappeared (so
it becomes even better).

Signed-off-by: Vladimir Sementsov-Ogievskiy &lt;vsementsov@yandex-team.ru&gt;
Acked-by: David Hildenbrand &lt;david@redhat.com&gt;
Message-ID: &lt;20231005140326.332830-1-vsementsov@yandex-team.ru&gt;
Signed-off-by: Paolo Bonzini &lt;pbonzini@redhat.com&gt;
</content>
</entry>
</feed>
