]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core-contrib.git/commitdiff
linux-yocto/6.18: update CVE exclusions (6.18.18)
authorBruce Ashfield <bruce.ashfield@gmail.com>
Mon, 23 Mar 2026 13:50:52 +0000 (09:50 -0400)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Tue, 24 Mar 2026 14:47:36 +0000 (14:47 +0000)
Data pulled from: https://github.com/CVEProject/cvelistV5

    1/1 [
        Author: cvelistV5 Github Action
        Email: github_action@example.com
        Subject: 9 changes (3 new | 6 updated): - 3 new CVEs: CVE-2026-21570, CVE-2026-25769, CVE-2026-25770 - 6 updated CVEs: CVE-2025-0665, CVE-2025-61662, CVE-2026-25534, CVE-2026-32290, CVE-2026-32292, CVE-2026-32293
        Date: Tue, 17 Mar 2026 18:05:17 +0000

    ]

Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-kernel/linux/cve-exclusion_6.18.inc

index e8173c4c9f96c682abba98955b3cf1582ebdb6ed..e6df676ae765a82c76e5bf5629c57b8e1efc6cf4 100644 (file)
@@ -1,11 +1,11 @@
 
 # Auto-generated CVE metadata, DO NOT EDIT BY HAND.
-# Generated at 2026-03-09 16:24:50.284184+00:00 for kernel version 6.18.16
-# From linux_kernel_cves cve_2026-03-09_1500Z-2-g02517aa779f
+# Generated at 2026-03-17 18:38:31.921355+00:00 for kernel version 6.18.18
+# From linux_kernel_cves cve_2026-03-17_1700Z-2-g05851354eaa
 
 
 python check_kernel_cve_status_version() {
-    this_version = "6.18.16"
+    this_version = "6.18.18"
     kernel_version = d.getVar("LINUX_VERSION")
     if kernel_version != this_version:
         bb.warn("Kernel CVE status needs updating: generated for %s but kernel is %s" % (this_version, kernel_version))
@@ -20420,6 +20420,8 @@ CVE_STATUS[CVE-2025-71237] = "cpe-stable-backport: Backported in 6.18.11"
 
 CVE_STATUS[CVE-2025-71238] = "cpe-stable-backport: Backported in 6.18.13"
 
+CVE_STATUS[CVE-2025-71239] = "cpe-stable-backport: Backported in 6.18.16"
+
 CVE_STATUS[CVE-2026-22976] = "cpe-stable-backport: Backported in 6.18.6"
 
 CVE_STATUS[CVE-2026-22977] = "cpe-stable-backport: Backported in 6.18.6"
@@ -20946,3 +20948,9 @@ CVE_STATUS[CVE-2026-23237] = "cpe-stable-backport: Backported in 6.18.13"
 
 CVE_STATUS[CVE-2026-23238] = "cpe-stable-backport: Backported in 6.18.13"
 
+CVE_STATUS[CVE-2026-23239] = "cpe-stable-backport: Backported in 6.18.16"
+
+CVE_STATUS[CVE-2026-23240] = "cpe-stable-backport: Backported in 6.18.16"
+
+CVE_STATUS[CVE-2026-23241] = "cpe-stable-backport: Backported in 6.18.16"
+