summaryrefslogtreecommitdiffstats
path: root/meta/conf/distro/include/cve-extra-exclusions.inc
diff options
context:
space:
mode:
authorRoss Burton <ross.burton@arm.com>2023-09-04 17:03:35 +0100
committerRichard Purdie <richard.purdie@linuxfoundation.org>2023-09-05 08:09:13 +0100
commit7837dcdb44346d9ff58724a530a1be9e35e93a54 (patch)
tree5894105588602fd22f5c5b3c7608fa73200f3f4c /meta/conf/distro/include/cve-extra-exclusions.inc
parentc6f8b183161c09e92ed193d07eeeb14e0c7cead6 (diff)
downloadpoky-7837dcdb44346d9ff58724a530a1be9e35e93a54.tar.gz
cve-extra-exclusions: remove BlueZ issues
These BlueZ issues were mislabelled as Linux issues, but now that the CPE data is accurate this ignore can be removed. (From OE-Core rev: 7f354aed364b17259a642cc97e30a0a2b8218134) Signed-off-by: Ross Burton <ross.burton@arm.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'meta/conf/distro/include/cve-extra-exclusions.inc')
-rw-r--r--meta/conf/distro/include/cve-extra-exclusions.inc5
1 files changed, 0 insertions, 5 deletions
diff --git a/meta/conf/distro/include/cve-extra-exclusions.inc b/meta/conf/distro/include/cve-extra-exclusions.inc
index 84217e4acd..51926f342a 100644
--- a/meta/conf/distro/include/cve-extra-exclusions.inc
+++ b/meta/conf/distro/include/cve-extra-exclusions.inc
@@ -74,11 +74,6 @@ CVE_STATUS_KERNEL_HISTORIC = "CVE-1999-0524 CVE-1999-0656 CVE-2006-2932 CVE-2007
74CVE_STATUS_KERNEL_HISTORIC[status] = "ignored" 74CVE_STATUS_KERNEL_HISTORIC[status] = "ignored"
75 75
76 76
77# https://nvd.nist.gov/vuln/detail/CVE-2022-3563
78# https://nvd.nist.gov/vuln/detail/CVE-2022-3637
79CVE_STATUS[CVE-2022-3563] = "cpe-incorrect: This issue do not affect the kernel, patchs listed on CVE pages links to https://git.kernel.org/pub/scm/bluetooth/bluez.git"
80CVE_STATUS[CVE-2022-3637] = "cpe-incorrect: This issue do not affect the kernel, patchs listed on CVE pages links to https://git.kernel.org/pub/scm/bluetooth/bluez.git"
81
82# qemu:qemu-native:qemu-system-native https://nvd.nist.gov/vuln/detail/CVE-2021-20255 77# qemu:qemu-native:qemu-system-native https://nvd.nist.gov/vuln/detail/CVE-2021-20255
83CVE_STATUS[CVE-2021-20255] = "upstream-wontfix: \ 78CVE_STATUS[CVE-2021-20255] = "upstream-wontfix: \
84There was a proposed patch https://lists.gnu.org/archive/html/qemu-devel/2021-02/msg06098.html \ 79There was a proposed patch https://lists.gnu.org/archive/html/qemu-devel/2021-02/msg06098.html \