<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "https://bugs.webkit.org/page.cgi?id=bugzilla.dtd">

<bugzilla version="5.0.4.1"
          urlbase="https://bugs.webkit.org/"
          
          maintainer="admin@webkit.org"
>

    <bug>
          <bug_id>95492</bug_id>
          
          <creation_ts>2012-08-30 13:10:58 -0700</creation_ts>
          <short_desc>[BlackBerry] ASSERT failure in JSC::MarkedAllocator::allocateSlowCase</short_desc>
          <delta_ts>2012-08-30 13:34:58 -0700</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>WebKit</product>
          <component>WebKit BlackBerry</component>
          <version>528+ (Nightly build)</version>
          <rep_platform>Unspecified</rep_platform>
          <op_sys>Unspecified</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          
          
          <bug_file_loc></bug_file_loc>
          <status_whiteboard></status_whiteboard>
          <keywords></keywords>
          <priority>P2</priority>
          <bug_severity>Normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          <everconfirmed>1</everconfirmed>
          <reporter name="Jacky Jiang">jkjiang</reporter>
          <assigned_to name="Jacky Jiang">jkjiang</assigned_to>
          <cc>manyoso</cc>
    
    <cc>mifenton</cc>
    
    <cc>rwlbuis</cc>
    
    <cc>staikos</cc>
    
    <cc>tonikitoo</cc>
    
    <cc>webkit.review.bot</cc>
    
    <cc>yong.li.webkit</cc>
          

      

      

      

          <comment_sort_order>oldest_to_newest</comment_sort_order>  
          <long_desc isprivate="0" >
    <commentid>708943</commentid>
    <comment_count>0</comment_count>
    <who name="Jacky Jiang">jkjiang</who>
    <bug_when>2012-08-30 13:10:58 -0700</bug_when>
    <thetext>PR:200724
Program terminated with signal 11, Segmentation fault.
#0  0x77bdd87a in JSC::MarkedAllocator::allocateSlowCase (this=0x7960b51c) at
/home/jacky/dev/webkit/Source/JavaScriptCore/heap/MarkedAllocator.cpp:73
73         
ASSERT(m_heap-&gt;globalData()-&gt;apiLock().currentThreadIsHoldingLock());
(gdb) bt
#0  0x77bdd87a in JSC::MarkedAllocator::allocateSlowCase (this=0x7960b51c) at
/home/jacky/dev/webkit/Source/JavaScriptCore/heap/MarkedAllocator.cpp:73
#1  0x7a019046 in JSC::MarkedAllocator::allocate (this=0x7960b51c) at
/home/jacky/dev/webkit/Source/JavaScriptCore/heap/MarkedAllocator.h:83
#2  0x7a019116 in JSC::MarkedSpace::allocateWithDestructor (this=0x7960b51c,
bytes=16)
    at /home/jacky/dev/webkit/Source/JavaScriptCore/heap/MarkedSpace.h:197
#3  0x7a0193cc in JSC::Heap::allocateWithDestructor (this=0x7960b4d0, bytes=16)
at /home/jacky/dev/webkit/Source/JavaScriptCore/heap/Heap.h:365
#4  0x7a020840 in JSC::allocateCell&lt;JSC::JSAPIValueWrapper&gt; (heap=...) at
/home/jacky/dev/webkit/Source/JavaScriptCore/runtime/JSCell.h:340
#5  0x7a01ded2 in JSC::JSAPIValueWrapper::create (exec=0x776efcc0, value=...)
    at
/home/jacky/dev/webkit/Source/JavaScriptCore/runtime/JSAPIValueWrapper.h:49
#6  0x7a01e008 in JSC::jsAPIValueWrapper (exec=0x776efcc0, value=...) at
/home/jacky/dev/webkit/Source/JavaScriptCore/runtime/JSAPIValueWrapper.h:73
#7  0x7a01e066 in toRef (exec=0x776efcc0, v=...) at
/home/jacky/dev/webkit/Source/JavaScriptCore/../JavaScriptCore/API/APICast.h:114
#8  0x7a005d02 in BlackBerry::WebKit::WebPagePrivate::executeJavaScript
(this=0x79567510, 
    scriptUTF8=0x758aa4b0 &quot;require(\&quot;plugins/tabbar/index\&quot;).setVisible();&quot;,
returnType=@0x773ffbcc: 2025659849, returnValue=...)
    at /home/jacky/dev/webkit/Source/WebKit/blackberry/Api/WebPage.cpp:777
#9  0x7a005e22 in BlackBerry::WebKit::WebPage::executeJavaScript
(this=0x7956c608, script=0x758aa4b0
&quot;require(\&quot;plugins/tabbar/index\&quot;).setVisible();&quot;, 
    returnType=@0x773ffbcc: 2025659849, returnValue=...) at
/home/jacky/dev/webkit/Source/WebKit/blackberry/Api/WebPage.cpp:811</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>708964</commentid>
    <comment_count>1</comment_count>
      <attachid>161540</attachid>
    <who name="Jacky Jiang">jkjiang</who>
    <bug_when>2012-08-30 13:25:04 -0700</bug_when>
    <thetext>Created attachment 161540
Patch</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>708973</commentid>
    <comment_count>2</comment_count>
      <attachid>161540</attachid>
    <who name="Jacky Jiang">jkjiang</who>
    <bug_when>2012-08-30 13:34:51 -0700</bug_when>
    <thetext>Comment on attachment 161540
Patch

Committed, http://trac.webkit.org/changeset/127183.</thetext>
  </long_desc>
      
          <attachment
              isobsolete="1"
              ispatch="1"
              isprivate="0"
          >
            <attachid>161540</attachid>
            <date>2012-08-30 13:25:04 -0700</date>
            <delta_ts>2012-08-30 13:34:51 -0700</delta_ts>
            <desc>Patch</desc>
            <filename>bug-95492-20120830162453.patch</filename>
            <type>text/plain</type>
            <size>1579</size>
            <attacher name="Jacky Jiang">jkjiang</attacher>
            
              <data encoding="base64">U3VidmVyc2lvbiBSZXZpc2lvbjogMTI3MTcyCmRpZmYgLS1naXQgYS9Tb3VyY2UvV2ViS2l0L2Js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</data>
<flag name="review"
          id="172384"
          type_id="1"
          status="+"
          setter="yong.li.webkit"
    />
          </attachment>
      

    </bug>

</bugzilla>