This regression is caused by https://bugs.webkit.org/show_bug.cgi?id=107674 More precisely: in file ScriptProfiler.cpp it is explicitly declared that "start" and "stop" could be invoked with state == 0 (see "startForPage", "stopForPage", etc.) Accessing "isolate" of a null pointer causes crashes.
Created attachment 184967 [details] Patch
Comment on attachment 184967 [details] Patch View in context: https://bugs.webkit.org/attachment.cgi?id=184967&action=review > Source/WebCore/bindings/v8/ScriptProfiler.cpp:80 > const v8::CpuProfile* profile = state ? In which cases it the state is 0?
Comment on attachment 184967 [details] Patch Clearing flags on attachment: 184967 Committed r141094: <http://trac.webkit.org/changeset/141094>
All reviewed patches have been landed. Closing bug.