Just curious, does anyone run with _FORTIFY_SOURCE=3 in production? Did you catch any overflows because of it, and most importantly, is there a noticeable performance degradation?
https://rfc.archlinux.page/0017-increase-fortification-level...
Could this could be changed to where the overflow does not cause an abort; rather the next read of that location, without a corresponding legal write causes the abort. A buffer overrun does not mean the answer is wrong, but the use of memory that was overrun will.
In that case, production or not, you would want an abort. The answer is wrong!
(Perhaps this makes no sense. If so, sorry, the idea just came to me after reading the article.)