From a8754d90ae58b1fcacc6f1af9764d30dea80f59a Mon Sep 17 00:00:00 2001 From: Richard Purdie Date: Mon, 22 Aug 2022 15:31:25 +0100 Subject: [PATCH] libtirpc: Mark CVE-2021-46828 as resolved This CVE only applied to pre 1.3.3rc1 and we're on 1.3.3 so we're sorted but the rc versions make the automated matching fail. Therefore handle manually. (From OE-Core rev: 28cd290cc70f2401da1f51d17a3533ce581afbca) Signed-off-by: Richard Purdie --- meta/recipes-extended/libtirpc/libtirpc_1.3.3.bb | 3 +++ 1 file changed, 3 insertions(+) diff --git a/meta/recipes-extended/libtirpc/libtirpc_1.3.3.bb b/meta/recipes-extended/libtirpc/libtirpc_1.3.3.bb index bd13f6e95e..8c6c20733c 100644 --- a/meta/recipes-extended/libtirpc/libtirpc_1.3.3.bb +++ b/meta/recipes-extended/libtirpc/libtirpc_1.3.3.bb @@ -14,6 +14,9 @@ UPSTREAM_CHECK_URI = "https://sourceforge.net/projects/libtirpc/files/libtirpc/" UPSTREAM_CHECK_REGEX = "(?P\d+(\.\d+)+)/" SRC_URI[sha256sum] = "6474e98851d9f6f33871957ddee9714fdcd9d8a5ee9abb5a98d63ea2e60e12f3" +# Was fixed in 1.3.3rc1 so not present in 1.3.3 +CVE_CHECK_IGNORE += "CVE-2021-46828" + inherit autotools pkgconfig EXTRA_OECONF = "--disable-gssapi"