Bug #79801 [Opn]: Segfault with JIT
| From: | sebastian@php.net | Date: | Tue, 07 Jul 2020 05:20:24 +0000 |
| Subject: | Bug #79801 [Opn]: Segfault with JIT | ||
| References: | 1 | Groups: | php.bugs |
| Request: | Send a blank email to php-bugs+get-227838@lists.php.net to get a copy of this message | ||
Edit report at https://bugs.php.net/bug.php?id=79801&edit=1
ID: 79801
Updated by: sebastian@php.net
Reported by: sebastian@php.net
Summary: Segfault with JIT
Status: Open
Type: Bug
Package: Scripting Engine problem
Operating System: Linux
PHP Version: 8.0Git-2020-07-07 (Git)
Block user comment: N
Private report: N
New Comment:
"$ ./tools/composer" should, of course, have been "$ ./tools/composer install".
Previous Comments:
------------------------------------------------------------------------
[2020-07-07 04:46:48] sebastian@php.net
Description:
------------
$ git clone https://github.com/sebastianbergmann/phpunit.git
$ cd phpunit
$ ./tools/composer
$ gdb /usr/local/php-8.0/bin/php
(gdb) r -d opcache.enable=1 -d opcache.enable_cli=1 -d opcache.optimization_level=-1 -d
opcache.jit_buffer_size=64M -d opcache.jit=1255 ./phpunit --filter testConstraintIsEqual2#3
Starting program: /usr/local/php-8.0/bin/php -d opcache.enable=1 -d opcache.enable_cli=1 -d
opcache.optimization_level=-1 -d opcache.jit_buffer_size=64M -d opcache.jit=1255 ./phpunit --filter
testConstraintIsEqual2#3
[Thread debugging using libthread_db enabled]
Using host libthread_db library "/lib64/libthread_db.so.1".
[Detaching after vfork from child process 368029]
[Detaching after fork from child process 368030]
PHPUnit 9.3-g58e8402ec by Sebastian Bergmann and contributors.
Runtime: PHP 8.0.0-dev
Configuration: /usr/local/src/phpunit/phpunit.xml
Program received signal SIGSEGV, Segmentation fault.
0x000000000092dd11 in spl_offset_convert_to_long (offset=0x7ffff46155a0) at
/usr/local/src/php/src/ext/spl/spl_engine.c:46
46 if (ZEND_HANDLE_NUMERIC(Z_STR_P(offset), idx)) {
(gdb) bt
#0 0x000000000092dd11 in spl_offset_convert_to_long (offset=0x7ffff46155a0) at
/usr/local/src/php/src/ext/spl/spl_engine.c:46
#1 0x0000000000957dde in spl_fixedarray_object_read_dimension_helper (intern=0x7ffff37f4960,
offset=0x7ffff46155a0) at /usr/local/src/php/src/ext/spl/spl_fixedarray.c:320
#2 0x0000000000957f78 in spl_fixedarray_object_read_dimension (object=0x7ffff37f49a0,
offset=0x7ffff46155a0, type=0, rv=0x7ffff4615590) at
/usr/local/src/php/src/ext/spl/spl_fixedarray.c:362
#3 0x00007ffff4508896 in zend_jit_fetch_dim_obj_r_helper (container=0x7ffff4615550,
dim=0x7ffff46155a0, result=0x7ffff4615590) at ext/opcache/jit/zend_jit_helpers.c:725
#4 0x0000000048048891 in ?? ()
#5 0x00007fffffff9f60 in ?? ()
#6 0x0000000048000557 in ?? ()
#7 0x00007fff00000008 in ?? ()
#8 0x00007ffff4614020 in ?? ()
#9 0x0000000040253c10 in ?? ()
#10 0x0000000300000308 in ?? ()
#11 0x0000000000000002 in ?? ()
#12 0x0000000040b14f58 in ?? ()
#13 0x00007ffff4614e30 in ?? ()
#14 0x0000000000000000 in ?? ()
------------------------------------------------------------------------
--
Edit this bug report at https://bugs.php.net/bug.php?id=79801&edit=1