]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
cve-check: add support for Ignored CVEs
authorMarta Rybczynska <rybczynska@gmail.com>
Wed, 15 Jun 2022 13:20:11 +0000 (15:20 +0200)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Fri, 17 Jun 2022 16:57:39 +0000 (17:57 +0100)
commitc773102d4828fc4ddd1024f6115d577e23f1afe4
treeddcc61bb26c3f42d2a646b572a0643ea4cd1baab
parent98f4bf980c378cc541b220d79ee006bf2fae9ae8
cve-check: add support for Ignored CVEs

Ignored CVEs aren't patched, but do not apply in our configuration
for some reason. Up till now they were only partially supported
and reported as "Patched".

This patch adds separate reporting of Ignored CVEs. The variable
CVE_CHECK_REPORT_PATCHED now manages reporting of both patched
and ignored CVEs.

Signed-off-by: Marta Rybczynska <marta.rybczynska@huawei.com>
Signed-off-by: Alexandre Belloni <alexandre.belloni@bootlin.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/classes/cve-check.bbclass