gcc
Version: 15.2.0No description available.
What is gcc?
No description available.
How to use this package
Quick install
Installs the package into the current environment for this session. Use --build or --runtime to persist it as a build-time or runtime dependency.
min add gcc Declare as a task dependency in minimal.toml
Listing the package under tasks.<name>.packages makes it available inside that task’s sandbox.
[tasks.dev]
packages = ["gcc"] Build-time vs runtime
Choose build-time for tools needed during compilation, runtime for dynamic libraries loaded at runtime.
min add --build gcc
min add --runtime gcc Dependencies (22)
| Name | Version | Kind |
|---|---|---|
| bash-bootstrap | 5.3 | build |
| binutils | 2.46.1 | build |
| bzip2 | 1.0.8 | build |
| coreutils | 9.11 | build |
| diffutils | 3.12 | build |
| file | 5.47 | build |
| findutils | 4.10.0 | build |
| gawk-bootstrap | 5.3.2 | build |
| glibc CVE:3 | 2.42 | build |
| gmp | 6.3.0 | build + runtime |
| grep | 3.12 | build |
| gzip | 1.14 | build |
| linux_headers | 6.12.43 | build |
| make | 4.4.1 | build |
| mpc | 1.4.0 | build + runtime |
| mpfr | 4.2.2 | build + runtime |
| perl | 5.42.0 | build |
| sed | 4.9 | build |
| tar | 1.35 | build |
| xz | 5.8.3 | build |
| zlib | 1.3.2 | build + runtime |
| zstd | 1.5.7 | build + runtime |
Dependants (30)
| Name | Version |
|---|---|
| acl | 2.3.2 |
| attr | 2.5.2 |
| bash | 5.3 |
| bash-bootstrap | 5.3 |
| binutils | 2.46.1 |
| chromium-bin | 147.0.7727.15 |
| chromium-headless-shell-bin | 147.0.7727.15 |
| coreutils | 9.11 |
| diffutils | 3.12 |
| findutils | 4.10.0 |
| glibc CVE:3 | 2.42 |
| gmp | 6.3.0 |
| grep | 3.12 |
| helix | 25.07.1 |
| hex-patch | 1.12.5 |
| linux_headers | 6.12.43 |
| make | 4.4.1 |
| mpc | 1.4.0 |
| mpfr | 4.2.2 |
| nginx | 1.30.0 |
| nushell | 0.110.0 |
| pcre2 | 10.47 |
| perl | 5.42.0 |
| redis CVE:8 | 8.6.4 |
| sed | 4.9 |
| toolchain | — |
| uv | 0.11.19 |
| z3 | 4.16.0 |
| zellij | 0.43.1 |
| zstd | 1.5.7 |
- [ Diff ] +1
- [ Diff ] +2 / -1
- [ Diff ] -1
- [ Diff ] +4 / -1
- [ Diff ] +30 / -21
- [ Diff ] +9 / -8
- [ Diff ] +1
- [ Diff ] +2 / -2
- [ Diff ] +2 / -2
- [ Diff ] +1 / -1
- [ Diff ] +1 / -1
- [ Diff ] +1 / -1
- [ Diff ] +4
- [ Diff ] +1 / -1
- [ Diff ] +1 / -1
- [ Diff ] +1
- [ Diff ] +1 / -1
- [ Diff ] +4
- [ Diff ] +6 / -1
- [ Diff ] +15 / -5
- [ Diff ] +5 / -4
- [ Diff ] +1 / -1
- [ Diff ] +1 / -1
- [ Diff ] +3
- [ Diff ] +60 / -7
- [ Diff ] +3 / -2
- [ Diff ] +6 / -2
- [ Diff ] +3 / -3
- [ Diff ] +4 / -1
- [ Diff ] +7 / -1
- [ Diff ] +152
Showing 4 advisories, 3 of which are transitive via gcc's dependencies
No advisories match the current filters.
| Status | IDs | Package | Severity | |||
|---|---|---|---|---|---|---|
| Critical ( 0 ) | ||||||
| High ( 3 ) | ||||||
| Affected: 2.42 | glibc | High: 7.5 | ||||
SummaryNo summary published for this advisory. Affected ranges
CVSS vector:
References | ||||||
| Affected: 2.42 | glibc | High: 7.5 | ||||
SummaryNo summary published for this advisory. Affected ranges
CVSS vector:
References | ||||||
| Affected: 2.42 | glibc | High: 8.4 | ||||
SummaryNo summary published for this advisory. Affected ranges
CVSS vector:
| ||||||
| Medium ( 1 ) | ||||||
| Affected: 15.2.0 | gcc | Medium: 4.8 | ||||
Summary**DISPUTED**A failure in the -fstack-protector feature in GCC-based toolchains that target AArch64 allows an attacker to exploit an existing buffer overflow in dynamically-sized local variables in your application without this being detected. This stack-protector failure only applies to C99-style dynamically-sized local variables or those created using alloca(). The stack-protector operates as intended for statically-sized local variables. The default behavior when the stack-protector detects an overflow is to terminate your application, resulting in controlled loss of availability. An attacker who can exploit a buffer overflow without triggering the stack-protector might be able to change program flow control to cause an uncontrolled loss of availability or to go further and affect confidentiality or integrity. NOTE: The GCC project argues that this is a missed hardening bug and not a vulnerability by itself. Affected ranges
CVSS vector:
| ||||||
| Low ( 0 ) | ||||||
| Unknown ( 0 ) | ||||||
43 components
No components match your filter.
| Packages | Version |
|---|---|
| gcc ROOT | 15.2.0 |
| acl | 2.3.2 |
| attr | 2.5.2 |
| bash | 5.3 |
| bash-bootstrap | 5.3 |
| binutils | 2.46.1 |
| bison | 3.8.2 |
| bzip2 | 1.0.8 |
| coreutils | 9.11 |
| diffutils | 3.12 |
| expat | 2.7.5 |
| file | 5.47 |
| findutils | 4.10.0 |
| flex | 2.6.4 |
| gawk | 5.4.0 |
| gawk-bootstrap | 5.3.2 |
| gdbm | 1.26 |
| glibc | 2.42 |
| gmp | 6.3.0 |
| grep | 3.12 |
| gzip | 1.14 |
| libcap | 2.78 |
| libffi | 3.5.2 |
| linux_headers | 6.12.43 |
| lz4 | 1.10.0 |
| m4 | 1.4.21 |
| make | 4.4.1 |
| mpc | 1.4.0 |
| mpfr | 4.2.2 |
| ncurses | 6.5-20250830 |
| openssl | 3.6.2 |
| pcre2 | 10.47 |
| perl | 5.42.0 |
| pkgconf | 2.5.1 |
| python | 3.14.5 |
| readline | 8.3 |
| sed | 4.9 |
| sqlite | 3.50.4 |
| tar | 1.35 |
| util-linux | 2.42.1 |
| xz | 5.8.3 |
| zlib | 1.3.2 |
| zstd | 1.5.7 |