Gentoo Archives: gentoo-hardened

From: Mike Edenfield <kutulu@××××××.org>
To: gentoo-hardened@l.g.o
Cc: Mike Williams <mike@×××××××××××××.uk>
Subject: Re: [gentoo-hardened] SSP in GCC 4
Date: Mon, 25 Jan 2010 20:17:21
Message-Id: 4B5DFBFD.3020704@kutulu.org
In Reply to: Re: [gentoo-hardened] SSP in GCC 4 by Mike Williams
1 On 1/25/2010 2:10 PM, Mike Williams wrote:
2 > On Monday 25 January 2010 03:28:24 Michael Edenfield wrote:
3 >> On Sunday January 24 2010 07:34:31 pm Mike Williams wrote:
4 >>> Is there any news on SSP in GCC 4?
5 >>
6 >> Use the gcc-4.4 out of the hardened-development overlay. I've been using
7 >> the overlay (4.3, then 4.4) it on all of my servers, plus my personal
8 >> machines, for almost a year now and so far have only had problems with 1
9 >> package (sbcl).
10 >
11 > Nice, thanks.
12 > Anything else I need to unmask? Installing gcc-4.4.2-r2 and rebuilding system
13 > hasn't broken my build box yet!
14 >
15
16 I also have glibc unmasked, but I think that's a remnant from a while
17 ago and probably not necessary. The latest version in the overlay is 2.9.
18
19 If you are running ~arch you'll pick up a few more things from the
20 overlay, like grub and hardened-sources, automatically. If you're not
21 running ~arch I'd suggest you unmask anything that the overlay has in
22 it, since there are often PIE or SSP patches included in those versions.
23
24 --Mike

Replies

Subject Author
[gentoo-hardened] Re: SSP in GCC 4 Peter Hjalmarsson <xake@×××××××××.net>
Re: [gentoo-hardened] SSP in GCC 4 Ed W <lists@××××××××××.com>