V8 correctness failure in configs: x64,ignition_turbo_opt:x64,ignition_turbo_opt_eager |
|||||
Issue descriptionDetailed report: https://clusterfuzz.com/testcase?key=5282276643700736 Fuzzer: foozzie_js_mutation Job Type: v8_foozzie Platform Id: linux Crash Type: V8 correctness failure Crash Address: Crash State: configs: x64,ignition_turbo_opt:x64,ignition_turbo_opt_eager sources: 770 Sanitizer: address (ASAN) Regressed: https://clusterfuzz.com/revisions?job=v8_foozzie&range=47435:47436 Reproducer Testcase: https://clusterfuzz.com/download?testcase_id=5282276643700736 Issue filed automatically. See https://github.com/google/clusterfuzz-tools for more information.
,
Dec 15 2017
The difference appears to be in error messages: # Difference: - /mnt/scratch0/clusterfuzz/slave-bot/inputs/fuzzer-testcases/d4965d4961e1ee8f70185a462d26173bfuzz-06475.js:7: TypeError: Cannot read property 'Symbol(Symbol.iterator)' of (intermediate value) + /mnt/scratch0/clusterfuzz/slave-bot/inputs/fuzzer-testcases/d4965d4961e1ee8f70185a462d26173bfuzz-06475.js:7: TypeError: Cannot read property 'Symbol(Symbol.iterator)' of (intermediate value)(intermediate value) Still would be nice to fix, but seems of lower priority.
,
Dec 19 2017
This is a duplicate. Can't find the original in the list right now. One of those: https://bugs.chromium.org/p/chromium/issues/list?can=2&q=label:v8-foozzie-failure&sort=-modified+-pri&colspec=ID%20Pri%20M%20Stars%20ReleaseBlock%20Component%20Status%20Owner%20Summary%20OS%20Modified
,
Dec 19 2017
Actually, I take this to figure out how to suppress the phrase (intermediate value)(intermediate value) in the output.
,
Jan 8 2018
,
Jan 8 2018
Issue 793670 has been merged into this issue.
,
Jan 8 2018
Issue 798556 has been merged into this issue.
,
Feb 24 2018
,
Mar 3 2018
ClusterFuzz testcase 4819218100125696 is still reproducing on tip-of-tree build (trunk). If this testcase was not reproducible locally or unworkable, ignore this notification and we will file another bug soon with hopefully a better and workable testcase. Otherwise, if this is not intended to be fixed (e.g. this is an intentional crash), please add ClusterFuzz-Ignore label to prevent future bug filing with similar crash stacktrace. |
|||||
►
Sign in to add a comment |
|||||
Comment 1 by ClusterFuzz
, Dec 15 2017Owner: adamk@chromium.org
Status: Assigned (was: Untriaged)