DescriptionX87: [Interpreter] Fix incorrect frame walking in arguments create stubs.
port 40f345416f00761c79b9d2094c2e12e798329935 (r36181)
original commit message:
The previous approach taken by FastNew[Sloppy,Strict,Rest]ArgumentsStub
looked at the function slot in order to skip stub frames
and find the JS frame. However, stub frames do not have a
function slot (in fact their fixed frame ends one slot
before the JS frame's function slot). Therefore, if this
location in the stub frame happens to have the function
object the create arguments stubs won't skip this frame
correctly.
Replace this approach with one where the stub is
specialized to either skip a frame if required (since
there will only ever be one extra frame on Ignition
the loop approach isn't necessary).
BUG=
Committed: https://crrev.com/d748daa3552cd713a47294828d45865dfee064a0
Cr-Commit-Position: refs/heads/master@{#36197}
Patch Set 1 #
Messages
Total messages: 8 (3 generated)
|