F22 System Wide Change: Harden all packages with position-independent code

Florian Weimer fweimer at redhat.com
Mon Jan 19 11:58:06 UTC 2015


On 01/07/2015 02:30 PM, Josh Boyer wrote:
> We just went over something very much like this for x86_64 packages
> with FESCo ticket 1113:
>
> https://fedorahosted.org/fesco/ticket/1113
>
> Could you perhaps review that and elaborate on the differences between
> that proposal and this one if there are any?

GCC 5 and recent binutils support copy relocations, so the performance 
impact of PIE is reduced even further.

I wrote a slightly broader proposal, also covering SSE2 (for i386), and 
(since today) off_t and ino_t:

   <https://fedoraproject.org/wiki/Changes/Modernise_GCC_Flags>

-- 
Florian Weimer / Red Hat Product Security


More information about the devel mailing list