<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "https://bugs.webkit.org/page.cgi?id=bugzilla.dtd">

<bugzilla version="5.0.4.1"
          urlbase="https://bugs.webkit.org/"
          
          maintainer="admin@webkit.org"
>

    <bug>
          <bug_id>136488</bug_id>
          
          <creation_ts>2014-09-03 11:42:32 -0700</creation_ts>
          <short_desc>FTL In implementation sets callReturnLocation incorrectly leading to crashes beneath repatchCall()</short_desc>
          <delta_ts>2014-09-03 11:50:43 -0700</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>WebKit</product>
          <component>JavaScriptCore</component>
          <version>528+ (Nightly build)</version>
          <rep_platform>All</rep_platform>
          <op_sys>All</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          
          
          <bug_file_loc></bug_file_loc>
          <status_whiteboard></status_whiteboard>
          <keywords></keywords>
          <priority>P2</priority>
          <bug_severity>Normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          <everconfirmed>1</everconfirmed>
          <reporter name="Filip Pizlo">fpizlo</reporter>
          <assigned_to name="Filip Pizlo">fpizlo</assigned_to>
          <cc>barraclough</cc>
    
    <cc>ggaren</cc>
    
    <cc>mark.lam</cc>
    
    <cc>mhahnenb</cc>
    
    <cc>mmirman</cc>
    
    <cc>msaboff</cc>
    
    <cc>nrotem</cc>
    
    <cc>oliver</cc>
    
    <cc>sam</cc>
          

      

      

      

          <comment_sort_order>oldest_to_newest</comment_sort_order>  
          <long_desc isprivate="0" >
    <commentid>1032945</commentid>
    <comment_count>0</comment_count>
    <who name="Filip Pizlo">fpizlo</who>
    <bug_when>2014-09-03 11:42:32 -0700</bug_when>
    <thetext>Patch forthcoming.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1032950</commentid>
    <comment_count>1</comment_count>
      <attachid>237564</attachid>
    <who name="Filip Pizlo">fpizlo</who>
    <bug_when>2014-09-03 11:43:57 -0700</bug_when>
    <thetext>Created attachment 237564
the patch</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1032953</commentid>
    <comment_count>2</comment_count>
      <attachid>237564</attachid>
    <who name="Mark Hahnenberg">mhahnenb</who>
    <bug_when>2014-09-03 11:46:52 -0700</bug_when>
    <thetext>Comment on attachment 237564
the patch

r=me</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1032958</commentid>
    <comment_count>3</comment_count>
    <who name="Filip Pizlo">fpizlo</who>
    <bug_when>2014-09-03 11:50:43 -0700</bug_when>
    <thetext>Landed in http://trac.webkit.org/changeset/173213</thetext>
  </long_desc>
      
          <attachment
              isobsolete="0"
              ispatch="1"
              isprivate="0"
          >
            <attachid>237564</attachid>
            <date>2014-09-03 11:43:57 -0700</date>
            <delta_ts>2014-09-03 11:46:51 -0700</delta_ts>
            <desc>the patch</desc>
            <filename>blah.patch</filename>
            <type>text/plain</type>
            <size>2029</size>
            <attacher name="Filip Pizlo">fpizlo</attacher>
            
              <data encoding="base64">SW5kZXg6IFNvdXJjZS9KYXZhU2NyaXB0Q29yZS9DaGFuZ2VMb2cKPT09PT09PT09PT09PT09PT09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</data>
<flag name="review"
          id="262293"
          type_id="1"
          status="+"
          setter="mhahnenb"
    />
          </attachment>
      

    </bug>

</bugzilla>