• Mythri A's avatar
    [ic] Fix a bug in StoreOwnIC when storing NaN values · b6133551
    Mythri A authored
    We use StoreOwnIC to initialize the object after creating a new object
    with CreateObjectLiteral. CreateObjectLiteral stores kHoleNaNInt64
    to indicate an uninitialized double field. When we actually try
    to store a NaN value into that field later using StoreOwnIC, IC avoids
    actually storing the new value since the existing value is "same as"
    the value we try to write. The float comparison treats all NaNs as
    equal. In this particular case, we should actually store the new value
    since kHoleNaNInt64 value is used to represent an uninitialized field.
    
    This cl just stores the new value even when the existing value is same
    as the new value for double fields. The check is still required to
    correctly track const fields.
    
    Bug: chromium:1082293
    Change-Id: Ib37061802f2403545cffa6d6fef08be074b0825d
    Reviewed-on: https://chromium-review.googlesource.com/c/v8/v8/+/2228886Reviewed-by: 's avatarIgor Sheludko <ishell@chromium.org>
    Commit-Queue: Mythri Alle <mythria@chromium.org>
    Cr-Commit-Position: refs/heads/master@{#68167}
    b6133551
Name
Last commit
Last update
..
benchmarks Loading commit data...
cctest Loading commit data...
common Loading commit data...
debugger Loading commit data...
debugging Loading commit data...
fuzzer Loading commit data...
fuzzilli Loading commit data...
inspector Loading commit data...
intl Loading commit data...
js-perf-test Loading commit data...
memory Loading commit data...
message Loading commit data...
mjsunit Loading commit data...
mkgrokdump Loading commit data...
mozilla Loading commit data...
test262 Loading commit data...
torque Loading commit data...
unittests Loading commit data...
wasm-api-tests Loading commit data...
wasm-js Loading commit data...
wasm-spec-tests Loading commit data...
webkit Loading commit data...
BUILD.gn Loading commit data...
OWNERS Loading commit data...