<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "https://bugs.webkit.org/page.cgi?id=bugzilla.dtd">

<bugzilla version="5.0.4.1"
          urlbase="https://bugs.webkit.org/"
          
          maintainer="admin@webkit.org"
>

    <bug>
          <bug_id>13638</bug_id>
          
          <creation_ts>2007-05-09 02:34:52 -0700</creation_ts>
          <short_desc>(meta) Bugs found by jsfunfuzz</short_desc>
          <delta_ts>2012-09-06 16:49:38 -0700</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>WebKit</product>
          <component>JavaScriptCore</component>
          <version>523.x (Safari 3)</version>
          <rep_platform>Mac</rep_platform>
          <op_sys>OS X 10.4</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>DUPLICATE</resolution>
          <dup_id>23089</dup_id>
          
          <bug_file_loc>https://bugzilla.mozilla.org/show_bug.cgi?id=349611</bug_file_loc>
          <status_whiteboard></status_whiteboard>
          <keywords></keywords>
          <priority>P2</priority>
          <bug_severity>Normal</bug_severity>
          <target_milestone>---</target_milestone>
          <dependson>6985</dependson>
    
    <dependson>10878</dependson>
    
    <dependson>10880</dependson>
    
    <dependson>13620</dependson>
    
    <dependson>13621</dependson>
    
    <dependson>13622</dependson>
    
    <dependson>13623</dependson>
    
    <dependson>14891</dependson>
    
    <dependson>14892</dependson>
    
    <dependson>14897</dependson>
    
    <dependson>17012</dependson>
    
    <dependson>17013</dependson>
    
    <dependson>17018</dependson>
    
    <dependson>17020</dependson>
    
    <dependson>17027</dependson>
    
    <dependson>17924</dependson>
    
    <dependson>17925</dependson>
    
    <dependson>17927</dependson>
    
    <dependson>17929</dependson>
    
    <dependson>17931</dependson>
    
    <dependson>17932</dependson>
    
    <dependson>17936</dependson>
    
    <dependson>17939</dependson>
    
    <dependson>17940</dependson>
    
    <dependson>23049</dependson>
    
    <dependson>23054</dependson>
    
    <dependson>23062</dependson>
    
    <dependson>23063</dependson>
    
    <dependson>23078</dependson>
    
    <dependson>23085</dependson>
    
    <dependson>23089</dependson>
    
    <dependson>52493</dependson>
    
    <dependson>52501</dependson>
    
    <dependson>52505</dependson>
    
    <dependson>52514</dependson>
    
    <dependson>52515</dependson>
    
    <dependson>52516</dependson>
    
    <dependson>52643</dependson>
    
    <dependson>52672</dependson>
    
    <dependson>52690</dependson>
          
          <everconfirmed>1</everconfirmed>
          <reporter name="Jesse Ruderman">jruderman</reporter>
          <assigned_to name="Nobody">webkit-unassigned</assigned_to>
          <cc>ap</cc>
    
    <cc>barraclough</cc>
    
    <cc>gavin.sharp</cc>
    
    <cc>jwalden+bwo</cc>
    
    <cc>oliver</cc>
    
    <cc>webkit</cc>
    
    <cc>zwarich</cc>
          

      

      

      

          <comment_sort_order>oldest_to_newest</comment_sort_order>  
          <long_desc isprivate="0" >
    <commentid>10627</commentid>
    <comment_count>0</comment_count>
    <who name="Jesse Ruderman">jruderman</who>
    <bug_when>2007-05-09 02:34:52 -0700</bug_when>
    <thetext>https://bugzilla.mozilla.org/show_bug.cgi?id=349611 contains a fuzz-testing script that generates random JavaScript functions (some with syntax errors).  It tests compilation, decompilation, interpretation, and lots more :)

It&apos;s sorta designed for testing Spidermonkey (Mozilla&apos;s JavaScript engine), but it seems to work against WebKit with a few small tweaks.  So far, it has found six decompilation bugs in JavaScriptCore (see dependencies).

It hangs fairly often due to bug 6985 (cyclic __proto__).  I haven&apos;t run it long enough to be confident that it doesn&apos;t find crashes.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>10460</commentid>
    <comment_count>1</comment_count>
    <who name="Eric Seidel (no email)">eric</who>
    <bug_when>2007-05-09 03:58:32 -0700</bug_when>
    <thetext>adding bug 6985 since it blocks using jsfunfuzz.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>89967</commentid>
    <comment_count>2</comment_count>
    <who name="Cameron Zwarich (cpst)">zwarich</who>
    <bug_when>2008-09-02 19:48:18 -0700</bug_when>
    <thetext>I will happily close this bug now, but if new issues come up from jsfunfuzz it should be reopened.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>334776</commentid>
    <comment_count>3</comment_count>
    <who name="Oliver Hunt">oliver</who>
    <bug_when>2011-01-14 17:35:32 -0800</bug_when>
    <thetext>Lets keep this live for tracking purposes</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>713853</commentid>
    <comment_count>4</comment_count>
    <who name="Gavin Barraclough">barraclough</who>
    <bug_when>2012-09-06 16:49:38 -0700</bug_when>
    <thetext>Only one tracked bug left, so this isn&apos;t particularly useful for tracking porpoises any more.

*** This bug has been marked as a duplicate of bug 23089 ***</thetext>
  </long_desc>
      
      

    </bug>

</bugzilla>