build with options disabling root file access and environment

This should avoid or limit the security impact of issues in parsing of
terminfo files or the TERMINFO environment variable for setuid/gid
binaries.
This commit is contained in:
Miroslav Lichvar 2023-05-22 16:28:15 +02:00
parent 4c38b02fcb
commit f4baf96c6f

View File

@ -127,6 +127,8 @@ common_options="\
--enable-overwrite \ --enable-overwrite \
--enable-pc-files \ --enable-pc-files \
--enable-xmc-glitch \ --enable-xmc-glitch \
--disable-root-access \
--disable-root-environ \
--disable-stripping \ --disable-stripping \
--disable-wattr-macros \ --disable-wattr-macros \
--with-cxx-shared \ --with-cxx-shared \