Changeset 287621 in webkit
- Timestamp:
- Jan 5, 2022, 10:20:44 AM (5 years ago)
- Location:
- branches/safari-612-branch
- Files:
-
- 1 added
- 3 edited
-
JSTests/ChangeLog (modified) (1 diff)
-
JSTests/stress/get-array-length-reuse.js (added)
-
Source/JavaScriptCore/ChangeLog (modified) (1 diff)
-
Source/JavaScriptCore/dfg/DFGSpeculativeJIT.cpp (modified) (1 diff)
Legend:
- Unmodified
- Added
- Removed
-
branches/safari-612-branch/JSTests/ChangeLog
r286230 r287621 1 2022-01-05 Russell Epstein <repstein@apple.com> 2 3 Cherry-pick r285978. rdar://problem/87124911 4 5 [JSC] TypedArray GetArrayLength should not use Reuse 6 https://bugs.webkit.org/show_bug.cgi?id=233299 7 rdar://85502079 8 9 Reviewed by Robin Morisset. 10 11 JSTests: 12 13 * stress/get-array-length-reuse.js: Added. 14 (foo): 15 16 Source/JavaScriptCore: 17 18 We should not perform OSR exit after assigning a value to a reused register, otherwise, 19 OSR exit cannot recover the proper value. Now TypedArray GetArrayLength can perform 20 OSR exit after loading a length, so we should not use reused register for length. 21 22 * dfg/DFGSpeculativeJIT.cpp: 23 24 git-svn-id: https://svn.webkit.org/repository/webkit/trunk@285978 268f45cc-cd09-0410-ab3c-d52691b4dbfc 25 26 2021-11-17 Yusuke Suzuki <ysuzuki@apple.com> 27 28 [JSC] TypedArray GetArrayLength should not use Reuse 29 https://bugs.webkit.org/show_bug.cgi?id=233299 30 rdar://85502079 31 32 Reviewed by Robin Morisset. 33 34 * stress/get-array-length-reuse.js: Added. 35 (foo): 36 1 37 2021-11-11 Alan Coon <alancoon@apple.com> 2 38 -
branches/safari-612-branch/Source/JavaScriptCore/ChangeLog
r286230 r287621 1 2022-01-05 Russell Epstein <repstein@apple.com> 2 3 Cherry-pick r285978. rdar://problem/87124911 4 5 [JSC] TypedArray GetArrayLength should not use Reuse 6 https://bugs.webkit.org/show_bug.cgi?id=233299 7 rdar://85502079 8 9 Reviewed by Robin Morisset. 10 11 JSTests: 12 13 * stress/get-array-length-reuse.js: Added. 14 (foo): 15 16 Source/JavaScriptCore: 17 18 We should not perform OSR exit after assigning a value to a reused register, otherwise, 19 OSR exit cannot recover the proper value. Now TypedArray GetArrayLength can perform 20 OSR exit after loading a length, so we should not use reused register for length. 21 22 * dfg/DFGSpeculativeJIT.cpp: 23 24 git-svn-id: https://svn.webkit.org/repository/webkit/trunk@285978 268f45cc-cd09-0410-ab3c-d52691b4dbfc 25 26 2021-11-17 Yusuke Suzuki <ysuzuki@apple.com> 27 28 [JSC] TypedArray GetArrayLength should not use Reuse 29 https://bugs.webkit.org/show_bug.cgi?id=233299 30 rdar://85502079 31 32 Reviewed by Robin Morisset. 33 34 We should not perform OSR exit after assigning a value to a reused register, otherwise, 35 OSR exit cannot recover the proper value. Now TypedArray GetArrayLength can perform 36 OSR exit after loading a length, so we should not use reused register for length. 37 38 * dfg/DFGSpeculativeJIT.cpp: 39 1 40 2021-11-11 Alan Coon <alancoon@apple.com> 2 41 -
branches/safari-612-branch/Source/JavaScriptCore/dfg/DFGSpeculativeJIT.cpp
r285542 r287621 8359 8359 ASSERT(node->arrayMode().isSomeTypedArrayView()); 8360 8360 SpeculateCellOperand base(this, node->child1()); 8361 GPRTemporary result(this , Reuse, base);8361 GPRTemporary result(this); 8362 8362 GPRReg baseGPR = base.gpr(); 8363 8363 GPRReg resultGPR = result.gpr();
Note:
See TracChangeset
for help on using the changeset viewer.