Skip to content
Sections
>> Trisquel >> Pakete >> nabia >> utils >> blhc
etiona  ] [  nabia  ] [  aramo  ]
[ Quellcode: blhc  ]

Paket: blhc (0.11-1)

build log hardening check

Perl tool which checks build logs for missing hardening flags. Hardening flags enable additional security features in the compiler to prevent e.g. stack overflows, format string vulnerabilities, GOT overwrites, etc. See e.g. <http://wiki.debian.org/ReleaseGoals/SecurityHardeningBuildFlags>.

Because most build systems are quite complicated there are many places where compiler flags from the environment might be ignored. The parser verifies that all compiler commands use the correct hardening flags and thus all hardening features are correctly used.

It's designed to check build logs generated by Debian's dpkg-buildpackage (or tools for packaging, using dpkg-buildpackage like pbuilder or the official buildd build logs) to help maintainers detect missing hardening flags in their packages.

Only gcc is detected as compiler at the moment (but other compilers maybe supported).

Andere Pakete mit Bezug zu blhc

  • hängt ab von
  • empfiehlt
  • schlägt vor

blhc herunterladen

Download für alle verfügbaren Architekturen
Architektur Paketgröße Größe (installiert) Dateien
all 28,1 kB86 kB [Liste der Dateien]