Enable x86 retpoline options by default

Bug #1750893 reported by Steve Beattie
16
This bug affects 3 people
Affects Status Importance Assigned to Milestone
gcc-7 (Ubuntu)
Won't Fix
Undecided
Unassigned

Bug Description

For Ubuntu 18.04 LTS, the x86 retpoline options (-mindirect-branch=thunk and -mfunction-return=thunk) should be enabled by default.

For problematic packages, -mindirect-branch=keep and -mfunction-return=keep can be used to disable retpolines.

Revision history for this message
Dimitri John Ledkov (xnox) wrote :

A dpkg-buildflags integration could be nice. Such that e.g. DEB_BUILD_MAINT_OPTIONS=hardening=-retpoline works.

tags: added: id-5a93dd6aff8f17bbd60d3bb6
Revision history for this message
Launchpad Janitor (janitor) wrote :

Status changed to 'Confirmed' because the bug affects multiple users.

Changed in gcc-7 (Ubuntu):
status: New → Confirmed
Revision history for this message
Matthias Klose (doko) wrote :

afaics the decision was not to rebuild user space with these patches enabled.

Changed in gcc-7 (Ubuntu):
status: Confirmed → Won't Fix
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.