JITScript is calloc'd but not in-place constructed. At the moment, this is good enough for js::Vector to work but njn had a problem when he tried to do something non-trivial in the constructor. The JITScript also doesn't seem to be destructed, which could be responsible for the Talos max-memory-usage regression this morning.
Only equality ICs use JITScript::execPools right now, but typed arrays will as well.
AFAICS, there is only one place where JITScripts are allocated/deallocated.
Attachment #489525 - Flags: review?(dvander)
Attachment #489525 - Flags: review?(dvander) → review+
Status: ASSIGNED → RESOLVED
Closed: 9 years ago
Resolution: --- → FIXED
You need to log in before you can comment on or make changes to this bug.