New issue
Advanced search Search tips

Issue 763168 link

Starred by 1 user

Issue metadata

Status: Duplicate
Owner: ----
Closed: Sep 2017
EstimatedDays: ----
NextAction: ----
OS: Linux
Pri: 2
Type: Bug



Sign in to add a comment

ChromeOS toolchain should contain hardened libs.

Project Member Reported by almasrymina@google.com, Sep 7 2017

Issue description

UserAgent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.78 Safari/537.36

Steps to reproduce the problem:
We obtain our toolchain from here:

https://pantheon.corp.google.com/storage/browser/chromiumos-sdk/2017/08/

Snapshot: 163007.

And our sysroot from:

https://pantheon.corp.google.com/storage/browser/chromeos-prebuilt/host/amd64/amd64-host/chroot-2017.08.01.163007/packages/cross-armv7a-cros-linux-gnueabi/

We notice that these libs don't have a stack canary:

Full RELRO No canary found NX enabled libcrypt-2.23.so
Full RELRO No canary found NX enabled libdl-2.23.so
Full RELRO No canary found NX enabled libm-2.23.so
Full RELRO No canary found NX enabled libnsl-2.23.so
Full RELRO No canary found NX enabled libnss_compat-
2.23.so
Full RELRO No canary found NX enabled libnss_dns-
2.23.so
Full RELRO No canary found NX enabled libnss_files-
2.23.so
Full RELRO No canary found NX enabled libpthread-
2.23.so
Full RELRO No canary found NX enabled librt-2.23.so
Full RELRO No canary found NX enabled libutil-2.23.so

What is the expected behavior?

What went wrong?
Libs not hardned.

Did this work before? N/A 

Chrome version: 60.0.3112.78  Channel: n/a
OS Version: 
Flash Version:
 
Labels: Needs-Triage-M60
Mergedinto: 763171
Status: Duplicate (was: Unconfirmed)
The issue looks similar to issue id: 763171. Hence, merging into issue id: 763171.

Thanks...!!

Sign in to add a comment