Hi,
with a recent nfs-common package:
Package: nfs-common
Version: 1:1.3.4-2
the hardening situation is still not very good:
# ./hardening-check /usr/sbin/rpc.*
/usr/sbin/rpc.gssd:
Position Independent Executable: yes
Stack protected: no, not found!
Fortify Source functions: yes (some protec
Hello,
Applying the attached seems to be sufficient to enable hardened build
flags. Maybe interesting to enable PIE and BINDNOW too.
diff -Nru nfs-utils-1.2.8/debian/rules nfs-utils-1.2.8/debian/rules
--- nfs-utils-1.2.8/debian/rules 2014-08-13 02:12:43.0 +0200
+++ nfs-utils-1.2.8/debian/r
Package: nfs-common
Version: 1:1.2.8-7
Severity: wishlist
Hi,
according to the checksec.sh script, binaries provided by nfs-utils
are not compiled with all available hardening features:
RELRO STACK CANARY NXPIE RPATH
RUNPATH FILE
No RELRO
3 matches
Mail list logo