Closed Bug 732897 Opened 12 years ago Closed 2 years ago

64-bit crash @ MakeDay


(Core :: JavaScript Engine, defect)

Windows 7





(Reporter: scoobidiver, Unassigned)


(Blocks 1 open bug)


(Keywords: 64bit, crash, Whiteboard: qa-not-actionable)

Crash Data

It's a residual crash but it jumped from around 5 crashes/build to around 10 crashes/build around 13.0a1/20120225.
The regression range for the spike might be:

There are two kinds of stack:
Frame 	Module 	Signature [Expand] 	Source
0 	xul.dll 	MakeDay 	js/src/jsdate.cpp:376
1 	xul.dll 	date_msecFromDate 	js/src/jsdate.cpp:589
2 	xul.dll 	date_parseString 	js/src/jsdate.cpp:1166
3 	xul.dll 	date_parse 	js/src/jsdate.cpp:1201
4 	xul.dll 	js::InvokeKernel 	js/src/jsinterp.cpp:499
5 	xul.dll 	js::types::TypeMonitorResult 	js/src/jsinfer.cpp:5151
6 	xul.dll 	js::Interpret 	js/src/jsinterp.cpp:2699

Frame 	Module 	Signature [Expand] 	Source
0 	xul.dll 	MakeDay 	js/src/jsdate.cpp:375
1 	xul.dll 	JSObject::nativeLookup 	js/src/jsobj.cpp:3989
2 	xul.dll 	js::ContextStack::currentScript 	js/src/vm/Stack-inl.h:620
3 	xul.dll 	date_msecFromArgs 	js/src/jsdate.cpp:629
4 	xul.dll 	js_Date 	js/src/jsdate.cpp:2623
5 	xul.dll 	js::InvokeConstructorKernel 	js/src/jsinterp.cpp:572
6 	xul.dll 	js::Interpret 	js/src/jsinterp.cpp:2691

More reports at:
It has slightly increased since May 3rd.

Here are interesting correlations:
     98% (45/46) vs.   6% (120/1975) dxva2.dll
     74% (34/46) vs.   6% (127/1975) NPSWF64_11_2_202_233.dll
It's #2 top crasher in 15.0a1 over the last day.
There's no need to track for 15.0 as it's only with 64-bit build.
Keywords: topcrash
In the `MakeDay` function [1], we do this:
  `month = fmod(month, 12.0);`
  `monthday = DayFromMonth(month, leap);`

`DayFromMonth` [2] is defined like so:
  #define DayFromMonth(m, leap) firstDayOfMonth[leap][(int)m]

`firstDayOfMonth` [3] is a `double[2][13]`

In stepping through the code, I've noticed that calling `fmod(4.0, 12.0)` is producing a value of `-1.#IND`.  This doesn't happen consistently (in my testing it happens the second time `fmod` is called with those arguments), and it appears to be a bug in MSVC [4].  If the build bots are using VC++ 2005, then applying the hotfix might fix this issue.  However, I'm building with MSVC11 and this issue has cropped up with my local builds.

There are only 3 crashes in the trunk over the last 4 weeks.
Keywords: topcrash
It still happens in 64-bit Nightly.
Keywords: 64bit
Assignee: general → nobody
Whiteboard: qa-not-actionable

Since the crash volume is low (less than 5 per week), the severity is downgraded to S3. Feel free to change it back if you think the bug is still critical.

For more information, please visit auto_nag documentation.

Severity: critical → S3

Bug is too old to be still actionable in any way.

Closed: 2 years ago
Resolution: --- → INCOMPLETE
You need to log in before you can comment on or make changes to this bug.