Changeset 164813 in webkit
- Timestamp:
- Feb 27, 2014 10:47:54 AM (10 years ago)
- Location:
- trunk/Source/JavaScriptCore
- Files:
-
- 2 edited
Legend:
- Unmodified
- Added
- Removed
-
trunk/Source/JavaScriptCore/ChangeLog
r164812 r164813 1 2014-02-27 Julien Brianceau <jbriance@cisco.com> 2 3 Fix 32-bit V_JITOperation_EJ callOperation introduced in r162652. 4 https://bugs.webkit.org/show_bug.cgi?id=129420 5 6 Reviewed by Geoffrey Garen. 7 8 * dfg/DFGSpeculativeJIT.h: 9 (JSC::DFG::SpeculativeJIT::callOperation): Payload and tag are swapped. 10 Also, EABI_32BIT_DUMMY_ARG is missing for arm EABI and mips. 11 1 12 2014-02-27 Filip Pizlo <fpizlo@apple.com> 2 13 -
trunk/Source/JavaScriptCore/dfg/DFGSpeculativeJIT.h
r164764 r164813 1641 1641 JITCompiler::Call callOperation(V_JITOperation_EJ operation, GPRReg arg1Tag, GPRReg arg1Payload) 1642 1642 { 1643 m_jit.setupArgumentsWithExecState( arg1Tag, arg1Payload);1643 m_jit.setupArgumentsWithExecState(EABI_32BIT_DUMMY_ARG arg1Payload, arg1Tag); 1644 1644 return appendCallWithExceptionCheck(operation); 1645 1645 }
Note: See TracChangeset
for help on using the changeset viewer.