python3-m2crypto: ignore CVE-2009-0127

Details: https://nvd.nist.gov/vuln/detail/CVE-2009-0127

The vulnerability is disputed[1] by upstream:
"There is no vulnerability in M2Crypto. Nowhere in the functions
are the return values of OpenSSL functions interpreted incorrectly.
The functions provide an interface to their users that may be
considered confusing, but is not incorrect, nor it is a vulnerability."

[1]: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-0127

Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com>
This commit is contained in:
Gyorgy Sarvari
2026-01-07 10:27:48 +01:00
parent 1bd2effd23
commit 53abba638b
@@ -45,4 +45,7 @@ export SWIG_FEATURES
export STAGING_DIR
# disputed, upstream claims there is no bug
CVE_CHECK_IGNORE = "CVE-2009-0127"
BBCLASSEXTEND = "native"