[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250053

 
 

909

 
 

195940

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2-2023-2245 --- gcc

ID: oval:org.secpod.oval:def:1701603Date: (C)2023-09-19   (M)2024-02-26
Class: PATCHFamily: unix




An issue was found in a defense in depth feature of the GCC compiler on aarch64 platforms. The stack protector feature did not detect or defend against overflows of dynamically-sized local variables. This update to the GCC compiler remedies code generation for this defense in depth feature, ensuring it is working as intended.Customers building their own binaries with GCC are advised to update their compiler, and to ensure they are enabling the defense in depth options available to them, such as the stack protector

Platform:
Amazon Linux 2
Product:
gcc
libgcc
libstdc++
libobjc
libgfortran
libitm
libatomic
libsanitizer
cpp
libgnat
libgo
libquadmath
libcilkrts
libmpx
Reference:
ALAS2-2023-2245
CVE-2023-4039
CVE    1
CVE-2023-4039
CPE    4
cpe:/a:gnu:cpp
cpe:/a:gnu:gcc
cpe:/o:amazon:linux:2
cpe:/a:gnu:libatomic
...

© SecPod Technologies