]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core-contrib.git/commitdiff
linux/generate-cve-exclusions.py: fix comparison
authorRoss Burton <ross.burton@arm.com>
Mon, 21 Aug 2023 12:11:58 +0000 (13:11 +0100)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Tue, 22 Aug 2023 14:13:51 +0000 (15:13 +0100)
The backport detection logic didn't handle issues which were backported
to the current version.

(From OE-Core rev: 1c7b01627b47604744f723d5eeedd455df6307e2)

Signed-off-by: Ross Burton <ross.burton@arm.com>
Signed-off-by: Luca Ceresoli <luca.ceresoli@bootlin.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-kernel/linux/generate-cve-exclusions.py

index 4d96f19fe7a72f2cb6370c5aa6c22dd67854de76..34f9ee731dcb61a9c763d403edb88eae172cf314 100755 (executable)
@@ -70,7 +70,7 @@ def main(argp=None):
                 backport_data = stream_data[cve]
                 if base_version in backport_data:
                     backport_ver = Version(backport_data[base_version]["fixed_version"])
-                    if backport_ver < version:
+                    if backport_ver <= version:
                         print(
                             f'CVE_STATUS[{cve}] = "cpe-stable-backport: Backported in {backport_ver}"'
                         )