[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: think twice before enabling -D_FORTIFY_SOURCE=2 for C projects without thorough build-time testing



On Sat, 21 Sep 2013, Bastian Blank wrote:
> > > > DEB_BUILD_HARDENING_FORTIFY := 0
> > > > preceding inclusion of /usr/share/hardening-includes/hardening.make
> > > I would call code that hits such clear definitions too buggy to be
> > > supported.
> > yeah -- let's burn it!!!... oh no -- I am using it, so I guess I
> > better fix/report bugs ;-)

> Did you write a bug-report to remind of this problem?  With severity
> serious, so it will show up if unfixed?

yes -- it is a very serious report and it is reported to the
.gov-ernment:

http://afni.nimh.nih.gov/afni/community/board/read.php?1,142574,142574#msg-142574

-- 
Yaroslav O. Halchenko, Ph.D.
http://neuro.debian.net http://www.pymvpa.org http://www.fail2ban.org
Senior Research Associate,     Psychological and Brain Sciences Dept.
Dartmouth College, 419 Moore Hall, Hinman Box 6207, Hanover, NH 03755
Phone: +1 (603) 646-9834                       Fax: +1 (603) 646-1419
WWW:   http://www.linkedin.com/in/yarik        


Reply to: