New issue
Advanced search Search tips

Issue 631158 link

Starred by 1 user

Issue metadata

Status: Fixed
Owner:
Closed: Jul 2016
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 1
Type: Bug



Sign in to add a comment

!info->shared_info()->is_compiled() in compiler.cc

Project Member Reported by ClusterFuzz, Jul 25 2016

Issue description

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4860760547393536

Fuzzer: mbarbella_js_mutation
Job Type: linux_asan_d8_dbg
Platform Id: linux

Crash Type: CHECK failure
Crash Address: 
Crash State:
  !info->shared_info()->is_compiled() in compiler.cc
  
Regressed: V8: r38001:38002

Minimized Testcase (0.00 Kb): https://cluster-fuzz.appspot.com/download/AMIfv978eiWcJDoOrGOff7KTNjCWsdb6mE3bqdJULCj0GmEQDQvrZei4EPicdGusvwLq3CnrbQBN30ZL4a0LbR5Az9U665_4cbyttW5bbiYGWj4A2f1aAodS7UxljWnIzl2QxgO6BlLukFPlAEGnGkVs3QsfmywYfw?testcase_id=4860760547393536

Filer: mmohammad

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
 
Owner: rmcilroy@chromium.org
Status: Assigned (was: Untriaged)
might be this is the suspected  cl ;

https://chromium.googlesource.com/v8/v8/+/a474e84181fb6b19cc8c48cab29d670bf6302ab7%5E%21/src/compiler.cc

rmcilroy@ could you please look into this. Thank you 
Status: Started (was: Assigned)
Project Member

Comment 3 by bugdroid1@chromium.org, Jul 26 2016

The following revision refers to this bug:
  https://chromium.googlesource.com/v8/v8.git/+/ae752848c8fd88a9b002fb1cc704413afa0bc897

commit ae752848c8fd88a9b002fb1cc704413afa0bc897
Author: rmcilroy <rmcilroy@chromium.org>
Date: Tue Jul 26 14:46:23 2016

[Interpreter] Fix compiler.cc to consistently check for FLAG_ignition in ShouldUseIgnition.

BUG= chromium:631158 

Review-Url: https://codereview.chromium.org/2185623002
Cr-Commit-Position: refs/heads/master@{#38058}

[modify] https://crrev.com/ae752848c8fd88a9b002fb1cc704413afa0bc897/src/compiler.cc

Status: Fixed (was: Started)
Project Member

Comment 5 by ClusterFuzz, Jul 27 2016

ClusterFuzz has detected this issue as fixed in range 38057:38058.

Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4860760547393536

Fuzzer: mbarbella_js_mutation
Job Type: linux_asan_d8_dbg
Platform Id: linux

Crash Type: CHECK failure
Crash Address: 
Crash State:
  !info->shared_info()->is_compiled() in compiler.cc
  
Regressed: V8: r38001:38002
Fixed: V8: r38057:38058

Minimized Testcase (0.00 Kb): https://cluster-fuzz.appspot.com/download/AMIfv978eiWcJDoOrGOff7KTNjCWsdb6mE3bqdJULCj0GmEQDQvrZei4EPicdGusvwLq3CnrbQBN30ZL4a0LbR5Az9U665_4cbyttW5bbiYGWj4A2f1aAodS7UxljWnIzl2QxgO6BlLukFPlAEGnGkVs3QsfmywYfw?testcase_id=4860760547393536

See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.

If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
Project Member

Comment 6 by sheriffbot@chromium.org, Nov 22 2016

Labels: -Restrict-View-EditIssue
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment