| Index: src/x64/stub-cache-x64.cc
|
| diff --git a/src/x64/stub-cache-x64.cc b/src/x64/stub-cache-x64.cc
|
| index 765a90c0239bc91fdbe9eaebdb329c41c60812a5..ab61390f0f9658244d6133380ef54a3d65e9db13 100644
|
| --- a/src/x64/stub-cache-x64.cc
|
| +++ b/src/x64/stub-cache-x64.cc
|
| @@ -216,7 +216,12 @@ void StubCompiler::GenerateLoadGlobalFunctionPrototype(MacroAssembler* masm,
|
|
|
|
|
| void StubCompiler::GenerateDirectLoadGlobalFunctionPrototype(
|
| - MacroAssembler* masm, int index, Register prototype) {
|
| + MacroAssembler* masm, int index, Register prototype, Label* miss) {
|
| + // Check we're still in the same context.
|
| + __ Move(prototype, Top::global());
|
| + __ cmpq(Operand(rsi, Context::SlotOffset(Context::GLOBAL_INDEX)),
|
| + prototype);
|
| + __ j(not_equal, miss);
|
| // Get the global function with the given index.
|
| JSFunction* function = JSFunction::cast(Top::global_context()->get(index));
|
| // Load its initial map. The global functions all have initial maps.
|
| @@ -964,7 +969,7 @@ Object* CallStubCompiler::CompileCallConstant(Object* object,
|
| __ j(above_equal, &miss);
|
| // Check that the maps starting from the prototype haven't changed.
|
| GenerateDirectLoadGlobalFunctionPrototype(
|
| - masm(), Context::STRING_FUNCTION_INDEX, rax);
|
| + masm(), Context::STRING_FUNCTION_INDEX, rax, &miss);
|
| CheckPrototypes(JSObject::cast(object->GetPrototype()), rax, holder,
|
| rbx, rdx, rdi, name, &miss);
|
| }
|
| @@ -983,7 +988,7 @@ Object* CallStubCompiler::CompileCallConstant(Object* object,
|
| __ bind(&fast);
|
| // Check that the maps starting from the prototype haven't changed.
|
| GenerateDirectLoadGlobalFunctionPrototype(
|
| - masm(), Context::NUMBER_FUNCTION_INDEX, rax);
|
| + masm(), Context::NUMBER_FUNCTION_INDEX, rax, &miss);
|
| CheckPrototypes(JSObject::cast(object->GetPrototype()), rax, holder,
|
| rbx, rdx, rdi, name, &miss);
|
| }
|
| @@ -1004,7 +1009,7 @@ Object* CallStubCompiler::CompileCallConstant(Object* object,
|
| __ bind(&fast);
|
| // Check that the maps starting from the prototype haven't changed.
|
| GenerateDirectLoadGlobalFunctionPrototype(
|
| - masm(), Context::BOOLEAN_FUNCTION_INDEX, rax);
|
| + masm(), Context::BOOLEAN_FUNCTION_INDEX, rax, &miss);
|
| CheckPrototypes(JSObject::cast(object->GetPrototype()), rax, holder,
|
| rbx, rdx, rdi, name, &miss);
|
| }
|
| @@ -1358,7 +1363,8 @@ Object* CallStubCompiler::CompileStringCharAtCall(Object* object,
|
| // Check that the maps starting from the prototype haven't changed.
|
| GenerateDirectLoadGlobalFunctionPrototype(masm(),
|
| Context::STRING_FUNCTION_INDEX,
|
| - rax);
|
| + rax,
|
| + &miss);
|
| ASSERT(object != holder);
|
| CheckPrototypes(JSObject::cast(object->GetPrototype()), rax, holder,
|
| rbx, rdx, rdi, name, &miss);
|
| @@ -1429,7 +1435,8 @@ Object* CallStubCompiler::CompileStringCharCodeAtCall(
|
| // Check that the maps starting from the prototype haven't changed.
|
| GenerateDirectLoadGlobalFunctionPrototype(masm(),
|
| Context::STRING_FUNCTION_INDEX,
|
| - rax);
|
| + rax,
|
| + &miss);
|
| ASSERT(object != holder);
|
| CheckPrototypes(JSObject::cast(object->GetPrototype()), rax, holder,
|
| rbx, rdx, rdi, name, &miss);
|
|
|