Bug#918914: add -fstack-clash-protection to default buildflags

2022-05-27 Thread Guillem Jover
Hi! On Thu, 2020-09-03 at 21:00:09 +0200, Moritz Mühlenhoff wrote: > On Thu, Jan 10, 2019 at 09:42:10AM -0500, Harlan Lieberman-Berg wrote: > > Package: dpkg-dev > > Version: 1.19.2 > > Severity: wishlist > > Tags: security > > It would be Really Awesome (TM) if we could add the > > -fstack-clash

Bug#1010685: dpkg-buildflags: Please enable -ftrivial-auto-var-init=zero

2022-05-27 Thread Guillem Jover
Hi! On Fri, 2022-05-06 at 20:50:08 -0700, Kees Cook wrote: > Package: dpkg-dev > Version: 1.21.7 > Severity: normal > Please add "-ftrivial-auto-var-init=zero" for GCC 12 (which is the first > release of GCC to provide this flag). > > It goes well with the other important security flaw mitigatio