]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core-contrib.git/commitdiff
grub: ignore CVE-2024-1048 and CVE-2023-4001
authorPeter Marko <peter.marko@siemens.com>
Sun, 1 Dec 2024 18:53:36 +0000 (19:53 +0100)
committerSteve Sakoman <steve@sakoman.com>
Wed, 4 Dec 2024 13:43:13 +0000 (05:43 -0800)
Same was done in newer Yocto releases.
See commit: f99b25355133fe8f65a55737270e67ea10b79d52
See commit: 40cd768368167f81de5bb55e9ff0584035f4c1b4

Signed-off-by: Peter Marko <peter.marko@siemens.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-bsp/grub/grub2.inc

index 2718379474a1969b02d4968825934eed303c643f..3e96426b82dcb69877a662b2fa44360d5847f6a0 100644 (file)
@@ -49,6 +49,8 @@ SRC_URI[sha256sum] = "23b64b4c741569f9426ed2e3d0e6780796fca081bee4c99f62aa3f53ae
 CVE_CHECK_IGNORE += "CVE-2019-14865"
 # Applies only to SUSE
 CVE_CHECK_IGNORE += "CVE-2021-46705"
+# not-applicable-platform: Applies only to RHEL/Fedora
+CVE_CHECK_IGNORE += "CVE-2024-1048 CVE-2023-4001"
 
 DEPENDS = "flex-native bison-native gettext-native"