python3-m2crypto: mark CVE-2020-25657 as patched

Details: https://nvd.nist.gov/vuln/detail/CVE-2020-25657

The commit[1] that fixes the vulnerability has been part of the
package since version 0.39.0

[1]: 84c53958de

Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com>
Signed-off-by: Khem Raj <raj.khem@gmail.com>
(cherry picked from commit ba6468f7a0)
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com>
Signed-off-by: Anuj Mittal <anuj.mittal@oss.qualcomm.com>
This commit is contained in:
Gyorgy Sarvari
2026-01-23 18:02:19 +01:00
committed by Anuj Mittal
parent 509f680b6e
commit 582d2ba035

View File

@@ -17,6 +17,7 @@ PYPI_PACKAGE = "M2Crypto"
inherit pypi siteinfo setuptools3
CVE_STATUS[CVE-2009-0127] = "disputed: upstream claims there is no bug"
CVE_STATUS[CVE-2020-25657] = "fixed-version: the used version (0.40.1) contains the fix already"
DEPENDS += "openssl swig-native"
RDEPENDS:${PN} += "\