FORTIFY build failures (was: Re: [ubuntu/jaunty] conntrack 1:0.9.7-1.1ubuntu1 (Accepted))

Kees Cook kees at ubuntu.com
Mon Nov 24 17:01:17 GMT 2008


On Mon, Nov 24, 2008 at 04:48:29PM +0000, James Westby wrote:
> On Mon, 2008-11-24 at 08:42 -0800, Kees Cook wrote:
> > On Mon, Nov 24, 2008 at 02:11:59AM +0000, James Westby wrote:
> > > On Sun, 2008-11-23 at 17:47 -0800, Kees Cook wrote:
> > > > Well, as you say, it's always different.  The way I've tended to triage
> > > > them is:
> > > 
> > > This is good advice, do you think it should go on the wiki page?
> > 
> > Probably -- I'm not sure how it should be incorporated, though.  The
> > CompilerFlags page currently has a case-by-case analysis of each kind of
> > warning the flags might throw.  What do you think would make a readable
> > arrangement?  I was pondering a separate page for triage, or maybe just a
> > stand-alone section on the page?
> 
> I think having a section at the end where we can collect advice on how
> to deal with some of the failures that this causes would be good.

Okay, I've shoved my original triage list in here (and cleaned it up a
little): https://wiki.ubuntu.com/CompilerFlags#Triage

-- 
Kees Cook
Ubuntu Security Team



More information about the ubuntu-devel mailing list