Looks like this call generate the problem:
0x00007fffec8cc3dd <+45>:    callq  0x7fffec7c2230 
<js::gc::GCRuntime::gcIfRequested(JSContext*)>

Assembly snippet:
Dump of assembler code for function InvokeInterruptCallback(JSContext*):
   0x00007fffec8cc3b0 <+0>:     push   %rbp
   0x00007fffec8cc3b1 <+1>:     xor    %esi,%esi
   0x00007fffec8cc3b3 <+3>:     mov    %rsp,%rbp
   0x00007fffec8cc3b6 <+6>:     push   %r14
   0x00007fffec8cc3b8 <+8>:     push   %r13
   0x00007fffec8cc3ba <+10>:    push   %r12
   0x00007fffec8cc3bc <+12>:    push   %rbx
   0x00007fffec8cc3bd <+13>:    mov    %rdi,%rbx
   0x00007fffec8cc3c0 <+16>:    lea    0x5c0(%rdi),%rdi
   0x00007fffec8cc3c7 <+23>:    sub    $0x460,%rsp
   0x00007fffec8cc3ce <+30>:    mov    %fs:0x28,%rax
   0x00007fffec8cc3d7 <+39>:    mov    %rax,-0x28(%rbp)
   0x00007fffec8cc3db <+43>:    xor    %eax,%eax
   0x00007fffec8cc3dd <+45>:    callq  0x7fffec7c2230 
<js::gc::GCRuntime::gcIfRequested(JSContext*)>
=> 0x00007fffec8cc3e2 <+50>:    mov    %rbx,%rdi
   0x00007fffec8cc3e5 <+53>:    callq  0x7fffec5eda50 
<js::jit::AttachFinishedCompilations(JSContext*)>
   0x00007fffec8cc3ea <+58>:    mov    0x458(%rbx),%rax
   0x00007fffec8cc3f1 <+65>:    test   %rax,%rax
   0x00007fffec8cc3f4 <+68>:    je     0x7fffec8cc410 
<InvokeInterruptCallback(JSContext*)+96>
   0x00007fffec8cc3f6 <+70>:    mov    %rbx,%rdi
   0x00007fffec8cc3f9 <+73>:    callq  *%rax
   0x00007fffec8cc3fb <+75>:    test   %al,%al
   0x00007fffec8cc3fd <+77>:    je     0x7fffec8cc5e0 
<InvokeInterruptCallback(JSContext*)+560>
   0x00007fffec8cc403 <+83>:    mov    0x8(%rbx),%rax
   0x00007fffec8cc407 <+87>:    testb  $0x1,0x2e0(%rax)
   0x00007fffec8cc40e <+94>:    jne    0x7fffec8cc440 
<InvokeInterruptCallback(JSContext*)+144>
   0x00007fffec8cc410 <+96>:    mov    $0x1,%r12d
   0x00007fffec8cc416 <+102>:   mov    -0x28(%rbp),%rcx
   0x00007fffec8cc41a <+106>:   xor    %fs:0x28,%rcx
   0x00007fffec8cc423 <+115>:   mov    %r12d,%eax
   0x00007fffec8cc426 <+118>:   jne    0x7fffec8cc765 
<InvokeInterruptCallback(JSContext*)+949>
   0x00007fffec8cc42c <+124>:   add    $0x460,%rsp
   0x00007fffec8cc433 <+131>:   pop    %rbx

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1602910

Title:
  firefox-trunk: Bad news first: This tab has crashed  Now for the good
  news: You can just close this tab, restore it or restore all your
  crashed tabs.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/firefox/+bug/1602910/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to