From f435cff54a9bb26179c46aa0e2f099a3a4a1cca5 Mon Sep 17 00:00:00 2001 From: Ross Burton Date: Mon, 24 Oct 2022 16:07:44 +0100 Subject: [PATCH] xserver-xorg: ignore CVE-2022-3553 as it is XQuartz-specific (From OE-Core rev: 2017ed15cc5b29319fe1b769c1fcfc5c2f799fd8) Signed-off-by: Ross Burton Signed-off-by: Alexandre Belloni (cherry picked from commit 769576f36aac9652525beec5c7e8a4d26632b844) Signed-off-by: Steve Sakoman Signed-off-by: Richard Purdie --- meta/recipes-graphics/xorg-xserver/xserver-xorg.inc | 2 ++ 1 file changed, 2 insertions(+) diff --git a/meta/recipes-graphics/xorg-xserver/xserver-xorg.inc b/meta/recipes-graphics/xorg-xserver/xserver-xorg.inc index 057a1ba6ad..dd741270a7 100644 --- a/meta/recipes-graphics/xorg-xserver/xserver-xorg.inc +++ b/meta/recipes-graphics/xorg-xserver/xserver-xorg.inc @@ -28,6 +28,8 @@ CVE_CHECK_IGNORE += "CVE-2011-4613" # impossible or difficult to exploit. There is currently no upstream patch # available for this flaw. CVE_CHECK_IGNORE += "CVE-2020-25697" +# This is specific to XQuartz, which is the macOS X server port +CVE_CHECK_IGNORE += "CVE-2022-3553" S = "${WORKDIR}/${XORG_PN}-${PV}"