Status: Untriaged Owner: ---- CC: [email protected], [email protected] Labels: Type-Bug Pri-1 OS-All Area-Misc JavaScript Crash
New issue 8875 by [email protected]: Crash on v8::internal::Invoke http://code.google.com/p/chromium/issues/detail?id=8875 Happened on ChromeBot since build r11805. There was a V8 DEPs revert(1512- > 1458) in r11804. Call stack: chrome_23f0000!_87except+0x68 chrome_23f0000!_startOneArgErrorHandling+0x29 chrome_23f0000!sqrt+0xa4 0x32dfd71 0x32da466 0x32dd328 0x32dcd50 chrome_23f0000!v8::internal::Invoke+0x82 [c:\b\slave\chromium-rel- xp\build\src\v8\src\execution.cc @ 91] chrome_23f0000!v8::internal::Execution::Call+0x25 [c:\b\slave\chromium-rel- xp\build\src\v8\src\execution.cc @ 116] chrome_23f0000!v8::Script::Run+0x93 [c:\b\slave\chromium-rel- xp\build\src\v8\src\api.cc @ 1050] chrome_23f0000!WebCore::V8Proxy::RunScript+0xe2 [c:\b\slave\chromium-rel- xp\build\src\webkit\port\bindings\v8\v8_proxy.cpp @ 1472] chrome_23f0000!WebCore::V8Proxy::evaluate+0xd4 [c:\b\slave\chromium-rel- xp\build\src\webkit\port\bindings\v8\v8_proxy.cpp @ 1426] chrome_23f0000!WebCore::ScriptController::evaluate+0x5e [c:\b\slave\chromium-rel- xp\build\src\webkit\port\bindings\v8\scriptcontroller.cpp @ 226] chrome_23f0000!WebCore::FrameLoader::executeScript+0x4a [c:\b\slave\chromium-rel- xp\build\src\third_party\webkit\webcore\loader\frameloader.cpp @ 794] chrome_23f0000!WebCore::HTMLTokenizer::scriptExecution+0xc7 [c:\b\slave\chromium-rel- xp\build\src\third_party\webkit\webcore\html\htmltokenizer.cpp @ 599] chrome_23f0000!WebCore::HTMLTokenizer::notifyFinished+0x204 [c:\b\slave\chromium-rel- xp\build\src\third_party\webkit\webcore\html\htmltokenizer.cpp @ 1974] chrome_23f0000!WebCore::CachedScript::checkNotify+0x3a [c:\b\slave\chromium-rel- xp\build\src\third_party\webkit\webcore\loader\cachedscript.cpp @ 106] chrome_23f0000!WebCore::CachedScript::data+0x99 [c:\b\slave\chromium-rel- xp\build\src\third_party\webkit\webcore\loader\cachedscript.cpp @ 96] chrome_23f0000!WebCore::Loader::Host::didFinishLoading+0xab [c:\b\slave\chromium-rel- xp\build\src\third_party\webkit\webcore\loader\loader.cpp @ 304] chrome_23f0000!WebCore::SubresourceLoader::didFinishLoading+0x2b [c:\b\slave\chromium-rel- xp\build\src\third_party\webkit\webcore\loader\subresourceloader.cpp @ 183] chrome_23f0000!WebCore::ResourceLoader::didFinishLoading+0x7 [c:\b\slave\chromium-rel- xp\build\src\third_party\webkit\webcore\loader\resourceloader.cpp @ 417] chrome_23f0000!WebCore::ResourceHandleInternal::OnCompletedRequest+0xf7 [c:\b\slave\chromium-rel-xp\build\src\webkit\glue\resource_handle_impl.cc @ 622] chrome_23f0000!ResourceDispatcher::OnRequestComplete+0x8a [c:\b\slave\chromium-rel-xp\build\src\chrome\common\resource_dispatcher.cc @ 439] chrome_23f0000!IPC::MessageWithTuple<Tuple3<int,URLRequestStatus,std::basic _string<char,std::char_traits<char>,std::allocator<char> > > > ::Dispatch<ResourceDispatcher,void (__thiscall ResourceDispatcher::*)(int,URLRequestStatus const &,std::basic_string<char,std::char_traits<char>,std::allocator<char> > const &)>+0x51 [c:\b\slave\chromium-rel- xp\build\src\chrome\common\ipc_message_utils.h @ 1185] chrome_23f0000!ResourceDispatcher::DispatchMessageW+0xb2 [c:\b\slave\chromium-rel-xp\build\src\chrome\common\resource_dispatcher.cc @ 483] chrome_23f0000!ResourceDispatcher::OnMessageReceived+0x174 [c:\b\slave\chromium-rel-xp\build\src\chrome\common\resource_dispatcher.cc @ 276] chrome_23f0000!ChildThread::OnMessageReceived+0x16 [c:\b\slave\chromium- rel-xp\build\src\chrome\common\child_thread.cc @ 66] chrome_23f0000!RunnableMethod<CancelableRequest<CallbackRunner<Tuple2<int,s td::vector<__int64,std::allocator<__int64> > *> > >,void (__thiscall CancelableRequest<CallbackRunner<Tuple2<int,std::vector<__int64,std::alloca tor<__int64> > *> > > ::*)(Tuple2<int,std::vector<__int64,std::allocator<__int64> > *> const &),Tuple1<Tuple2<int,std::vector<__int64,std::allocator<__int64> > *> > > ::Run+0x17 [c:\b\slave\chromium-rel-xp\build\src\base\task.h @ 307] chrome_23f0000!MessageLoop::RunTask+0x80 [c:\b\slave\chromium-rel- xp\build\src\base\message_loop.cc @ 309] chrome_23f0000!MessageLoop::DoWork+0x1ea [c:\b\slave\chromium-rel- xp\build\src\base\message_loop.cc @ 424] chrome_23f0000!base::MessagePumpDefault::Run+0x111 [c:\b\slave\chromium- rel-xp\build\src\base\message_pump_default.cc @ 50] chrome_23f0000!MessageLoop::RunInternal+0xb7 [c:\b\slave\chromium-rel- xp\build\src\base\message_loop.cc @ 197] chrome_23f0000!MessageLoop::RunHandler+0xa0 [c:\b\slave\chromium-rel- xp\build\src\base\message_loop.cc @ 181] chrome_23f0000!MessageLoop::Run+0x3d [c:\b\slave\chromium-rel- xp\build\src\base\message_loop.cc @ 155] chrome_23f0000!base::Thread::ThreadMain+0x8a [c:\b\slave\chromium-rel- xp\build\src\base\thread.cc @ 159] chrome_23f0000!`anonymous namespace'::ThreadFunc+0xd [c:\b\slave\chromium- rel-xp\build\src\base\platform_thread_win.cc @ 27] kernel32!GetModuleFileNameA+0x1b4 -- You received this message because you are listed in the owner or CC fields of this issue, or because you starred this issue. You may adjust your issue notification preferences at: http://code.google.com/hosting/settings --~--~---------~--~----~------------~-------~--~----~ Automated mail from issue updates at http://crbug.com/ Subscription options: http://groups.google.com/group/chromium-bugs -~----------~----~----~----~------~----~------~--~---
