[hardening-discuss] Bug#806978: hardening-wrapper : please support MPX

Laurent Bonnaud L.Bonnaud at laposte.net
Thu Dec 3 17:27:50 UTC 2015


Package: hardening-wrapper
Version: 2.7
Severity: wishlist


Hi,

building packages with MPX protection would be a welcomed security improvement.
So could you please add the necessary options to hardening-wrapper ?

This doc (even if it is slightly out of date) is a good start:

  https://gcc.gnu.org/wiki/Intel%20MPX%20support%20in%20the%20GCC%20compiler

Basically, it amounts to add the -fcheck-pointer-bounds -mmpx options when compiling.

Thanks,

-- 
Laurent.



More information about the hardening-discuss mailing list