Closed Bug 1794784 Opened 2 years ago Closed 2 years ago

Integrate fuzzilli differential testing patch

Categories

(Core :: JavaScript Engine, enhancement, P1)

All
Linux
enhancement

Tracking

()

RESOLVED FIXED
108 Branch
Tracking Status
firefox-esr102 --- wontfix
firefox106 --- wontfix
firefox107 --- wontfix
firefox108 --- fixed

People

(Reporter: decoder, Assigned: decoder)

Details

(Keywords: sec-other, Whiteboard: [post-critsmash-triage][adv-main108-])

Attachments

(1 file)

:l11d has provided us with a code to do differential testing of our JS engine using fuzzilli. However, it requires some code changes on our side.

Landed: https://hg.mozilla.org/integration/autoland/rev/d3d587531672336fe98734477fcb95d5d0ab0038

Backed out for spidermonkey bustage in js/src/jit/MIR.h:10826:3: error: bad implicit conversion constructor for 'MFuzzilliHash': https://hg.mozilla.org/integration/autoland/rev/b86b7f0226545595b35440e23e5ff642be1c3a3b
push: https://treeherder.mozilla.org/jobs?repo=autoland&group_state=expanded&revision=d3d587531672336fe98734477fcb95d5d0ab0038
failure log: https://treeherder.mozilla.org/logviewer?job_id=394570647&repo=autoland&lineNumber=1531

js/src/jit/MIR.h:10826:3: error: bad implicit conversion constructor for 'MFuzzilliHash'
followed by more failures.

Flags: needinfo?(choller)
Status: ASSIGNED → RESOLVED
Closed: 2 years ago
Flags: needinfo?(choller)
Resolution: --- → FIXED
Target Milestone: --- → 108 Branch
Flags: qe-verify-
Whiteboard: [post-critsmash-triage]
Whiteboard: [post-critsmash-triage] → [post-critsmash-triage][adv-main108-]
Group: core-security-release
You need to log in before you can comment on or make changes to this bug.

Attachment

General

Created:
Updated:
Size: