[Bug 1820798] Re: hardening-check: add support for detecting stack clash protected binaries

Alex Murray alex.murray at canonical.com
Tue Apr 9 07:43:19 UTC 2019


The attached should is more robust to optimisation in gcc and is updated
against the latest devscripts in disco

** Patch added: "devscripts_2.19.4ubuntu0.1.debdiff"
   https://bugs.launchpad.net/ubuntu/+source/devscripts/+bug/1820798/+attachment/5254407/+files/devscripts_2.19.4ubuntu0.1.debdiff

-- 
You received this bug notification because you are a member of Ubuntu
Sponsors Team, which is subscribed to the bug report.
https://bugs.launchpad.net/bugs/1820798

Title:
  hardening-check: add support for detecting stack clash protected
  binaries

Status in devscripts package in Ubuntu:
  New

Bug description:
  The security team is in the process of making -fstack-clash-protection
  enabled by default in gcc-8/9 for 19.10 / 20.04. To support this it is
  useful to be able to detect binaries which include this new feature
  via hardening-check. Unlike previous features this can only be
  detected by looking for the sequence of instructions which perform
  this feature in the disassembly output via objdump.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/devscripts/+bug/1820798/+subscriptions



More information about the Ubuntu-sponsors mailing list