[Webkit-unassigned] [Bug 234004] Crash issue observed in JIT operationOptimize method

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Sun Feb 13 04:16:55 PST 2022


https://bugs.webkit.org/show_bug.cgi?id=234004

Bharanitharan <vasubharani96 at gmail.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
           Priority|P2                          |P1
           Severity|Major                       |Blocker

--- Comment #8 from Bharanitharan <vasubharani96 at gmail.com> ---
(In reply to Bharanitharan from comment #4)
> (In reply to Smoley from comment #2)
> > Thanks for filing, can you please provide a test case or a crash log?
> 
> Ok, Thanks for your kind reply, I will share it by tomorrow.


We have attached the crash log for your reference:
In crash issue observed case we have faced the below prints are continuously running so could you please help to find the root cause of this issue.

JITInlines.h 157> Entry appendCallWithExceptionCheck
AssemblyHelpers.cpp 389> Entry emitExceptionCheck 
AssemblyHelpers.cpp 319> Entry callExceptionFuzz

Crash Log:
+++++++++++
Thread 18 "WebkitBrowser" received signal SIGSEGV, Segmentation fault
[Switching to LWP1802]

0x8a073860 in  ?? ()

(gdb) bt
#0  0x8a073860  in ?? ()
#1  0x019d4df0  in operationOptimize()
#2  0xfffffffa  in ?? ()

Backtrace Stopped : Previous frame identical to this frame (Corrupt stack?)

-- 
You are receiving this mail because:
You are the assignee for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.webkit.org/pipermail/webkit-unassigned/attachments/20220213/9b8a740e/attachment.htm>


More information about the webkit-unassigned mailing list