[Bug ld/28824] relro security issues

2023-01-21 Thread rui314 at gmail dot com
https://sourceware.org/bugzilla/show_bug.cgi?id=28824 --- Comment #18 from Rui Ueyama --- > > IOW, an additional LOAD program-header. I too have thought of that. > > It doesn’t need an additional program header. Relro sections are just at the > end of the RW segment as you can see in my

[Bug ld/28824] relro security issues

2023-01-21 Thread rui314 at gmail dot com
https://sourceware.org/bugzilla/show_bug.cgi?id=28824 --- Comment #17 from Rui Ueyama --- > IOW, an additional LOAD program-header. I too have thought of that. It doesn’t need an additional program header. Relro sections are just at the end of the RW segment as you can see in my example. --

[Bug ld/28824] relro security issues

2023-01-21 Thread hp at sourceware dot org
https://sourceware.org/bugzilla/show_bug.cgi?id=28824 --- Comment #16 from Hans-Peter Nilsson --- (In reply to Hans-Peter Nilsson from comment #15) > that may be the most pragmatic solution for aarch64. Correction: for *all* architectures that need to support large-enough page-sizes. Perhaps a

[Bug ld/28824] relro security issues

2023-01-21 Thread hp at sourceware dot org
https://sourceware.org/bugzilla/show_bug.cgi?id=28824 --- Comment #15 from Hans-Peter Nilsson --- (In reply to Rui Ueyama from comment #12) > In the mold linker, we are dealing with the issue by mapping the page that > is at the boundary of relro and non-relro twice as the last relro page and >

Issue 55080 in oss-fuzz: binutils:fuzz_as: Null-dereference READ in as_report_context

2023-01-21 Thread sheriffbot via monorail
Updates: Labels: -restrict-view-commit Comment #3 on issue 55080 by sheriffbot: binutils:fuzz_as: Null-dereference READ in as_report_context https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=55080#c3 This bug has been fixed. It has been opened to the public. - Your friendly

Issue 55020 in oss-fuzz: binutils:fuzz_objdump_safe: Crash in bfd_putl32

2023-01-21 Thread sheriffbot via monorail
Updates: Labels: -restrict-view-commit Comment #3 on issue 55020 by sheriffbot: binutils:fuzz_objdump_safe: Crash in bfd_putl32 https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=55020#c3 This bug has been fixed. It has been opened to the public. - Your friendly Sheriffbot -- You