List Archive: gentoo-hardened
I haven't seen any posts with problems.<br>I use x86 and haven't noticed any problems either, but I haven't used that system much.<br>Check bugzilla.<br><br>Pasting the original announcement below.<br><br><br><div class="gmail_quote">
2009/10/18 Grant <span dir="ltr"><<a href="mailto:emailgrant@...">emailgrant@...</a>></span><br><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">
I've been stuck on gcc-3.4.6 on my hardened profile system (currently:<br>
hardened/linux/amd64/10.0) for a very long time. Now it looks like<br>
gcc-4.3.4 has been stabilized for hardened profiles. Has anyone<br>
tested it? This system is critical for me, so I've got to be careful.<br>
<font color="#888888"><br>
- Grant<br>
<br>
</font></blockquote></div><br>Hello <span class="il">Hardened</span> users, this is just a quick heads up. GCC 4.3.4 will be going<br>
stable on <span class="il">hardened</span> profiles shortly. Unlike <span class="il">Hardened</span> GCC 3.4.6, this version<br>
lacks default SSP building. However, FORTIFY_SOURCE=2<br>
and -fno-strict-overflow are now enabled by default. Other <span class="il">Hardened</span> compiler<br>
features (ex. default relro, bind now & pic/pie building) remain enabled - no<br>
change from 3.4.6.<br>
<br>
It is regretable this must be done before GCC4 is SSP-by-default enabled.<br>
However, more and more packages require the newer GCC. The stable GCC on<br>
<span class="il">Hardened</span> has been GCC 3.4.6 for a long time, but this has become an untenable<br>
situation. GCC4 SSP-by-default works and will be added in a later revision -<br>
some GCC4+SSP bugs in grub and glibc also remain to be fixed.<br>
<br>
Please follow '2. General Upgrade Instructions' in the '<span class="il">Gentoo</span> GCC Upgrade<br>
Guide' [1] when upgrading from GCC 3.4.x to GCC 4.3.x. The upgrade should be<br>
relatively smooth, but if you run into upgrade troubles seek help via this<br>
mailing list, <a href="http://bugs.gentoo.org/" target="_blank">bugs.<span class="il">gentoo</span>.org</a>, or <a href="http://irc.freenode.net/" target="_blank">irc.freenode.net</a>, #<span class="il">gentoo</span>-<span class="il">hardened</span>.<br>
<br>
[1] <a href="http://www.gentoo.org/doc/en/gcc-upgrading.xml" target="_blank">http://www.<span class="il">gentoo</span>.org/doc/en/gcc-upgrading.xml</a>
|
|