]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
linux-yocto/cve-exclusion: move entries from cve-extra-exclusions
authorRoss Burton <ross.burton@arm.com>
Tue, 4 Jul 2023 13:42:40 +0000 (14:42 +0100)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Mon, 10 Jul 2023 10:36:06 +0000 (11:36 +0100)
commit157f7b62e271df5dfd8a3bc4d3821bf806fde51e
tree7f8a819e6b23f2327da4ae145bc1b36adc83a4ac
parent2200fde7011c4206382150c2602b2eb17423d45e
linux-yocto/cve-exclusion: move entries from cve-extra-exclusions

We've a slew of CVE_CHECK_IGNOREs in cve-extra-exclusions which are to
mark a CVE as not valid with the current default kernel. However, this
file is kernel agnostic so if someone decides to build a 6.0 kernel then
these ignores are no longer valid.

Move the ignores which are to simply reflect backports to
cve-exclusions_6.1.inc so that they're version-specific. As the kernel
is upgraded these exclusions should be made redundant and removed from
the file.

Signed-off-by: Ross Burton <ross.burton@arm.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/conf/distro/include/cve-extra-exclusions.inc
meta/recipes-kernel/linux/cve-exclusion_6.1.inc