[Webkit-unassigned] [Bug 258499] Reproducible crash in Wasm::FunctionParser<JSC::Wasm::LLIntGenerator>::parseExpression, WasmFunctionParser.h:1960

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Sun Jun 25 15:59:46 PDT 2023


https://bugs.webkit.org/show_bug.cgi?id=258499

Alexey Proskuryakov <ap at webkit.org> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
            Summary|JavaScriptCore Aborted at   |Reproducible crash in
                   |Source/JavaScriptCore/wasm/ |Wasm::FunctionParser<JSC::W
                   |WasmFunctionParser.h:1960   |asm::LLIntGenerator>::parse
                   |                            |Expression,
                   |                            |WasmFunctionParser.h:1960
                 CC|                            |d_degazio at apple.com,
                   |                            |justin_michaud at apple.com,
                   |                            |mark.lam at apple.com,
                   |                            |webkit-bug-importer at group.a
                   |                            |pple.com

--- Comment #1 from Alexey Proskuryakov <ap at webkit.org> ---
Reproduces with built-in JavaScriptCore on macOS 14 beta.

-- 
You are receiving this mail because:
You are the assignee for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.webkit.org/pipermail/webkit-unassigned/attachments/20230625/e6ce22f0/attachment.htm>


More information about the webkit-unassigned mailing list