From a0806bca0ad5d18df1081c1fbf91b4e3c337c988 Mon Sep 17 00:00:00 2001 From: Gyorgy Sarvari Date: Fri, 6 Feb 2026 09:20:46 +0100 Subject: [PATCH] freerdp: ignore CVE-2025-68118 Details: https://nvd.nist.gov/vuln/detail/CVE-2025-68118 The vulnerability is specific to the usage of Microsoft specific sprintf implementation. Because of this, ignore this vulnerability. Signed-off-by: Gyorgy Sarvari Signed-off-by: Khem Raj (cherry picked from commit 1b4b952b5127ed9c35cae0c6cfd6e1133c79a946) Signed-off-by: Gyorgy Sarvari Signed-off-by: Anuj Mittal --- meta-oe/recipes-support/freerdp/freerdp_2.11.7.bb | 1 + 1 file changed, 1 insertion(+) diff --git a/meta-oe/recipes-support/freerdp/freerdp_2.11.7.bb b/meta-oe/recipes-support/freerdp/freerdp_2.11.7.bb index d0d7d28b55..d51700c81b 100644 --- a/meta-oe/recipes-support/freerdp/freerdp_2.11.7.bb +++ b/meta-oe/recipes-support/freerdp/freerdp_2.11.7.bb @@ -94,3 +94,4 @@ python populate_packages:prepend () { } CVE_STATUS[CVE-2024-32662] = "fixed-version: 2.x is not affected, bug was introduced in 3.0.0" +CVE_STATUS[CVE-2025-68118] = "not-applicable-platform: Windows-only vulnerability"