WebKit Bugzilla
New
Browse
Log In
×
Sign in with GitHub
or
Remember my login
Create Account
·
Forgot Password
Forgotten password account recovery
RESOLVED FIXED
88355
Entry into JSC should CRASH() if the Heap is busy
https://bugs.webkit.org/show_bug.cgi?id=88355
Summary
Entry into JSC should CRASH() if the Heap is busy
Mark Hahnenberg
Reported
2012-06-05 12:18:44 PDT
Interpreter::execute() returns jsNull() right now if we try to enter it while the Heap is busy (e.g. with a collection), which is okay, but some code paths that call Interpreter::execute() allocate objects before checking if the Heap is busy. Attempting to execute JS code while the Heap is busy should not be allowed and should be enforced by a release-mode CRASH() to prevent vague, unhelpful backtraces later on if somebody makes a mistake. Normally, recursively executing JS code is okay, e.g. for evals, but it should not occur during a Heap allocation or collection because the Heap is not guaranteed to be in a consistent state (especially during collections). We are protected from executing JS on the same Heap concurrently on two separate threads because they must each take a JSLock first. However, we are not protected from reentrant execution of JS on the same thread because JSLock allows reentrancy. Therefore, we should fail early if we detect an entrance into JS code while the Heap is busy.
Attachments
Patch
(5.96 KB, patch)
2012-06-05 13:03 PDT
,
Mark Hahnenberg
ggaren
: review+
Details
Formatted Diff
Diff
View All
Add attachment
proposed patch, testcase, etc.
Mark Hahnenberg
Comment 1
2012-06-05 13:03:25 PDT
Created
attachment 145857
[details]
Patch
Geoffrey Garen
Comment 2
2012-06-05 13:14:57 PDT
Comment on
attachment 145857
[details]
Patch r=me Can we put one of these assertions into the allocation slow path as well?
Mark Hahnenberg
Comment 3
2012-06-05 13:20:15 PDT
> Can we put one of these assertions into the allocation slow path as well?
Will do.
Mark Hahnenberg
Comment 4
2012-06-05 13:38:37 PDT
Committed
r119518
: <
http://trac.webkit.org/changeset/119518
>
Geoffrey Garen
Comment 5
2012-06-06 13:32:05 PDT
> ASSERT(!m_heap->isBusy());
Actually, I had a CRASH() on the allocation slow path in mind.
Note
You need to
log in
before you can comment on or make changes to this bug.
Top of Page
Format For Printing
XML
Clone This Bug