[Bug 562614] Re: Potential information disclosure vulnerability in FORTIFY_SOURCE

2021-09-07 Thread Jack Ren
** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-3192 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/562614 Title: Potential information disclosure vulnerability in FORTIFY_SOURCE T

[Bug 562614] Re: Potential information disclosure vulnerability in FORTIFY_SOURCE

2010-04-29 Thread Kees Cook
** Changed in: glibc (Ubuntu) Status: New => Confirmed ** Changed in: glibc (Ubuntu) Importance: Undecided => Wishlist ** Changed in: glibc (Ubuntu) Importance: Wishlist => Low -- Potential information disclosure vulnerability in FORTIFY_SOURCE https://bugs.launchpad.net/bugs/56261

[Bug 562614] Re: Potential information disclosure vulnerability in FORTIFY_SOURCE

2010-04-27 Thread Kees Cook
I'd like to see the stack handler not use argv[0] or report a backtrace. What good is a backtrace on a corrupted stack? ** Visibility changed to: Public -- Potential information disclosure vulnerability in FORTIFY_SOURCE https://bugs.launchpad.net/bugs/562614 You received this bug notification b