[Bug 301626] [NEW] thunderbird disables FORTIFY

Kees Cook kees at ubuntu.com
Mon Nov 24 11:56:01 UTC 2008


*** This bug is a security vulnerability ***

Public security bug reported:

Binary package hint: thunderbird

Thunderbird is still compiled with -U_FORTIFY_SOURCE, which should be
removed as xulrunner has been fixed.

# workaround multiple crashes in xulrunner in Intrepid (at least 3 in realpath())
# caused by Intrepid shipping gcc 4.3 with -D_FORTIFY_SOURCE=2 by default
CPPFLAGS=-U_FORTIFY_SOURCE
export CPPFLAGS
$(warning export CPPFLAGS=$(CPPFLAGS))

** Affects: thunderbird (Ubuntu)
     Importance: Medium
         Status: Confirmed

** Visibility changed to: Public

** Changed in: thunderbird (Ubuntu)
   Importance: Undecided => Medium
       Status: New => Confirmed

-- 
thunderbird disables FORTIFY
https://bugs.launchpad.net/bugs/301626
You received this bug notification because you are a member of Mozilla
Bugs, which is subscribed to thunderbird in ubuntu.




More information about the Ubuntu-mozillateam-bugs mailing list