stack_protect_prologue in cfgexpand.c and stack_protect_epilogue in function.c in GNU Compiler Collection (GCC) 4.1 through 8 (under certain circumstances) generate instruction sequences when targeting ARM targets that spill the address of the stack protector guard, which allows an attacker to bypass the protection of -fstack-protector, -fstack-protector-all, -fstack-protector-strong, and -fstack-protector-explicit against stack overflow by controlling what the stack canary is compared against.
CVSS Details
- CVSS 3.1 Base Score: 8.1
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Huawei Euleros 2_0_sp8 | — | Upgrade libatomic-staticUpgrade libgfortranUpgrade libobjcUpgrade gcc-objc++Upgrade libstdc++Upgrade gcc-gfortranUpgrade libitmUpgrade gcc-c++Upgrade libgccUpgrade gccUpgrade cppUpgrade libstdc++-develUpgrade libgompUpgrade libasanUpgrade gcc-objcUpgrade libatomicUpgrade libitm-devel | Aug 28, 2019 | May 22, 2019 |
| Ubuntu | — | No solution exists | Jun 26, 2025 | May 22, 2019 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub