Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4855156194934784 Fuzzer: foozzie_js_mutation Job Type: foozzie_ignition_staging Platform Id: linux Crash Type: V8 correctness failure Crash Address: Crash State: configs: x64,fullcode:x64,ignition_staging sources: 8f855ffb Sanitizer: address (ASAN) Minimized Testcase (0.43 Kb): https://cluster-fuzz.appspot.com/download/AMIfv96hb5xWL0mC39EZsusEQUdnq8Ew_uCizNR6gM44TItDvcbmWb-2XrGrxDRGR94Kkzb7uOQ8e04l1bKDxIpPOfZ9uzZwXOTTNYbHrPrnTHaF5kO3IVoWe3xLiDUlb6_BNhuTkAmuxjPo2OIjBbkgVaC7BXxv4qJcds9lkcd9LiAZ-HGd4Z_1-S3FOSkG-3tTadEGED1mToSJ-G4zxbIrzjG0zjR0p8ORfCHxBYfYYs27F8hKrGVODJsZ8hb54YuQYrV1cBKqiZ29zahKPrGzSaWO_O7Ps_PvwIM1JjpKiQuWj8t3KcCRqDqMMJuY-XhLs4bKFWv6yURqPqAw2BvHr-LoPAatcoK0Jr4zP2O7fYLYQyW_JhHX8kvYeapDUIDM9kua0LrD-Lr0O6aMMrLjsCKBIcigyg?testcase_id=4855156194934784 Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
The following revision refers to this bug: https://chromium.googlesource.com/v8/v8.git/+/e2935640d76a5ed00378ee90ce2d9d6756812341 commit e2935640d76a5ed00378ee90ce2d9d6756812341 Author: machenbach <machenbach@chromium.org> Date: Wed Jan 11 09:45:55 2017 [foozzie] Suppress test cases using performance.now BUG= chromium:679957 NOTRY=true TBR=jarin@chromium.org,bmeurer@chromium.org Review-Url: https://codereview.chromium.org/2628813002 Cr-Commit-Position: refs/heads/master@{#42211} [modify] https://crrev.com/e2935640d76a5ed00378ee90ce2d9d6756812341/tools/foozzie/v8_suppressions.py
Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4676310267068416 Fuzzer: foozzie_js_mutation Job Type: foozzie_ignition_staging Platform Id: linux Crash Type: V8 correctness failure Crash Address: Crash State: suppression: crbug.com/679957 Sanitizer: address (ASAN) Minimized Testcase (1.36 Kb): https://cluster-fuzz.appspot.com/download/AMIfv97gBz_rg7HjLgO-lMgxAgNx-QcSP9kyOGVNstAPApSURTKvZjE1imWpPIh9ZaDo9YyZFxZHmW2rSKKh8cxVNq_c_oibwbj-LwgUtlflU2TJlHscpTsEyfS1xGKjxfGLCuHSbBikn5hzG4gHGfDGAG1KloZoh2nu1loYrWdK8yPHKsvnmfHt1od8-xlFyY1MF7nTfO0t8Fz7dE2hsqvm7mopYz2ybfzLxQ2-OGQ_wJSSpqWy9PT2ub8suYGszB398P68L8UXSDDlz6PqoOYiyf_pmBD7wZiKkq7n2yG11KSW7t7KZeET9JYD81q77l39sMgB_mPUH2eUHcszAk6_Fy5SjjThyN0kyHARFBFREFuv4rpv3vQTfpc0bMbT8irwuh8Latm-n_JzqEB5-psFkOgJio6mjw?testcase_id=4676310267068416 See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
ClusterFuzz has detected this issue as fixed in range 42210:42211. Detailed report: https://cluster-fuzz.appspot.com/testcase?key=4855156194934784 Fuzzer: foozzie_js_mutation Job Type: foozzie_ignition_staging Platform Id: linux Crash Type: V8 correctness failure Crash Address: Crash State: configs: x64,fullcode:x64,ignition_staging sources: 8f855ffb Sanitizer: address (ASAN) Fixed: V8: r42210:42211 Minimized Testcase (0.43 Kb): https://cluster-fuzz.appspot.com/download/AMIfv96hb5xWL0mC39EZsusEQUdnq8Ew_uCizNR6gM44TItDvcbmWb-2XrGrxDRGR94Kkzb7uOQ8e04l1bKDxIpPOfZ9uzZwXOTTNYbHrPrnTHaF5kO3IVoWe3xLiDUlb6_BNhuTkAmuxjPo2OIjBbkgVaC7BXxv4qJcds9lkcd9LiAZ-HGd4Z_1-S3FOSkG-3tTadEGED1mToSJ-G4zxbIrzjG0zjR0p8ORfCHxBYfYYs27F8hKrGVODJsZ8hb54YuQYrV1cBKqiZ29zahKPrGzSaWO_O7Ps_PvwIM1JjpKiQuWj8t3KcCRqDqMMJuY-XhLs4bKFWv6yURqPqAw2BvHr-LoPAatcoK0Jr4zP2O7fYLYQyW_JhHX8kvYeapDUIDM9kua0LrD-Lr0O6aMMrLjsCKBIcigyg?testcase_id=4855156194934784 See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
The following revision refers to this bug: https://chromium.googlesource.com/v8/v8.git/+/aedcbfae92a42028b3beb0d227e4c4d4ae94df55 commit aedcbfae92a42028b3beb0d227e4c4d4ae94df55 Author: Michael Achenbach <machenbach@chromium.org> Date: Mon Feb 06 12:58:58 2017 [foozzie] Mock out performance.now Also improve suppression of Math.pow precision. BUG= chromium:679957 NOTRY=true TBR=mstarzinger@chromium.org,jarin@chromium.org Change-Id: I43d0cd6f6f6d0867be9f2337990114c07c716df5 Reviewed-on: https://chromium-review.googlesource.com/438327 Reviewed-by: Michael Achenbach <machenbach@chromium.org> Commit-Queue: Michael Achenbach <machenbach@chromium.org> Cr-Commit-Position: refs/heads/master@{#42966} [modify] https://crrev.com/aedcbfae92a42028b3beb0d227e4c4d4ae94df55/tools/foozzie/v8_mock.js [modify] https://crrev.com/aedcbfae92a42028b3beb0d227e4c4d4ae94df55/tools/foozzie/v8_suppressions.js [modify] https://crrev.com/aedcbfae92a42028b3beb0d227e4c4d4ae94df55/tools/foozzie/v8_suppressions.py
Comment 1 by machenb...@chromium.org
, Jan 11 2017Status: Assigned (was: Untriaged)
Summary: performance.now() needs to be mocked out (was: V8 correctness failure in configs: x64,fullcode:x64,ignition_staging)