summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorGyorgy Sarvari <skandigraun@gmail.com>2025-10-13 20:47:40 +0200
committerKhem Raj <raj.khem@gmail.com>2025-10-13 23:47:40 -0700
commita637a72182b36a4ff30ef62f9834b0ad81027d38 (patch)
treeb65553f8a9dd8c6111aad84512675c09905d09eb
parent095cdf4a8cc432fcb8cd3f5a9bd8d673dc3b6b8f (diff)
downloadmeta-openembedded-a637a72182b36a4ff30ef62f9834b0ad81027d38.tar.gz
dovecot: ignore CVE-2016-4983 (again)
I removed the CVE_STATUS setting for CVE-2016-4983 when this recipe was updated to 2.4.1-4 - but that was a mistake, the CVE database considers (incorrectly) even the latest version as vulnerable. Revert that mistake by adding back the correct CVE_STATUS to the recipe. Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com> Signed-off-by: Khem Raj <raj.khem@gmail.com>
-rw-r--r--meta-networking/recipes-support/dovecot/dovecot_2.4.1-4.bb2
1 files changed, 2 insertions, 0 deletions
diff --git a/meta-networking/recipes-support/dovecot/dovecot_2.4.1-4.bb b/meta-networking/recipes-support/dovecot/dovecot_2.4.1-4.bb
index a06fd45199..5894c76bac 100644
--- a/meta-networking/recipes-support/dovecot/dovecot_2.4.1-4.bb
+++ b/meta-networking/recipes-support/dovecot/dovecot_2.4.1-4.bb
@@ -75,3 +75,5 @@ FILES:${PN} += "${libdir}/dovecot/*plugin.so \
75FILES:${PN}-staticdev += "${libdir}/dovecot/*/*.a" 75FILES:${PN}-staticdev += "${libdir}/dovecot/*/*.a"
76FILES:${PN}-dev += "${libdir}/dovecot/libdovecot*.so" 76FILES:${PN}-dev += "${libdir}/dovecot/libdovecot*.so"
77FILES:${PN}-dbg += "${libdir}/dovecot/*/.debug" 77FILES:${PN}-dbg += "${libdir}/dovecot/*/.debug"
78
79CVE_STATUS[CVE-2016-4983] = "not-applicable-platform: Affects only postinstall script on specific distribution."