Wind River Support Network

HomeOther DownloadsWindRiver 4.3 Toolchain Bianry fix: Multithreaded stack address is near the canary's address
Recommended Type: Binary Patch

WindRiver 4.3 Toolchain Bianry fix: Multithreaded stack address is near the canary's address

Released: May 18, 2018     Updated: May 18, 2018

Description

The security problem is found by Huawei. There's no CVE number yet.

This is the summary of the issue. Please refer to the attached PDF file for details:

  1. Summary of Issue

The stack canary comparison value for a thread on the PowerPC architecture

can be overwritten by any pthread that is created due to the way the pthread

stack allocations are performed.


Product Version

Wind River Linux 4
Live chat
Online