]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
linux/generate-cve-exclusions: use data from CVEProject
authorDaniel Turull <daniel.turull@ericsson.com>
Thu, 10 Apr 2025 09:48:35 +0000 (11:48 +0200)
committerSteve Sakoman <steve@sakoman.com>
Tue, 1 Jul 2025 13:51:23 +0000 (06:51 -0700)
commitab4d2a79188da5b58bf9a4eacc2460a00a5c1d70
tree948a5188f9bf5c16b93bbd4671fca0ead923517e
parentf359677709aba80735a38578475a34e1b83d321c
linux/generate-cve-exclusions: use data from CVEProject

The old script was relying on linuxkernelcves.com that was archived in
May 2024 when kernel.org became a CNA.

The new script reads CVE json files from the datadir that can be either
from the official kernel.org CNA [1] or CVEProject [2]

[1] https://git.kernel.org/pub/scm/linux/security/vulns.git
[2] https://github.com/CVEProject/cvelistV5

Signed-off-by: Daniel Turull <daniel.turull@ericsson.com>
Signed-off-by: Mathieu Dubois-Briand <mathieu.dubois-briand@bootlin.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
(cherry picked from commit 12612e8680798bdce39fbb79885e661596dbd53c)
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-kernel/linux/generate-cve-exclusions.py