...
Created attachment 222398 [details] the patch
Comment on attachment 222398 [details] the patch There's still some bug here.
This appears to be revealing a latent FTL bug. Yuck. I am investigating.
It looks like a bug with arity fixup. Those are the best! I'm still investigating.
Aha! The bug is that the arityFixup code uses regT3, which is a callee-save. Hence if we have an FTL->FTL call that requires fixup, we will clobber things. This should be an easy fix.
Latent bugs fixed in http://trac.webkit.org/changeset/162958, coming back to working on this.
Created attachment 222503 [details] the patch
Landed in http://trac.webkit.org/changeset/162969