summaryrefslogtreecommitdiffstats
path: root/meta/conf/bitbake.conf
diff options
context:
space:
mode:
authorAndrej Valek <andrej.valek@siemens.com>2023-06-23 13:14:56 +0200
committerRichard Purdie <richard.purdie@linuxfoundation.org>2023-07-19 23:25:01 +0100
commitbe9883a92bad0fe4c1e9c7302c93dea4ac680f8c (patch)
tree6d9d35acbb91f98016956168b4ea90f9b9ce0764 /meta/conf/bitbake.conf
parentebb8b39463cef3c3d0f90f054c433b2f5256cb1a (diff)
downloadpoky-be9883a92bad0fe4c1e9c7302c93dea4ac680f8c.tar.gz
cve-check: add option to add additional patched CVEs
- Replace CVE_CHECK_IGNORE with CVE_STATUS to be more flexible. The CVE_STATUS should contain an information about status wich is decoded in 3 items: - generic status: "Ignored", "Patched" or "Unpatched" - more detailed status enum - description: free text describing reason for status Examples of usage: CVE_STATUS[CVE-1234-0001] = "not-applicable-platform: Issue only applies on Windows" CVE_STATUS[CVE-1234-0002] = "fixed-version: Fixed externally" CVE_CHECK_STATUSMAP[not-applicable-platform] = "Ignored" CVE_CHECK_STATUSMAP[fixed-version] = "Patched" (From OE-Core rev: 34f682a24b7075b12ec308154b937ad118d69fe5) Signed-off-by: Andrej Valek <andrej.valek@siemens.com> Signed-off-by: Peter Marko <peter.marko@siemens.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'meta/conf/bitbake.conf')
-rw-r--r--meta/conf/bitbake.conf1
1 files changed, 1 insertions, 0 deletions
diff --git a/meta/conf/bitbake.conf b/meta/conf/bitbake.conf
index 8daaaad615..475d6523bb 100644
--- a/meta/conf/bitbake.conf
+++ b/meta/conf/bitbake.conf
@@ -831,6 +831,7 @@ include conf/distro/defaultsetup.conf
831include conf/documentation.conf 831include conf/documentation.conf
832include conf/licenses.conf 832include conf/licenses.conf
833require conf/sanity.conf 833require conf/sanity.conf
834require conf/cve-check-map.conf
834 835
835################################################################## 836##################################################################
836# Weak variables (usually to retain backwards compatibility) 837# Weak variables (usually to retain backwards compatibility)