Closed Bug 626599 Opened 9 years ago Closed 9 years ago

Crash mainly at startup [@ js_SetDebugMode ]


(Core :: JavaScript Engine, defect, critical)

Not set





(Reporter: scoobidiver, Unassigned)


(Keywords: crash, regression, Whiteboard: fixed-in-tracemonkey)

Crash Data


(1 file)

It is a new crash signature. Crashes first appeared in 4.0b10pre/20110115.
It is #9 top crasher for the last 3 days.

Some comments say that they tried to launch FF with -chromebug option.

Signature	js_SetDebugMode
UUID	bd33f220-dd70-4bbc-b90e-bb7892110117
Time 	2011-01-17 14:29:51.693523
Uptime	4
Last Crash	151 seconds before submission
Install Age	17243 seconds (4.8 hours) since version was first installed.
Product	Firefox
Version	4.0b10pre
Build ID	20110117030328
Branch	2.0
OS	Windows NT
OS Version	6.1.7600
CPU	x86
CPU Info	GenuineIntel family 6 model 23 stepping 6
Crash Address	0xa5c
User Comments	Trying to launch with -chromebug
App Notes 	AdapterVendorID: 10de, AdapterDeviceID: 0425

Frame 	Module 	Signature [Expand] 	Source
0 	mozjs.dll 	js_SetDebugMode 	js/src/jsdbgapi.cpp:144
1 	xul.dll 	jsdService::RecompileForDebugMode 	js/jsd/jsd_xpc.cpp:2517
2 	xul.dll 	jsdService::ActivateDebugger 	js/jsd/jsd_xpc.cpp:2531
3 	xul.dll 	nsThread::ProcessNextEvent 	
4 	setupapi.dll 	_imp_load__GetExplicitEntriesFromAclW 	
5 	frozen.dll 	frozen.dll@0xe6766 	
6 	frozen.dll 	frozen.dll@0xe732c 	
7 	xul.dll 	mozilla::ipc::MessagePump::Run 	ipc/glue/MessagePump.cpp:110
8 	xul.dll 	MessageLoop::RunInternal 	ipc/chromium/src/base/
9 	xul.dll 	MessageLoop::RunHandler 	ipc/chromium/src/base/
10 	mozcrt19.dll 	_VEC_memzero 	
11 	xul.dll 	xul.dll@0x35895d 	
12 	xul.dll 	MessageLoop::Run 	ipc/chromium/src/base/
13 	xul.dll 	nsBaseAppShell::Run 	widget/src/xpwidgets/nsBaseAppShell.cpp:192
14 	xul.dll 	xul.dll@0xb1ff6b 	
15 	xul.dll 	nsAppStartup::Run 	toolkit/components/startup/src/nsAppStartup.cpp:217
16 	xul.dll 	XRE_main 	toolkit/xre/nsAppRunner.cpp:3699
17 	firefox.exe 	wmain 	toolkit/xre/nsWindowsWMain.cpp:128
18 	firefox.exe 	__tmainCRTStartup 	obj-firefox/memory/jemalloc/crtsrc/crtexe.c:591
19 	kernel32.dll 	BaseThreadInitThunk 	
20 	ntdll.dll 	__RtlUserThreadStart 	
21 	ntdll.dll 	_RtlUserThreadStart 	

The regression range is:

More reports at:
From the crash address it looks like cx-compartment is NULL, which seems like a valid state in this context.

Andreas: looking at jsdService::RecompileForDebugMode, it looks like we iterate over all contexts, setting debug mode on their compartments.  Won't this miss every compartment we are not currently executing in?
Attachment #504737 - Flags: review?(gal)
Comment on attachment 504737 [details] [diff] [review]
check cx->compartment

Yes, compartment can be NULL when we are not executing. And yes, we can miss compartments that way. It would be safer to iterate over all compartments.
Attachment #504737 - Flags: review?(gal) → review+
(In reply to comment #2)
> Yes, compartment can be NULL when we are not executing. And yes, we can miss
> compartments that way. It would be safer to iterate over all compartments.

If, by precondition, no code is running, it seems that practically all compartments will be missed...

(Filed bug 626743 for the comment 1 issue.)
Whiteboard: fixed-in-tracemonkey
Closed: 9 years ago
Resolution: --- → FIXED
Crash Signature: [@ js_SetDebugMode ]
You need to log in before you can comment on or make changes to this bug.