diff options
-rw-r--r-- | .SRCINFO | 4 | ||||
-rw-r--r-- | PKGBUILD | 4 | ||||
-rw-r--r-- | config | 18 |
3 files changed, 14 insertions, 12 deletions
@@ -1,6 +1,6 @@ pkgbase = linux-hardened-git pkgdesc = Security-Hardened Linux - pkgver = 5.17.5.r1076480.g15066880c14f + pkgver = 5.17.7.r1076846.g16074dafd33b pkgrel = 1 url = https://github.com/anthraxx/linux-hardened arch = x86_64 @@ -26,7 +26,7 @@ pkgbase = linux-hardened-git validpgpkeys = 647F28654894E3BD457199BE38DBBDC86092693E validpgpkeys = E240B57E2C4630BA768E2F26FC1B547C8D8172C8 sha256sums = SKIP - sha256sums = dad3d8436c34cf14e44d767f9a3a587004a4de124e20c6a356c02b873776e223 + sha256sums = 41d587552be62a8507ca843727b0a2f5a859240da947d2099ea33fe831368ba3 pkgname = linux-hardened-git pkgdesc = The Security-Hardened Linux kernel and modules @@ -6,7 +6,7 @@ pkgbase=linux-hardened-git _srcname=${pkgbase/-git/} _gitbranch=5.17 -pkgver=5.17.5.r1076480.g15066880c14f +pkgver=5.17.7.r1076846.g16074dafd33b pkgrel=1 pkgdesc='Security-Hardened Linux' url='https://github.com/anthraxx/linux-hardened' @@ -28,7 +28,7 @@ validpgpkeys=( 'E240B57E2C4630BA768E2F26FC1B547C8D8172C8' # Levente Polyak ) sha256sums=('SKIP' - 'dad3d8436c34cf14e44d767f9a3a587004a4de124e20c6a356c02b873776e223') + '41d587552be62a8507ca843727b0a2f5a859240da947d2099ea33fe831368ba3') export KBUILD_BUILD_HOST=archlinux export KBUILD_BUILD_USER=$pkgbase @@ -1,10 +1,10 @@ # # Automatically generated file; DO NOT EDIT. -# Linux/x86 5.17.5-hardened1 Kernel Configuration +# Linux/x86 5.17.7-hardened1 Kernel Configuration # -CONFIG_CC_VERSION_TEXT="gcc (GCC) 11.2.0" +CONFIG_CC_VERSION_TEXT="gcc (GCC) 12.1.0" CONFIG_CC_IS_GCC=y -CONFIG_GCC_VERSION=110200 +CONFIG_GCC_VERSION=120100 CONFIG_CLANG_VERSION=0 CONFIG_AS_IS_GNU=y CONFIG_AS_VERSION=23800 @@ -349,6 +349,8 @@ CONFIG_X86_X2APIC=y CONFIG_X86_MPPARSE=y # CONFIG_GOLDFISH is not set CONFIG_RETPOLINE=y +CONFIG_CC_HAS_SLS=y +CONFIG_SLS=y CONFIG_X86_CPU_RESCTRL=y # CONFIG_X86_EXTENDED_PLATFORM is not set CONFIG_X86_INTEL_LPSS=y @@ -2467,6 +2469,7 @@ CONFIG_PNPACPI=y CONFIG_BLK_DEV=y # CONFIG_BLK_DEV_NULL_BLK is not set CONFIG_BLK_DEV_FD=m +# CONFIG_BLK_DEV_FD_RAWCMD is not set CONFIG_CDROM=m # CONFIG_PARIDE is not set CONFIG_BLK_DEV_PCIESSD_MTIP32XX=m @@ -9831,16 +9834,15 @@ CONFIG_LSM="landlock,lockdown,yama,bpf" # # Kernel hardening options # -CONFIG_GCC_PLUGIN_STRUCTLEAK=y # # Memory initialization # +CONFIG_CC_HAS_AUTO_VAR_INIT_PATTERN=y +CONFIG_CC_HAS_AUTO_VAR_INIT_ZERO=y # CONFIG_INIT_STACK_NONE is not set -# CONFIG_GCC_PLUGIN_STRUCTLEAK_USER is not set -# CONFIG_GCC_PLUGIN_STRUCTLEAK_BYREF is not set -CONFIG_GCC_PLUGIN_STRUCTLEAK_BYREF_ALL=y -# CONFIG_GCC_PLUGIN_STRUCTLEAK_VERBOSE is not set +# CONFIG_INIT_STACK_ALL_PATTERN is not set +CONFIG_INIT_STACK_ALL_ZERO=y CONFIG_GCC_PLUGIN_STACKLEAK=y CONFIG_STACKLEAK_TRACK_MIN_SIZE=100 # CONFIG_STACKLEAK_METRICS is not set |