Summary: | app-emulation/frodo _FORTIFY_SOURCE indicates presence of overflow | ||
---|---|---|---|
Product: | Gentoo Linux | Reporter: | Diego Elio Pettenò (RETIRED) <flameeyes> |
Component: | Current packages | Assignee: | No maintainer - Look at https://wiki.gentoo.org/wiki/Project:Proxy_Maintainers if you want to take care of it <maintainer-needed> |
Status: | RESOLVED FIXED | ||
Severity: | major | CC: | hardened, signals, treecleaner |
Priority: | High | Keywords: | PMASKED |
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | pending removal: 2011-09-04 | ||
Package list: | Runtime testing required: | --- | |
Bug Depends on: | |||
Bug Blocks: | 259417 | ||
Attachments: |
Build log
Patch to fix the off-by-one overflow |
Description
Diego Elio Pettenò (RETIRED)
![]() Created attachment 250123 [details]
Build log
Created attachment 260995 [details, diff] Patch to fix the off-by-one overflow This patch takes care of the FORTIFY_SOURCE error, but there seem to be many other issues with frodo on Unix-like OSes. It hasn't been updated upstream for 10 years but the author is supposed to be working on a complete re-write for version 5: see http://frodo.cebix.net/ As far as I can see, there is no advantage to running this instead of app-emulation/vice which works very well. So I would vote to remove this from the tree, at least until version 5 is available. Unmaintained package with security problems, CCing treecleaners for removal gone |