<html>
    <head>
      <base href="https://bugs.webkit.org/" />
    </head>
    <body><table border="1" cellspacing="0" cellpadding="8">
        <tr>
          <th>Bug ID</th>
          <td><a class="bz_bug_link 
          bz_status_NEW "
   title="NEW - REGRESSION(r181993): [GTK] Performance test Speedometer/Full.html is flaky."
   href="https://bugs.webkit.org/show_bug.cgi?id=143261">143261</a>
          </td>
        </tr>

        <tr>
          <th>Summary</th>
          <td>REGRESSION(r181993): [GTK] Performance test Speedometer/Full.html is flaky.
          </td>
        </tr>

        <tr>
          <th>Classification</th>
          <td>Unclassified
          </td>
        </tr>

        <tr>
          <th>Product</th>
          <td>WebKit
          </td>
        </tr>

        <tr>
          <th>Version</th>
          <td>528+ (Nightly build)
          </td>
        </tr>

        <tr>
          <th>Hardware</th>
          <td>Unspecified
          </td>
        </tr>

        <tr>
          <th>OS</th>
          <td>Unspecified
          </td>
        </tr>

        <tr>
          <th>Status</th>
          <td>NEW
          </td>
        </tr>

        <tr>
          <th>Severity</th>
          <td>Normal
          </td>
        </tr>

        <tr>
          <th>Priority</th>
          <td>P2
          </td>
        </tr>

        <tr>
          <th>Component</th>
          <td>JavaScriptCore
          </td>
        </tr>

        <tr>
          <th>Assignee</th>
          <td>webkit-unassigned@lists.webkit.org
          </td>
        </tr>

        <tr>
          <th>Reporter</th>
          <td>clopez@igalia.com
          </td>
        </tr>

        <tr>
          <th>CC</th>
          <td>cgarcia@igalia.com, chavarria1991@gmail.com, fpizlo@apple.com, ggaren@apple.com, ossy@webkit.org, zan@falconsigh.net
          </td>
        </tr></table>
      <p>
        <div>
        <pre>Created <span class=""><a href="attachment.cgi?id=249821" name="attach_249821" title="GDB Backtrace for the GTK port when running the perft test Speedometer/Full.html (release built on r182181)">attachment 249821</a> <a href="attachment.cgi?id=249821&action=edit" title="GDB Backtrace for the GTK port when running the perft test Speedometer/Full.html (release built on r182181)">[details]</a></span>
GDB Backtrace for the GTK port when running the perft test Speedometer/Full.html (release built on r182181)

Since r181993 <<a href="http://trac.webkit.org/r181993">http://trac.webkit.org/r181993</a>> on platform GTK the performance test Speedometer/Full.html is flaky.
I double-checked this:

 * On r181992 the test works without problems.
 * On r181993 the test is flaky and crashes.


I tried to reproduce the crash with the GTK Debug build (in order to get a more meaningful trace), but I wasn't able to make it crash with the Debug build.
So perhaps this is caused by some race condition. I'm attaching the GDB backtrace (for release build). The relevant part is:

Core was generated by `/home/clopez/webkit/webkit/WebKitBuild/Release/bin/WebKitWebProcess 16'.
Program terminated with signal SIGSEGV, Segmentation fault.

Thread 1 (Thread 0x7f510947ea40 (LWP 29315)):
#0  0x00007f511a644e08 in JSC::CodeBlockSet::clearMarksForEdenCollection(WTF::Vector<JSC::JSCell const*, 0ul, WTF::CrashOnOverflow> const&) () from /home/clopez/webkit/webkit/WebKitBuild/Release/lib/libjavascriptcoregtk-4.0.so.18
#1  0x00007f511a64c14f in JSC::Heap::markRoots(double, void*, void*, __jmp_buf_tag (&) [1]) () from /home/clopez/webkit/webkit/WebKitBuild/Release/lib/libjavascriptcoregtk-4.0.so.18
#2  0x00007f511a64e2a5 in JSC::Heap::collectImpl(JSC::HeapOperation, void*, void*, __jmp_buf_tag (&) [1]) () from /home/clopez/webkit/webkit/WebKitBuild/Release/lib/libjavascriptcoregtk-4.0.so.18
#3  0x00007f511a64e06a in JSC::Heap::collect(JSC::HeapOperation) () from /home/clopez/webkit/webkit/WebKitBuild/Release/lib/libjavascriptcoregtk-4.0.so.18
#4  0x00007f511a659114 in JSC::MarkedAllocator::allocateSlowCase(unsigned long) () from /home/clopez/webkit/webkit/WebKitBuild/Release/lib/libjavascriptcoregtk-4.0.so.18
#5  0x00007f511a6cf5cb in operationNewObject () from /home/clopez/webkit/webkit/WebKitBuild/Release/lib/libjavascriptcoregtk-4.0.so.18</pre>
        </div>
      </p>
      <hr>
      <span>You are receiving this mail because:</span>
      
      <ul>
          <li>You are the assignee for the bug.</li>
      </ul>
    </body>
</html>