]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
linux/cve-exclusion: Execute the script after changing to the new data source walnascar-next
authorDaniel Turull <daniel.turull@ericsson.com>
Fri, 11 Apr 2025 06:40:15 +0000 (08:40 +0200)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Wed, 23 Apr 2025 18:49:21 +0000 (19:49 +0100)
commit02a8d5d255397e85d32879b178dd6dd559a34a05
treeeda1b3e8994dbadec4ecc5722e16c44a27f98d42
parent96ef76d88851a5a397d9fc04e37baa285d9f4074
linux/cve-exclusion: Execute the script after changing to the new data source

Execute new script generate-cve-exclusions.py
./generate-cve-exclusions.py ~/cvelistV5/ 6.12.19 > cve-exclusion_6.12.inc

After using the database from CVEproject, some old
CVEs did not have correct metadata, therefore moving missing ones
from old cve-exclusions_6.12.inc into cve-exclusion.inc

Comparing output from cve_check before and after, two CVEs are removed:
CVE-2023-52904 and CVE-2024-38381

Signed-off-by: Daniel Turull <daniel.turull@ericsson.com>
Signed-off-by: Mathieu Dubois-Briand <mathieu.dubois-briand@bootlin.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-kernel/linux/cve-exclusion.inc
meta/recipes-kernel/linux/cve-exclusion_6.12.inc