Summary: | sys-devel/gcc: Stack protection and stack clash protection ineffective for VLAs on arm64 (-fstack-protector* and -fstack-clash-protection) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Sam James <sam> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | IN_PROGRESS --- | ||
Severity: | normal | CC: | arm64, toolchain |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | ARM64 | ||
OS: | Linux | ||
URL: | https://developer.arm.com/Arm%20Security%20Center/GCC%20Stack%20Protector%20Vulnerability%20AArch64 | ||
See Also: | https://gcc.gnu.org/bugzilla/show_bug.cgi?id=111411 | ||
Whiteboard: | B3 [upstream] | ||
Package list: | Runtime testing required: | --- |
Description
Sam James
![]() ![]() ![]() ![]() This isn't yet in any snapshots. The patches need work, see https://gcc.gnu.org/bugzilla/show_bug.cgi?id=111411. The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=62544765c5b0fdd996522ac756afbc8e9ac2c703 commit 62544765c5b0fdd996522ac756afbc8e9ac2c703 Author: Sam James <sam@gentoo.org> AuthorDate: 2023-10-15 15:52:53 +0000 Commit: Sam James <sam@gentoo.org> CommitDate: 2023-10-15 15:52:58 +0000 sys-devel/gcc: keyword 13.2.1_p20231014 Closes: https://bugs.gentoo.org/912035 Bug: https://bugs.gentoo.org/914070 Signed-off-by: Sam James <sam@gentoo.org> sys-devel/gcc/gcc-13.2.1_p20231014.ebuild | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) |