stack_protect_prologue in cfgexpand.c and stack_protect_epilogue in function.c in GNU Compiler Collection (GCC) 4.1 through 8 (under certain circumstances) generate instruction sequences when targeting ARM targets that spill the address of the stack protector guard, which allows an attacker to bypass the protection of -fstack-protector, -fstack-protector-all, -fstack-protector-strong, and -fstack-protector-explicit against stack overflow by controlling what the stack canary is compared against.
CVSS Details
- CVSS 3.1 Base Score: 8.1
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Huawei Euleros 2_0_sp8 | — | Upgrade libatomic-staticUpgrade libgfortranUpgrade gcc-objc++Upgrade libobjcUpgrade gcc-gfortranUpgrade libitmUpgrade libitm-develUpgrade libstdc++-develUpgrade gcc-c++Upgrade libasanUpgrade gcc-objcUpgrade libatomicUpgrade libstdc++Upgrade libgccUpgrade gccUpgrade cppUpgrade libgomp | Aug 28, 2019 | May 22, 2019 |
| Ubuntu | — | No solution exists | Jun 26, 2025 | May 22, 2019 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub