Gentoo Archives: gentoo-hardened

From: Matt Harrison <iwasinnamuknow@×××××××××.com>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] glibc not using PIE
Date: Tue, 14 Oct 2008 15:49:53
Message-Id: 48F4BF91.60308@genestate.com
In Reply to: Re: [gentoo-hardened] glibc not using PIE by Kerin Millar
1 Kerin Millar wrote:
2 > Try without distcc, with a conservative MAKEOPTS setting and always
3 > ensure that the toolchain is built in this order: binutils, gcc, glibc.
4 > Failing that, you could bootstrap (be wary of /etc clobbering by
5 > baselayout) or roll the affected package again in a "clean" chroot
6 > before exporting it to the host.
7
8 I hadn't thought of that at all..the toolchain on the distcc server
9 isn't hardened at all. I'll try it again local only.
10
11 Thanks for pointing that out.
12
13 Matt