]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core-contrib.git/commit
go: set status of CVE-2024-3566
authorPeter Marko <peter.marko@siemens.com>
Thu, 19 Jun 2025 16:52:10 +0000 (18:52 +0200)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Thu, 19 Jun 2025 20:59:39 +0000 (21:59 +0100)
commitc8ce6710d864d237fdf67d2c3d3aa0f0970a2a05
treeaab90b654f47ddbfa311b046ccca4623c66f14e3
parent908c5535506592af654e7efac5b4a28a05da23f6
go: set status of CVE-2024-3566

NVD ([1]) tracks this as:
cpe:2.3:a:golang:go:*:*:*:*:*:*:*:*
Running on/with
  cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

Yocto cve-check ignores the "Running on/with", so it needs to be ignored
explicitly.

[1] https://nvd.nist.gov/vuln/detail/CVE-2024-3566

Signed-off-by: Peter Marko <peter.marko@siemens.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-devtools/go/go-binary-native_1.24.4.bb
meta/recipes-devtools/go/go-common.inc