!shared->HasBytecodeArray() in compiler.cc |
|||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=4547798139928576 Fuzzer: mbarbella_js_mutation Job Type: linux_asan_d8_ignition_dbg Platform Id: linux Crash Type: CHECK failure Crash Address: Crash State: !shared->HasBytecodeArray() in compiler.cc Regressed: V8: r38647:38648 Minimized Testcase (0.77 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95FOi2-318MJVMQ9Cu2ivwhKYBtlutgQfvz4cTwoGbHFS4vAJnojBALYAnYubIdmnZK0pAa2rUdgm2hF0eaysxNL_4dfkd4TG8YAALZrznu_a8gppGqkVVL2zOx8INaqv2pTD2xpAEMDDwX3eC97WENO0Xb1w?testcase_id=4547798139928576 Issue manually filed by: mstarzinger See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Aug 22 2016
The following revision refers to this bug: https://chromium.googlesource.com/v8/v8.git/+/a311bfa693db5590a5f221e5ea4dc7dbd0554463 commit a311bfa693db5590a5f221e5ea4dc7dbd0554463 Author: mstarzinger <mstarzinger@chromium.org> Date: Mon Aug 22 11:29:25 2016 [compiler] Fix uncommon CompileOptimized fallback. This fixes the uncommon fallback when Compiler::CompileOptimized fails creating optimized code and also the underlying SharedFunctionInfo is not compiled. We make sure not to uselessly regenerate the bytecode. R=rmcilroy@chromium.org BUG= chromium:639753 Review-Url: https://codereview.chromium.org/2261123002 Cr-Commit-Position: refs/heads/master@{#38776} [modify] https://crrev.com/a311bfa693db5590a5f221e5ea4dc7dbd0554463/src/compiler.cc
,
Aug 22 2016
,
Aug 22 2016
ClusterFuzz has detected this issue as fixed in range 38775:38776. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4547798139928576 Fuzzer: mbarbella_js_mutation Job Type: linux_asan_d8_ignition_dbg Platform Id: linux Crash Type: CHECK failure Crash Address: Crash State: !shared->HasBytecodeArray() in compiler.cc Regressed: V8: r38647:38648 Fixed: V8: r38775:38776 Minimized Testcase (0.77 Kb): https://cluster-fuzz.appspot.com/download/AMIfv95FOi2-318MJVMQ9Cu2ivwhKYBtlutgQfvz4cTwoGbHFS4vAJnojBALYAnYubIdmnZK0pAa2rUdgm2hF0eaysxNL_4dfkd4TG8YAALZrznu_a8gppGqkVVL2zOx8INaqv2pTD2xpAEMDDwX3eC97WENO0Xb1w?testcase_id=4547798139928576 See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Nov 22 2016
Removing EditIssue view restrictions from ClusterFuzz filed bugs. If you believe that this issue should still be restricted, please reapply the label. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
|||
►
Sign in to add a comment |
|||
Comment 1 by mstarzinger@chromium.org
, Aug 22 2016Status: Assigned (was: Untriaged)