mirror of
https://github.com/openembedded/meta-openembedded.git
synced 2026-09-12 19:50:18 +00:00
python3-aiohttp: fix CVE-2026-34518
This patch applies the reviewed upstream fix commits shown in [1] and [2]. The advisory identifying the fix is referenced in [3]. [1] https://github.com/aio-libs/aiohttp/commit/5351c980dcec7ad385730efdf4e1f4338b24fdb6 [2] https://github.com/aio-libs/aiohttp/commit/6e8f393330f9bd6d7b24a146124ebc42eaa727b9 [3] https://nvd.nist.gov/vuln/detail/CVE-2026-34518 Signed-off-by: Darsh Kelaiya <dkelaiya@cisco.com> Signed-off-by: Anuj Mittal <anuj.mittal@oss.qualcomm.com>
This commit is contained in:
@@ -20,6 +20,7 @@ SRC_URI += "file://CVE-2024-52304.patch \
|
||||
file://CVE-2026-34514.patch \
|
||||
file://CVE-2026-34513.patch \
|
||||
file://CVE-2026-34993.patch \
|
||||
file://CVE-2026-34518.patch \
|
||||
"
|
||||
|
||||
CVE_STATUS[CVE-2026-34515] = "not-applicable-platform: Vulnerability only affects applications running on Windows"
|
||||
|
||||
Reference in New Issue
Block a user