| Summary: | WebAssembly validation for call_indirect is incorrect | ||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Product: | WebKit | Reporter: | Tadeu Zagallo <tzagallo> | ||||||||||||
| Component: | JavaScriptCore | Assignee: | Tadeu Zagallo <tzagallo> | ||||||||||||
| Status: | RESOLVED FIXED | ||||||||||||||
| Severity: | Normal | CC: | ews-watchlist, keith_miller, mark.lam, msaboff, saam, webkit-bug-importer | ||||||||||||
| Priority: | P2 | Keywords: | InRadar | ||||||||||||
| Version: | WebKit Nightly Build | ||||||||||||||
| Hardware: | Unspecified | ||||||||||||||
| OS: | Unspecified | ||||||||||||||
| Attachments: |
|
||||||||||||||
|
Description
Tadeu Zagallo
2020-07-28 15:36:46 PDT
Created attachment 405426 [details]
Patch
Found 1 new test failure: workers/wasm-hashset.html Created attachment 405458 [details]
Patch
Comment on attachment 405458 [details] Patch View in context: https://bugs.webkit.org/attachment.cgi?id=405458&action=review > Source/JavaScriptCore/wasm/WasmFunctionParser.h:639 > + if (i > firstArgumentIndex) why is this the fix? Created attachment 405490 [details]
Patch
Created attachment 405515 [details]
Patch for landing
ChangeLog entry in Source/JavaScriptCore/ChangeLog contains OOPS!. Created attachment 405516 [details]
Patch for landing
Committed r265065: <https://trac.webkit.org/changeset/265065> All reviewed patches have been landed. Closing bug and clearing flags on attachment 405516 [details]. |