Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(391)

Unified Diff: test/mjsunit/regress/regress-crbug-465671-null.js

Issue 1023483003: Parser: Fix crash on stack overflow when lazy-parsing arrow functions (Closed) Base URL: https://chromium.googlesource.com/v8/v8.git@master
Patch Set: Fix nits as per review comments Created 5 years, 9 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View side-by-side diff with in-line comments
Download patch
« src/parser.cc ('K') | « test/mjsunit/regress/regress-crbug-465671.js ('k') | no next file » | no next file with comments »
Expand Comments ('e') | Collapse Comments ('c') | Show Comments Hide Comments ('s')
Index: test/mjsunit/regress/regress-crbug-465671-null.js
diff --git a/test/mjsunit/compiler/regress-451012.js b/test/mjsunit/regress/regress-crbug-465671-null.js
similarity index 52%
copy from test/mjsunit/compiler/regress-451012.js
copy to test/mjsunit/regress/regress-crbug-465671-null.js
index bffc8bc5bdfac32bb561a24153d00157b26ac3a5..d24599c38526aca26943669a1b5e153ee652bd9a 100644
--- a/test/mjsunit/compiler/regress-451012.js
+++ b/test/mjsunit/regress/regress-crbug-465671-null.js
@@ -2,11 +2,15 @@
// Use of this source code is governed by a BSD-style license that can be
// found in the LICENSE file.
-"use strict";
+// Flags: --harmony-arrow-functions
+
+// This used to trigger a segfault because of NULL being accessed.
function f() {
- for (let v; v; ) {
- let x;
+ var a = [10];
+ try {
+ f();
+ } catch(e) {
+ a.map((v) => v + 1);
}
}
-
f();
« src/parser.cc ('K') | « test/mjsunit/regress/regress-crbug-465671.js ('k') | no next file » | no next file with comments »

Powered by Google App Engine
This is Rietveld 408576698