blhc 0.11-ok1 (amd64 binary) in openkylin yangtze
Perl tool which checks build logs for missing hardening flags. Hardening
flags enable additional security features in the compiler to prevent e.g.
stack overflows, format string vulnerabilities, GOT overwrites, etc. See
e.g. <http://
.
Because most build systems are quite complicated there are many places
where compiler flags from the environment might be ignored. The parser
verifies that all compiler commands use the correct hardening flags and
thus all hardening features are correctly used.
.
It's designed to check build logs generated by Debian's dpkg-buildpackage
(or tools for packaging, using dpkg-buildpackage like pbuilder or the
official buildd build logs) to help maintainers detect missing hardening
flags in their packages.
.
Only gcc is detected as compiler at the moment (but other compilers maybe
supported).
Details
- Package version:
- 0.11-ok1
- Status:
- Deleted
- Component:
- main
- Priority:
- Optional
Downloadable files
- blhc_0.11-ok1_all.deb (27.1 KiB)
Package relationships
- Depends on: