Bug#484371: krb5: Please consider enabling some hardening features

2008-06-04 Thread Sam Hartman
What does -DFOURTIFY_SOURCE=2 actually do? I'll definitely look into stack protection. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#484371: krb5: Please consider enabling some hardening features

2008-06-03 Thread Moritz Muehlenhoff
Package: krb5 Severity: wishlist Please consider enabling -fstack-protector and -D_FORTIFY_SOURCE=2 for krb5. There'll be a minor performance penaltly (which I haven't measured myself, though), but for a security-sensitive package like krb5 the trade-off would be acceptable IMHO. Please see the