Publishing details

Changelog

gcc-10 (10.5.0-1ubuntu1~22.04.1) jammy-security; urgency=medium

  * SECURITY UPDATE: stack protector and stack clash protection
    weaknesses on ARM64:
    - d/p/CVE-2023-4039/0001-aarch64-Use-local-frame-vars-in-shrink-wrapping-code.diff,
      d/p/CVE-2023-4039/0002-aarch64-Avoid-a-use-of-callee_offset.diff,
      d/p/CVE-2023-4039/0003-aarch64-Explicitly-handle-frames-with-no-saved-regis.diff,
      d/p/CVE-2023-4039/0004-aarch64-Add-bytes_below_saved_regs-to-frame-info.diff,
      d/p/CVE-2023-4039/0005-aarch64-Add-bytes_below_hard_fp-to-frame-info.diff,
      d/p/CVE-2023-4039/0006-aarch64-Tweak-aarch64_save-restore_callee_saves.diff,
      d/p/CVE-2023-4039/0007-aarch64-Only-calculate-chain_offset-if-there-is-a-ch.diff,
      d/p/CVE-2023-4039/0008-aarch64-Rename-locals_offset-to-bytes_above_locals.diff,
      d/p/CVE-2023-4039/0009-aarch64-Rename-hard_fp_offset-to-bytes_above_hard_fp.diff,
      d/p/CVE-2023-4039/0010-aarch64-Tweak-frame_size-comment.diff,
      d/p/CVE-2023-4039/0011-aarch64-Measure-reg_offset-from-the-bottom-of-the-fr.diff,
      d/p/CVE-2023-4039/0012-aarch64-Simplify-top-of-frame-allocation.diff,
      d/p/CVE-2023-4039/0013-aarch64-Minor-initial-adjustment-tweak.diff,
      d/p/CVE-2023-4039/0014-aarch64-Tweak-stack-clash-boundary-condition.diff,
      d/p/CVE-2023-4039/0015-aarch64-Put-LR-save-probe-in-first-16-bytes.diff,
      d/p/CVE-2023-4039/0016-aarch64-Simplify-probe-of-final-frame-allocation.diff,
      d/p/CVE-2023-4039/0017-aarch64-Explicitly-record-probe-registers-in-frame-i.diff,
      d/p/CVE-2023-4039/0018-aarch64-Remove-below_hard_fp_saved_regs_size.diff,
      d/p/CVE-2023-4039/0019-aarch64-Make-stack-smash-canary-protect-saved-regist.diff:
      fix aarch64 stack frame layout to move stack canary to protect
      saved registers and variable-sized arguments passed by value,
      along with prerequisite patches.
    - d/p/aarch64-Fix-return-register-handling-in-untyped_call.diff: fix
      issue triggered by security fixes
    - CVE-2023-4039

 -- Steve Beattie <email address hidden>  Tue, 12 Sep 2023 15:22:24 -0700

Available diffs

Builds

Built packages

Package files