[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249966

 
 

909

 
 

195636

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2023:3662-1 -- SLES gcc7, libubsan0, libgfortran4, libasan4, libcilkrts5

ID: oval:org.secpod.oval:def:89051572Date: (C)2024-04-26   (M)2024-04-26
Class: PATCHFamily: unix




This update for gcc7 fixes the following issues: Security issues fixed: * CVE-2023-4039: Fixed incorrect stack protector for C99 VLAs on Aarch64 . * CVE-2019-15847: Fixed POWER9 DARN miscompilation. * CVE-2019-14250: Includes fix for LTO linker plugin heap overflow. Update to GCC 7.5.0 release. Other changes: * Fixed KASAN kernel compile. * Fixed ICE with C++17 code. * Fixed altivec.h redefining bool in C++ which makes bool unusable : * Adjust gnats idea of the target, fixing the build of gprbuild. [bsc#1196861] * Do not handle exceptions in std::thread * add -fpatchable-function-entry feature to gcc-7. * Fixed glibc namespace violation with getauxval. * Backport aarch64 Straight Line Speculation mitigation [bsc#1172798, CVE-2020-13844] * Enable fortran for the nvptx offload compiler. * Update README.First-for.SuSE.packagers * Avoid assembler errors with AVX512 gather and scatter instructions when using -masm=intel. * Backport the aarch64 -moutline-atomics feature and accumulated fixes but not its default enabling. * Fixed memcpy miscompilation on aarch64. * Fixed debug line info for try/catch. * Fixed corruption of pass private - greater thanaux via DF. * Fixed debug information issue with inlined functions and passed by reference arguments. [gcc#93888] * Fixed register allocation issue with exception handling code on s390x. * Backport PR target/92692 to fix miscompilation of some atomic code on aarch64. * Fixed miscompilation in vectorized code for s390x. [gcc#92950] * Fixed miscompilation with thread-safe local static initialization. [gcc#85887] * Fixed debug info created for array definitions that complete an earlier declaration. [bsc#1146475] * Fixed vector shift miscompilation on s390. * Add gcc7 -flive-patching patch. [bsc#1071995, fate#323487] * Strip -flto from $optflags. * Disables switch jump-tables when retpolines are used. * Fixed ICE compiling tensorflow on aarch64. * Fixed for aarch64 FMA steering pass use-after-free. * Fixed ICE compiling tensorflow. * Fixed s390x FP load-and-test issue. * Adjust gnat manual entries in the info directory. * Fixed to no longer try linking -lieee with -mieee-fp

Platform:
SUSE Linux Enterprise Server 12 SP5
Product:
gcc7
libubsan0
libgfortran4
libasan4
libcilkrts5
Reference:
SUSE-SU-2023:3662-1
CVE-2019-14250
CVE-2019-15847
CVE-2020-13844
CVE-2023-4039
CVE    4
CVE-2020-13844
CVE-2019-14250
CVE-2019-15847
CVE-2023-4039
...
CPE    6
cpe:/a:gcc:gcc7
cpe:/a:gcc:libgfortran4
cpe:/a:gcc:libubsan0
cpe:/o:suse:suse_linux_enterprise_server:12:sp5
...

© SecPod Technologies