diff options
author | Gyorgy Sarvari <skandigraun@gmail.com> | 2025-10-13 20:47:40 +0200 |
---|---|---|
committer | Khem Raj <raj.khem@gmail.com> | 2025-10-13 23:47:40 -0700 |
commit | a637a72182b36a4ff30ef62f9834b0ad81027d38 (patch) | |
tree | b65553f8a9dd8c6111aad84512675c09905d09eb | |
parent | 095cdf4a8cc432fcb8cd3f5a9bd8d673dc3b6b8f (diff) | |
download | meta-openembedded-a637a72182b36a4ff30ef62f9834b0ad81027d38.tar.gz |
dovecot: ignore CVE-2016-4983 (again)
I removed the CVE_STATUS setting for CVE-2016-4983 when this recipe was
updated to 2.4.1-4 - but that was a mistake, the CVE database considers
(incorrectly) even the latest version as vulnerable.
Revert that mistake by adding back the correct CVE_STATUS to the recipe.
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com>
Signed-off-by: Khem Raj <raj.khem@gmail.com>
-rw-r--r-- | meta-networking/recipes-support/dovecot/dovecot_2.4.1-4.bb | 2 |
1 files changed, 2 insertions, 0 deletions
diff --git a/meta-networking/recipes-support/dovecot/dovecot_2.4.1-4.bb b/meta-networking/recipes-support/dovecot/dovecot_2.4.1-4.bb index a06fd45199..5894c76bac 100644 --- a/meta-networking/recipes-support/dovecot/dovecot_2.4.1-4.bb +++ b/meta-networking/recipes-support/dovecot/dovecot_2.4.1-4.bb | |||
@@ -75,3 +75,5 @@ FILES:${PN} += "${libdir}/dovecot/*plugin.so \ | |||
75 | FILES:${PN}-staticdev += "${libdir}/dovecot/*/*.a" | 75 | FILES:${PN}-staticdev += "${libdir}/dovecot/*/*.a" |
76 | FILES:${PN}-dev += "${libdir}/dovecot/libdovecot*.so" | 76 | FILES:${PN}-dev += "${libdir}/dovecot/libdovecot*.so" |
77 | FILES:${PN}-dbg += "${libdir}/dovecot/*/.debug" | 77 | FILES:${PN}-dbg += "${libdir}/dovecot/*/.debug" |
78 | |||
79 | CVE_STATUS[CVE-2016-4983] = "not-applicable-platform: Affects only postinstall script on specific distribution." | ||