Crash in trunc
Categories
(Core :: JavaScript Engine, defect)
Tracking
()
| Tracking | Status | |
|---|---|---|
| firefox64 | --- | unaffected |
| firefox65 | --- | wontfix |
| firefox66 | --- | wontfix |
| firefox67 | --- | fix-optional |
| firefox68 | --- | ? |
People
(Reporter: marcia, Unassigned)
Details
(5 keywords)
Crash Data
Comment 1•6 years ago
|
||
Comment 2•6 years ago
|
||
Jon, can you think of anything that would be causing this signature to increase in occurrence (and to just have started in 65 beta)?
Nils, Marcia mentioned there were some YouTube URLs in the crash reports ... are they serving enough AV1 that we'd have hundreds of crashes? Yes, I'm taking a stab in the dark here :)
Comment 3•6 years ago
|
||
I think this is another random crash during GC and the stack is corrupt in some way that causes us to see this call to trunc. So I think it's just a different signature for one of the existing crashes.
| Reporter | ||
Comment 4•6 years ago
|
||
As discussed during triage, I said I would look at crash-stats to see if there was anything useful in the way of comments or URLs.
Crash stats shows a fairly high correlation to a particular bios manufacturer: 62.34% in signature vs 38.72% overall) bios_manufacturer = American Megatrends Inc. [63.16% vs 15.21% if startup_crash = null]. At the moment there are no useful comments. youtube and GMail shows up pretty frequently in the URLs - but other than that I don't see a particular trend.
Comment 5•6 years ago
•
|
||
should we add trunc to the signature skiplist?
https://crash-stats.mozilla.com/search/?signature=%3Dtrunc&_facets=proto_signature#facet-proto_signature (edited link)
| Reporter | ||
Comment 6•6 years ago
|
||
For Nightly crash reports, here are the correlations:
(29.17% in signature vs 03.21% overall) cpu_microcode_version = 0x25 [100.0% vs 20.55% if CPU Info = family 6 model 42 stepping 7]
(100.0% in signature vs 30.42% overall) abort_message = null
(66.67% in signature vs 06.02% overall) address = 0xffffffffffffffff
(33.33% in signature vs 02.06% overall) adapter_driver_version = 9.17.10.4229 [100.0% vs 61.03% if adapter_device_id = 0x0102]
(33.33% in signature vs 02.06% overall) adapter_driver_version_clean = 4229 [100.0% vs 61.03% if adapter_device_id = 0x0102]
(62.50% in signature vs 18.05% overall) Module "api-ms-win-core-timezone-l1-1-0.dll" = true
(62.50% in signature vs 18.05% overall) Module "api-ms-win-core-synch-l1-2-0.dll" = true
(62.50% in signature vs 18.05% overall) Module "api-ms-win-core-processthreads-l1-1-1.dll" = true
(62.50% in signature vs 18.07% overall) Module "lpk.dll" = true
(62.50% in signature vs 18.35% overall) Module "WSHTCPIP.DLL" = true
(29.17% in signature vs 02.48% overall) adapter_device_id = 0x0102 [58.33% vs 06.12% if adapter_vendor_id = 0x8086]
(58.33% in signature vs 99.95% overall) ipc_message_name = null
(50.00% in signature vs 09.80% overall) Module "atl.dll" = true
(62.50% in signature vs 18.07% overall) platform_pretty_version = Windows 7 [62.50% vs 23.59% if platform = Windows NT]
(45.83% in signature vs 07.25% overall) Module "msmpeg2adec.dll" = true
(33.33% in signature vs 03.89% overall) Module "igd10umd64.dll" = true [53.33% vs 12.96% if platform_pretty_version = Windows 7]
(29.17% in signature vs 01.48% overall) Addon "sovetnik-yandex@yandex.ru" = true
(29.17% in signature vs 01.50% overall) build_id = 20190101094742
(29.17% in signature vs 01.93% overall) Addon "SaveFrom.net helper all-in-1 / youtube downloader" = true
(29.17% in signature vs 02.02% overall) Addon "Визуальные закладки от Яндекс" = true
(58.33% in signature vs 12.17% overall) Module "cryptbase.dll" = true [92.86% vs 68.86% if platform_version = 6.1.7601 Service Pack 1]
(29.17% in signature vs 01.51% overall) adapter_subsys_id = 76801462 [38.46% vs 01.64% if startup_crash = null]
(29.17% in signature vs 02.52% overall) Addon "Dark Mode (WebExtension)" = true
(29.17% in signature vs 02.58% overall) Addon "Adguard AdBlocker" = true
(41.67% in signature vs 08.17% overall) Module "RpcRtRemote.dll" = true [66.67% vs 45.21% if platform_pretty_version = Windows 7]
(70.83% in signature vs 96.95% overall) Addon "webcompat-reporter@mozilla.org" = true
(45.83% in signature vs 10.55% overall) Module "slc.dll" = true [73.33% vs 49.37% if platform_pretty_version = Windows 7]
(50.00% in signature vs 10.45% overall) Module "ksuser.dll" = true [78.57% vs 53.99% if platform_version = 6.1.7601 Service Pack 1]
| Reporter | ||
Updated•6 years ago
|
Comment 7•6 years ago
|
||
trunc definitely needs to be added to the skip list; most of these are highly varying (though all looking real) stacks above trunc. Almost all of the crashes I see appear to be sec issues - many EXECs of wildptrs, for example, including in imgloader and jit (which are probably more worrying than GC crashes).
Updated•6 years ago
|
Comment 9•6 years ago
|
||
Regarding comment #8, Marcia created bug #1523968 and that was implemented and pushed out last week.
Comment 10•6 years ago
|
||
Would adding this to the skip list mean we shouldn't see these crashes listed under the trunc signature? Is there anything else that should be done in this bug or should we be filing new issues by digging through the underlying stacks?
Updated•6 years ago
|
Comment 11•6 years ago
|
||
Looks like the remaining ones have no named stackframes above trunc() :-(
Comment 12•6 years ago
|
||
Might these crashes be related? They have a bit more info.
For example https://crash-stats.mozilla.com/report/index/b4e4faf8-21e1-4e35-8370-e51830190305.
Updated•6 years ago
|
Comment 13•6 years ago
|
||
Those may or may not be the same crash; clearly "trunc" is being mis-identified by the stack scan. In the original signature, it found nothing above it. In the one you added (which is only in 67), it finds MaybeJIT. No way to really know if they're the same. However the MaybeJIT crashes also appear to start in 65.0bN:
sdetar?
Comment 14•6 years ago
|
||
Jan, do you have any thoughts what to do with this? I know you might not be the right person, but might have some in-site. I am not sure what the next steps should be and looking for some help.
Comment 15•6 years ago
|
||
Getting to be too late for a fix in 67.
Comment 16•6 years ago
|
||
(In reply to Liz Henry (:lizzard) (use needinfo) from comment #10)
Would adding this to the skip list mean we shouldn't see these crashes listed under the trunc signature? Is there anything else that should be done in this bug or should we be filing new issues by digging through the underlying stacks?
Yes, please file new issues for different underlying stacks. Let's close this one.
Updated•5 years ago
|
Description
•