runtime: fix conservative and precise GC freeing live objects - #5822
Draft
davecheney wants to merge 1 commit into
Draft
davecheney wants to merge 1 commit into
davecheney wants to merge 1 commit into
Conversation
The conservative and precise GCs can free objects that are still in use on bare-metal targets and native -scheduler=tasks builds. This is possibly exposed by commit c9aa88b ("runtime (gc_blocks.go): use a linked stack to scan marked objects"). A pointer held only in a callee-saved register when a collection runs is not marked, so the object it points to is freed. Seen on cortex-m-qemu at -opt=0 and -opt=z, riscv-qemu at -opt=0, and native -scheduler=tasks at -opt=0. This change scans the current goroutine stack while those registers are still saved on it, which fixes the missed roots. It adds a regression test, gc-register-root.go, and a runtime package test, and runs the runtime package tests in CI. gc-register-root.go is skipped on simavr, where runtime.GC does not return, and on riscv-qemu, where it can time out under load. Both are unrelated to this change.
davecheney
force-pushed
the
davecheney-gc-missed-root-bug
branch
from
October 3, 2026 04:15
5d5edbd to
54fe077
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
The conservative and precise GCs can free objects that are still in use on bare-metal targets and native -scheduler=tasks builds. This is possibly exposed by commit c9aa88b ("runtime (gc_blocks.go): use a linked stack to scan marked objects").
A pointer held only in a callee-saved register when a collection runs is not marked, so the object it points to is freed. Seen on cortex-m-qemu at -opt=0 and -opt=z, riscv-qemu at -opt=0, and native -scheduler=tasks at -opt=0.
This change scans the current goroutine stack while those registers are still saved on it, which fixes the missed roots.
It adds a regression test, gc-register-root.go, and a runtime package test, and runs the runtime package tests in CI. gc-register-root.go is skipped on simavr, where runtime.GC does not return, and on riscv-qemu, where it can time out under load. Both are unrelated to this change.