Assertion failure: !mEventDispatchingSuspended, at /builds/worker/workspace/build/src/dom/xhr/XMLHttpRequestMainThread.cpp:1432


Testcase found while fuzzing mozilla-central rev a80d568a417e.
Could you explain the approach a bit?
Flags: needinfo?(amarchesini)
(In reply to Olli Pettay [:smaug] from comment #5)
> Could you explain the approach a bit?

This patch does a few things:

1. it detects a sync loop into sync loop. This is done creating a unique ID per loop (mSyncLoopId). When the spinning loop is completed, XHR checks if the current sync loop is what started, and if not, it returns an error. This means that if we have 1 XHR, starting a sync send, and here, another sync XHR.send() is called, when both are completed, the first loop throws an error.

The spec says that calling open(), we need to terminate the existing operations, but this cannot be directly done if we are into a sync send(). Using mSyncLoopId, we make the sync send() able to throw when completed.

2. each sync XHR send() must block and restore the dispatching of the input events and timers of the current document. This is done extending UnsuppressEventHandlingAndResume.

3. a test to check 2 sync nested send()s. and  a non-sync send() into a sync send().
Flags: needinfo?(amarchesini)
Why we need all this complicated setup? Why not just throw in open() and/or send() if sync XHR is already active?
Comment on attachment 8921969 [details] [diff] [review]

I don't really see reason for this setup, given what kind of sync XHR implementation we have atm. 
Or am I missing something?
Patch updated.
Comment on attachment 8927286 [details] [diff] [review]

I don't understand the test.
test_syncVsSync and test_syncVsAsync are doing exactly the same things.
I assume test_syncVsAsync was supposed to use async XHR, but it isn't.
Flags: needinfo?(bugs)
Ops, yes, the test must be updated as well.
Is there a user impact which justifies backport consideration here or can this patch ride the 59 train?
Flags: needinfo?(amarchesini)
(In reply to Ryan VanderMeulen [:RyanVM] from comment #16)
> Is there a user impact which justifies backport consideration here or can
> this patch ride the 59 train?

This is nice to have in beta. We are not talking of crashing, but wrong behavior in sync XHR.
Flags: needinfo?(amarchesini)
Approval Request Comment
[Feature/Bug causing the regression]: sync XHR
[User impact if declined]: Wrong behavior of nested sync XHR.
[Is this code covered by automated tests?]: yes
[Has the fix been verified in Nightly?]: we have tests.
[Needs manual test from QE? If yes, steps to reproduce]:  no.
[List of other uplifts needed for the feature/fix]: none.
[Is the change risky?]: no. 
[Why is the change risky/not risky?]: Just making assertions when methods are used in nested sync XHR.
[String changes made/needed]: none
Per comment #16 & #17, this is nice to have. So, we can let this ride the 59 train. Beta58-.
