Crash [@ js_GetArgsValue ]

RESOLVED WORKSFORME

Status

()

Core
JavaScript Engine
--
critical
RESOLVED WORKSFORME
7 years ago
6 years ago

People

(Reporter: Scoobidiver (away), Assigned: cdleary)

Tracking

({crash})

Trunk
ARM
Android
crash
Points:
---

Firefox Tracking Flags

(fennec2.0+)

Details

(Whiteboard: fennec-related-jscript-crashers , crash signature)

(Reporter)

Description

7 years ago
It is #17 top crasher in Fennec 4.0b4 over the last week.

Signature	js_GetArgsValue
UUID	141eab76-6181-4238-8c7b-4a7da2110206
Time 	2011-02-06 04:35:30.511867
Uptime	44
Install Age	7328 seconds (2.0 hours) since version was first installed.
Product	Fennec
Version	4.0b4
Build ID	20110126160730
Branch	1.9
OS	Linux
OS Version	0.0.0 Linux 2.6.32.21-gf3f553d #1 PREEMPT Thu Oct 28 13:24:11 CST 2010 armv7l
CPU	arm
Crash Reason	SIGSEGV
Crash Address	0x224

Frame 	Module 	Signature [Expand] 	Source
0 	libxul.so 	js_GetArgsValue 	js/src/jsatom.h:72
1 	libxul.so 	js::mjit::ic::SplatApplyArgs 	js/src/methodjit/MonoIC.cpp:985
2 	libxul.so 	CallCompiler::generateNativeStub 	js/src/methodjit/MonoIC.cpp:651
3 	libxul.so 	js::mjit::ic::NativeCall 	js/src/methodjit/MonoIC.cpp:874
4 	libxul.so 	libxul.so@0xb1d10a 	
5 	libxul.so 	js::mjit::ic::NativeCall 	js/src/methodjit/MonoIC.cpp:872
6 	libxul.so 	js::mjit::JaegerShot 	js/src/jscntxt.h:2890
7 	libxul.so 	js::Execute 	js/src/jsinterp.cpp:654
8 	libxul.so 	JS_EvaluateUCScriptForPrincipals 	js/src/jsapi.cpp:4933
9 	libxul.so 	JS_EvaluateUCScriptForPrincipalsVersion 	js/src/jsapi.cpp:151
10 	libxul.so 	nsJSContext::EvaluateString 	dom/base/nsJSEnvironment.cpp:1552
11 	libxul.so 	nsScriptLoader::EvaluateScript 	nsCOMPtr.h:655
12 	libxul.so 	nsScriptLoader::ProcessRequest 	nsCOMPtr.h:800
13 	libxul.so 	nsScriptLoader::ProcessScriptElement 	content/base/src/nsScriptLoader.cpp:729
14 	libxul.so 	nsScriptElement::MaybeProcessScript 	content/base/src/nsScriptElement.cpp:185
15 	libxul.so 	nsHTMLScriptElement::MaybeProcessScript 	content/html/content/src/nsHTMLScriptElement.cpp:584
16 	libxul.so 	nsHTMLScriptElement::DoneAddingChildren 	content/html/content/src/nsHTMLScriptElement.cpp:511
17 	libxul.so 	nsHtml5TreeOpExecutor::RunScript 	parser/html/nsHtml5TreeOpExecutor.cpp:734
18 	libxul.so 	nsHtml5TreeOpExecutor::RunFlushLoop 	parser/html/nsHtml5TreeOpExecutor.cpp:528
19 	libxul.so 	nsHtml5ExecutorFlusher::Run 	parser/html/nsHtml5StreamParser.cpp:155
20 	libxul.so 	nsThread::ProcessNextEvent 	xpcom/threads/nsThread.cpp:633
21 	libxul.so 	NS_ProcessNextEvent_P 	nsThreadUtils.cpp:250
22 	libxul.so 	mozilla::ipc::MessagePump::Run 	ipc/glue/MessagePump.cpp:111
23 	libxul.so 	mozilla::ipc::MessagePumpForChildProcess::Run 	ipc/glue/MessagePump.cpp:230
24 	libxul.so 	MessageLoop::RunInternal 	ipc/chromium/src/base/message_loop.cc:220
25 	libxul.so 	MessageLoop::Run 	ipc/chromium/src/base/message_loop.cc:512
26 	libxul.so 	nsBaseAppShell::Run 	widget/src/xpwidgets/nsBaseAppShell.cpp:201
27 	libxul.so 	XRE_RunAppShell 	toolkit/xre/nsEmbedFunctions.cpp:640
28 	libxul.so 	mozilla::ipc::MessagePumpForChildProcess::Run 	ipc/glue/MessagePump.cpp:222
29 	libxul.so 	MessageLoop::RunInternal 	ipc/chromium/src/base/message_loop.cc:220
30 	libxul.so 	MessageLoop::Run 	ipc/chromium/src/base/message_loop.cc:512
31 	libxul.so 	XRE_InitChildProcess 	toolkit/xre/nsEmbedFunctions.cpp:519
32 	libmozutils.so 	ChildProcessInit 	other-licenses/android/APKOpen.cpp:771
33 	plugin-container 	main 	ipc/app/MozillaRuntimeMainAndroid.cpp:69
34 	libc.so 	libc.so@0xd4e2 	

More reports at:
https://crash-stats.mozilla.com/report/list?range_value=2&range_unit=weeks&signature=js_GetArgsValue

Comment 1

7 years ago
Hmm, there don't appear to be any Firefox crashes in js_GetArgsValue (or SplatApplyArgs) so this would seem to be ARM-related, perhaps in the call ic?

Updated

7 years ago
tracking-fennec: ? → 2.0+

Updated

7 years ago
Assignee: general → cdleary

Comment 2

7 years ago
Seeing quite a few of these on crash-stats, is hopefully fixed by 626361?
Whiteboard: fennec-related-jscript-crashers

Comment 3

7 years ago
looks to be fixed by 626361
Status: NEW → RESOLVED
Last Resolved: 7 years ago
Resolution: --- → FIXED
(Reporter)

Updated

7 years ago
Depends on: 626361
Resolution: FIXED → WORKSFORME
Crash Signature: [@ js_GetArgsValue ]
You need to log in before you can comment on or make changes to this bug.