Closed
Bug 622629
Opened 14 years ago
Closed 10 years ago
Firefox 4.0b8 Crash Report [@ WrappedNativeJSGCThingTracer ]
Categories
(Core :: JavaScript Engine, defect)
Tracking
()
RESOLVED
INCOMPLETE
People
(Reporter: cbook, Assigned: bent.mozilla)
References
Details
(Keywords: crash, Whiteboard: [sg:needinfo])
Crash Data
Running mz's fuzzer with beta 8 caused a crash @ WrappedNativeJSGCThingTracer
-> http://crash-stats.mozilla.com/report/index/5fd474e4-2c39-420c-992f-fe8162110103
We need to dig the url from crashstats.
Crashing Thread
Frame Module Signature [Expand] Source
0 xul.dll WrappedNativeJSGCThingTracer js/src/xpconnect/src/xpcwrappednativescope.cpp:363
1 mozjs.dll JS_DHashTableEnumerate js/src/jsdhash.cpp:743
2 xul.dll XPCWrappedNativeScope::TraceJS js/src/xpconnect/src/xpcwrappednativescope.cpp:384
3 mozjs.dll mozjs.dll@0x79bf
Updated•14 years ago
|
Assignee: general → bent.mozilla
Comment 1•14 years ago
|
||
Crash-stats says the URL is
http://lcamtuf.coredump.cx/cross_fuzz/targets/target.svg
Keywords: testcase-wanted
Updated•14 years ago
|
Whiteboard: [sg:needinfo]
Comment 2•14 years ago
|
||
might be the same as Bug 622456 so we will leave it tethered there for now
Updated•14 years ago
|
Crash Signature: [@ WrappedNativeJSGCThingTracer ]
Updated•11 years ago
|
Group: javascript-core-security
Updated•10 years ago
|
Group: javascript-core-security
Updated•10 years ago
|
Group: core-security
Status: NEW → RESOLVED
Closed: 10 years ago
Resolution: --- → INCOMPLETE
Updated•9 years ago
|
Keywords: testcase-wanted
You need to log in
before you can comment on or make changes to this bug.
Description
•