Closed Bug 618558 Opened 14 years ago Closed 13 years ago

crash [@ js::SetFlatUpvar(JSContext*, JSObject*, int, js::Value*) ][@ js::SetFlatUpvar ]

Categories

(Core :: JavaScript Engine, defect)

x86
Windows 7
defect
Not set
critical

Tracking

()

RESOLVED DUPLICATE of bug 592202
Tracking Status
blocking2.0 --- betaN+

People

(Reporter: scoobidiver, Unassigned)

Details

(Keywords: crash, regression, topcrash)

Crash Data

It is a new crash signature. Crashes first appeared on 4.0b8pre/20101208.
It is #96 top crasher for the last 3 days.

Signature	js::SetFlatUpvar(JSContext*, JSObject*, int, js::Value*)
UUID	6ccdb26f-7c0c-448c-ae68-1a5462101210
Time 	2010-12-10 14:54:18.324557
Uptime	134
Last Crash	968 seconds (16.1 minutes) before submission
Install Age	1108 seconds (18.5 minutes) since version was first installed.
Product	Firefox
Version	4.0b8pre
Build ID	20101210030339
Branch	2.0
OS	Windows NT
OS Version	6.1.7600
CPU	x86
CPU Info	GenuineIntel family 6 model 23 stepping 6
Crash Reason	EXCEPTION_ACCESS_VIOLATION_WRITE
Crash Address	0x8
App Notes 	AdapterVendorID: 8086, AdapterDeviceID: 2a42
MSAFD Tcpip [TCP/IP] : 2 : 1 :
MSAFD Tcpip [UDP/IP] : 2 : 2 : %SystemRoot%\system32\mswsock.dll
MSAFD Tcpip [RAW/IP] : 2 : 3 :
MSAFD Tcpip [TCP/IPv6] : 2 : 1 : %SystemRoot%\system32\mswsock.dll
MSAFD Tcpip [UDP/IPv6] : 2 : 2 :
MSAFD Tcpip [RAW/IPv6] : 2 : 3 : %SystemRoot%\system32\mswsock.dll
RSVP TCPv6 Service Provider : 2 : 1 :
RSVP TCP Service Provider : 2 : 1 : %SystemRoot%\system32\mswsock.dll
RSVP UDPv6 Service Provider : 2 : 2 :
RSVP UDP Service Provider : 2 : 2 : %SystemRoot%\system32\mswsock.dll

Frame 	Module 	Signature [Expand] 	Source
0 	mozjs.dll 	js::SetFlatUpvar 	js/src/jsfun.cpp:1270
1 	mozjs.dll 	js::Shape::set 	js/src/jsscopeinlines.h:275
2 	mozjs.dll 	js_NativeSet 	js/src/jsobj.cpp:5111
3 	mozjs.dll 	js_SetPropertyHelper 	js/src/jsobj.cpp:5609
4 	mozjs.dll 	js::mjit::stubs::SetName<0> 	js/src/methodjit/StubCalls.cpp:260
5 	mozjs.dll 	mozjs.dll@0x128d2f 	
6 	mozjs.dll 	js::mjit::ic::SetProp 	js/src/methodjit/PolyIC.cpp:1749
7 	mozjs.dll 	js::mjit::stubs::GetGlobalName 	js/src/methodjit/StubCalls.cpp:430
8 	xul.dll 	jsd_CallCallHook 	js/jsd/jsd_hook.c:218
9 	mozjs.dll 	js::mjit::EnterMethodJIT 	js/src/methodjit/MethodJIT.cpp:745
10 	mozjs.dll 	js::mjit::JaegerShot 	js/src/methodjit/MethodJIT.cpp:787
11 	mozjs.dll 	js::RunScript 	js/src/jsinterp.cpp:654
12 	mozjs.dll 	js::Execute 	js/src/jsinterp.cpp:1005
13 	mozjs.dll 	JS_EvaluateUCScriptForPrincipals 	js/src/jsapi.cpp:4940
14 	mozjs.dll 	JS_EvaluateUCScriptForPrincipalsVersion 	js/src/jsapi.cpp:4916
15 	xul.dll 	nsJSContext::EvaluateString 	dom/base/nsJSEnvironment.cpp:1731

The regression range is:
http://hg.mozilla.org/mozilla-central/pushloghtml?fromchange=4d16d58becaf&tochange=95452499f3d6

More reports at:
http://crash-stats.mozilla.com/report/list?product=Firefox&query_search=signature&query_type=exact&query=&range_value=4&range_unit=weeks&hang_type=any&process_type=any&plugin_field=&plugin_query_type=&plugin_query=&do_query=1&admin=&signature=js%3A%3ASetFlatUpvar%28JSContext*%2C%20JSObject*%2C%20int%2C%20js%3A%3AValue*%29
It is #3 top crasher on Linux in 4.0b9pre for the last week.
blocking2.0: --- → ?
Keywords: topcrash
blocking2.0: ? → betaN+
Depends on: 592202
Status: NEW → RESOLVED
Closed: 13 years ago
No longer depends on: 592202
Resolution: --- → DUPLICATE
Crash Signature: [@ js::SetFlatUpvar(JSContext*, JSObject*, int, js::Value*) ] [@ js::SetFlatUpvar ]
You need to log in before you can comment on or make changes to this bug.