Bug#654793: firebird2.5: Hardeneng flags not fully enabled

2012-01-12 Thread Damyan Ivanov
tags 654793 pending thanks -=| Alex Peshkoff, 12.01.2012 19:04:56 +0400 |=- > I've added support for CPPFLAGS. Moreover, now I use it internally > for regular posix build > (http://tracker.firebirdsql.org/browse/CORE-3727). > So I hope you should not have problems with _FORTIFY_SOURCE. Excellen

Bug#654793: firebird2.5: Hardeneng flags not fully enabled

2012-01-12 Thread Alex Peshkoff
On 01/11/12 12:23, Damyan Ivanov wrote: > -=| Alex Peshkoff, 11.01.2012 11:57:55 +0400 |=- >> On 01/10/12 21:17, Moritz Muehlenhoff wrote: >>> On Tue, Jan 10, 2012 at 11:06:04AM +0200, Damyan Ivanov wrote: > - The check for fortified source functions depends on the use of > such function

Bug#654793: firebird2.5: Hardeneng flags not fully enabled

2012-01-11 Thread Alex Peshkoff
On 01/11/12 12:23, Damyan Ivanov wrote: > -=| Alex Peshkoff, 11.01.2012 11:57:55 +0400 |=- >> On 01/10/12 21:17, Moritz Muehlenhoff wrote: >>> On Tue, Jan 10, 2012 at 11:06:04AM +0200, Damyan Ivanov wrote: > - The check for fortified source functions depends on the use of > such function

Bug#654793: firebird2.5: Hardeneng flags not fully enabled

2012-01-11 Thread Damyan Ivanov
-=| Alex Peshkoff, 11.01.2012 11:57:55 +0400 |=- > On 01/10/12 21:17, Moritz Muehlenhoff wrote: > > On Tue, Jan 10, 2012 at 11:06:04AM +0200, Damyan Ivanov wrote: > >>> - The check for fortified source functions depends on the use of > >>> such functions. If none of them are present the error "no

Bug#654793: firebird2.5: Hardeneng flags not fully enabled

2012-01-11 Thread Alex Peshkoff
On 01/10/12 21:17, Moritz Muehlenhoff wrote: > On Tue, Jan 10, 2012 at 11:06:04AM +0200, Damyan Ivanov wrote: >>> - The check for fortified source functions depends on the use of >>> such functions. If none of them are present the error "no >>> protectable libc functions used" is shown. However,

Bug#654793: firebird2.5: Hardeneng flags not fully enabled

2012-01-10 Thread Moritz Muehlenhoff
On Tue, Jan 10, 2012 at 11:06:04AM +0200, Damyan Ivanov wrote: > > - The check for fortified source functions depends on the use of > > such functions. If none of them are present the error "no > > protectable libc functions used" is shown. However, there are also > > results that show "no" (e.g

Bug#654793: firebird2.5: Hardeneng flags not fully enabled

2012-01-10 Thread Damyan Ivanov
-=| Moritz Muehlenhoff, 07.01.2012 14:13:56 +0100 |=- > - relro should on "yes" in all cases. That's the case for the > binaries I checked, so all seems fine. Right. > - The test for a protected stack cannot show that it's activated if > the tested code doesn't use arrays on the stack. Since th

Bug#654793: firebird2.5: Hardeneng flags not fully enabled

2012-01-07 Thread Moritz Muehlenhoff
On Sat, Jan 07, 2012 at 10:58:31AM +0200, Damyan Ivanov wrote: > -=| Moritz Muehlenhoff, 05.01.2012 21:46:12 +0100 |=- > > I'm currently checking all packages, which had a DSA in the last > > year to enable hardened build flags. firebird2.5 has already been > > updated to use dpkg-buildflags, but I

Bug#654793: firebird2.5: Hardeneng flags not fully enabled

2012-01-07 Thread Damyan Ivanov
-=| Moritz Muehlenhoff, 05.01.2012 21:46:12 +0100 |=- > I'm currently checking all packages, which had a DSA in the last > year to enable hardened build flags. firebird2.5 has already been > updated to use dpkg-buildflags, but I noticed that not all flags > are fully in effect. You can use the hard