V8 correctness failure in configs: x64,ignition:x64,ignition_eager |
||||||
Issue descriptionDetailed report: https://cluster-fuzz.appspot.com/testcase?key=5157575680327680 Fuzzer: foozzie_js_mutation Job Type: v8_foozzie Platform Id: linux Crash Type: V8 correctness failure Crash Address: Crash State: configs: x64,ignition:x64,ignition_eager sources: none Sanitizer: address (ASAN) Regressed: V8: 43144:43145 Reproducer Testcase: https://cluster-fuzz.appspot.com/download/AMIfv97iPeZpikYJ4d63O61NlhiyZlt5fxLahAV9gt8k9pIYX8M4fyYPE3mtQlrAKdIXh9BP32w3ZZdlzED3KrDJjxLNU2DmZsGz3EnPU6BM2-8Rd3OK5uSPBIIHK2WT0Fh3j63Y3ZP4w7eb-l4nrr_3USgqVdl8Gu8OdeDhT1CPM9UPaqHyh-J9UkoWfav8mDDIDu3Kz6DipOYGdlO1cd_cw0tKSd_8wDrLNKAog6YM9Wxcd1puo3F9TJAGmdY4DNN7hpHmeu1eYZOZ-EtJ-MlK6_d5PnWEsorSODLklLKQ2YajIQyo2JKlqm18MLAc8I7mZ0uu1wZLL7UINRIGjvc8L3MJLR608tIkbnHPQrxCOEfxjjk3_X99Okikcc0WvkGqkd81nf4OJp1exhYnRj8XFrEDJFFyww?testcase_id=5157575680327680 Issue filed automatically. See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information.
,
Mar 3 2017
The following revision refers to this bug: https://chromium.googlesource.com/v8/v8.git/+/ddeb6e1d5952b76b9a65657b5a4057fde70f9142 commit ddeb6e1d5952b76b9a65657b5a4057fde70f9142 Author: Michael Achenbach <machenbach@chromium.org> Date: Fri Mar 03 10:04:30 2017 [foozzie] Blacklist some files for ignition_eager BUG=chromium:691589,chromium:691587 NOTRY=true TBR=marja@chromium.org Change-Id: I769af6472caa38f0a5d383cb8d5e30540f7c988a Reviewed-on: https://chromium-review.googlesource.com/449713 Reviewed-by: Michael Achenbach <machenbach@chromium.org> Reviewed-by: Marja Hölttä <marja@chromium.org> Commit-Queue: Michael Achenbach <machenbach@chromium.org> Cr-Commit-Position: refs/heads/master@{#43575} [modify] https://crrev.com/ddeb6e1d5952b76b9a65657b5a4057fde70f9142/tools/foozzie/v8_suppressions.py
,
May 16 2017
ClusterFuzz has detected this issue as fixed in range 45316:45317. Detailed report: https://clusterfuzz.com/testcase?key=5157575680327680 Fuzzer: foozzie_js_mutation Job Type: v8_foozzie Platform Id: linux Crash Type: V8 correctness failure Crash Address: Crash State: configs: x64,ignition:x64,ignition_eager sources: none Sanitizer: address (ASAN) Regressed: V8: 43144:43145 Fixed: V8: 45316:45317 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5157575680327680 See https://dev.chromium.org/Home/chromium-security/bugs/reproducing-clusterfuzz-bugs for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
May 16 2017
ClusterFuzz testcase 5157575680327680 is verified as fixed, so closing issue. If this is incorrect, please add ClusterFuzz-Wrong label and re-open the issue.
,
May 16 2017
,
Sep 18 2017
We have made a bunch of changes on ClusterFuzz side, so resetting ClusterFuzz-Wrong label.
,
Oct 19 2017
ClusterFuzz has detected this issue as fixed in range 48714:48715. Detailed report: https://clusterfuzz.com/testcase?key=5157575680327680 Fuzzer: foozzie_js_mutation Job Type: v8_foozzie Platform Id: linux Crash Type: V8 correctness failure Crash Address: Crash State: configs: x64,ignition:x64,ignition_eager sources: none Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=v8_foozzie&range=43144:43145 Fixed: https://clusterfuzz.com/revisions?job=v8_foozzie&range=48714:48715 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5157575680327680 See https://github.com/google/clusterfuzz-tools for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Oct 19 2017
The detected fixed commit doesn't make the slightest sense. Guess the issue is flaky.
,
Oct 19 2017
ClusterFuzz has detected this issue as fixed in range 48714:48715. Detailed report: https://clusterfuzz.com/testcase?key=5157575680327680 Fuzzer: foozzie_js_mutation Job Type: v8_foozzie Platform Id: linux Crash Type: V8 correctness failure Crash Address: Crash State: configs: x64,ignition:x64,ignition_eager sources: none Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=v8_foozzie&range=43144:43145 Fixed: https://clusterfuzz.com/revisions?job=v8_foozzie&range=48714:48715 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5157575680327680 See https://github.com/google/clusterfuzz-tools for more information. If you suspect that the result above is incorrect, try re-doing that job on the test case report page.
,
Oct 19 2017
Nah, it was me, broke the fuzzer infra. The issue is still there.
,
Feb 24 2018
Removing v8-foozzie-failure label, because eager-lazy testing has been removed from correctness-fuzzer experiments. |
||||||
►
Sign in to add a comment |
||||||
Comment 1 by machenb...@chromium.org
, Feb 14 2017Status: Assigned (was: Untriaged)