]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commitdiff
gnutls: set status for CVE-2026-1584
authorPeter Marko <peter.marko@siemens.com>
Sun, 26 Apr 2026 12:02:47 +0000 (14:02 +0200)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Mon, 27 Apr 2026 14:05:47 +0000 (15:05 +0100)
This is a version-less RedHat CVE.
Per Debian security tracker [1] this is fixed in 3.8.12.

[1] https://security-tracker.debian.org/tracker/CVE-2026-1584

Signed-off-by: Peter Marko <peter.marko@siemens.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-support/gnutls/gnutls_3.8.12.bb

index 7218428012292945d75b2f74b88b329b9cdac21e..8554ab943d6da82c78d324b130996b117a748a7c 100644 (file)
@@ -107,3 +107,4 @@ pkg_postinst_ontarget:${PN}-fips () {
 
 CVE_STATUS[CVE-2025-32989] = "fixed-version: fixed in version 3.8.10"
 CVE_STATUS[CVE-2025-32990] = "fixed-version: fixed in version 3.8.10"
+CVE_STATUS[CVE-2026-1584] = "fixed-version: fixed in version 3.8.12"