libmad: ignore CVE-2017-11552 and CVE-2018-7263

These CVEs are for mpg321, not libmad.
See Debian assessment:
* https://security-tracker.debian.org/tracker/CVE-2017-11552
* https://security-tracker.debian.org/tracker/CVE-2018-7263

Signed-off-by: Peter Marko <peter.marko@siemens.com>
Signed-off-by: Khem Raj <raj.khem@gmail.com>
(cherry picked from commit fee86a312f)

Adapted to Kirkstone.

Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com>
This commit is contained in:
Peter Marko
2025-03-21 00:14:03 +01:00
committed by Gyorgy Sarvari
parent 12b5785d71
commit e5a621fa4a
@@ -34,3 +34,6 @@ do_configure:prepend () {
}
ARM_INSTRUCTION_SET = "arm"
# cpe-incorrect: this CVE is for mpg321, not libmad
CVE_CHECK_IGNORE += "CVE-2017-11552 CVE-2018-7263"