Description
Binaries compiled against targets that use the libssp library in GCC for stack smashing protection (SSP) might allow local users to perform buffer overflow attacks by leveraging lack of the Object Size Checking feature.
Mitigation
Minimal update. May introduce new vulnerabilities or breaking changes.
|
 debian 14 | | =27 || =28 || =28.1 || =28.1+bootstrap || =28.1+exp1 || =28.2 || =28.3 |
 debian 11 | | =24.2 || =24.3 || =24.4 || =25 || =25.1 || =25.2 || =25.3 || =26 || =26.1 || =26.3 || =26.4 || =26.5 || =26.6 || =26.7 || =26.8 || =27 || =27~exp1 || =27~exp2 || =27~exp3 || =27~exp4 || =27~exp5 || =27~exp6 || =27~exp7 || =27~exp8 || =27~exp9 || =28 || =28.1 || =28.1+bootstrap || =28.1+exp1 || =28.2 || =28.3 |
 debian 12 | | =25.2 || =25.3 || =26 || =26.1 || =26.3 || =26.4 || =26.5 || =26.6 || =26.7 || =26.8 || =27 || =27~exp1 || =27~exp2 || =27~exp3 || =27~exp4 || =27~exp5 || =27~exp6 || =27~exp7 || =27~exp8 || =27~exp9 || =28 || =28.1 || =28.1+bootstrap || =28.1+exp1 || =28.2 || =28.3 |
 debian 13 | | =27 || =28 || =28.1 || =28.1+bootstrap || =28.1+exp1 || =28.2 || =28.3 |