[Webkit-unassigned] [Bug 30906] New: [V8] Out-of-memory crash in isolated worlds

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Thu Oct 29 07:58:22 PDT 2009


https://bugs.webkit.org/show_bug.cgi?id=30906

           Summary: [V8] Out-of-memory crash in isolated worlds
           Product: WebKit
           Version: 528+ (Nightly build)
          Platform: All
        OS/Version: All
            Status: NEW
          Severity: Normal
          Priority: P2
         Component: WebCore JavaScript
        AssignedTo: webkit-unassigned at lists.webkit.org
        ReportedBy: abarth at webkit.org


----------------------------
*        Crash Trace       *
----------------------------
                     [api.cc:435] - v8::Context::Enter()
         [v8isolatedworld.cpp:63] -
WebCore::V8IsolatedWorld::V8IsolatedWorld(WebCore::V8Proxy *,int)
                [v8proxy.cpp:286] -
WebCore::V8Proxy::evaluateInIsolatedWorld(int,WTF::Vector const &,int)
           [webframe_impl.cc:644] -
WebFrameImpl::executeScriptInIsolatedWorld(int,WebKit::WebScriptSource const
*,unsigned int,int)
       [user_script_slave.cc:192] -
UserScriptSlave::InjectScripts(WebKit::WebFrame *,UserScript::RunLocation)
            [render_view.cc:2232] -
RenderView::didFinishDocumentLoad(WebKit::WebFrame *)
[webframeloaderclient_impl.cc:312] -
WebFrameLoaderClient::dispatchDidFinishDocumentLoad()
           [frameloader.cpp:1044] - WebCore::FrameLoader::finishedParsing()
            [frameloader.cpp:544] -
WebCore::FrameLoader::stopLoading(WebCore::UnloadEventPolicy,WebCore::DatabasePolicy)
         [documentloader.cpp:276] -
WebCore::DocumentLoader::stopLoading(WebCore::DatabasePolicy)
           [frameloader.cpp:2235] -
WebCore::FrameLoader::stopAllLoaders(WebCore::DatabasePolicy)
           [frameloader.cpp:3069] - WebCore::FrameLoader::frameDetached()
   [htmlframeownerelement.cpp:45] -
WebCore::HTMLFrameOwnerElement::willRemove()
          [containernode.cpp:282] - WebCore::ContainerNode::willRemove()
          [containernode.cpp:296] - WebCore::willRemoveChild
          [containernode.cpp:323] -
WebCore::ContainerNode::removeChild(WebCore::Node *,int &)
          [containernode.cpp:192] -
WebCore::ContainerNode::replaceChild(WTF::PassRefPtr,WebCore::Node *,int
&,bool)
          [v8htmlelement.cpp:214] -
WebCore::HTMLElementInternal::outerHTMLAttrSetter

-- 
Configure bugmail: https://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.



More information about the webkit-unassigned mailing list