]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
go: use go as CVE product for all golang recipe veriants
authorPeter Marko <peter.marko@siemens.com>
Sun, 12 Mar 2023 08:45:43 +0000 (09:45 +0100)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Tue, 14 Mar 2023 17:09:57 +0000 (17:09 +0000)
commit09f3a27a809bbec9b08c4e4a2b846b68f386c35c
tree7ec347daf24c2509c0ec129f516a7a9965be10dd
parent21a1e52079089c5bbeee8ffc9c504471f4a8732a
go: use go as CVE product for all golang recipe veriants

All golang vulnerabilities are reported under product 'go'.

By default there is no vulnerability reported for images with
golang components because none of used golang packages
have correct CVE product set:
* go-binary-native
* go-runtime
* go-cross-*

Signed-off-by: Peter Marko <peter.marko@siemens.com>
Signed-off-by: Alexandre Belloni <alexandre.belloni@bootlin.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-devtools/go/go-binary-native_1.20.1.bb
meta/recipes-devtools/go/go-common.inc