summaryrefslogtreecommitdiffstats
path: root/meta/recipes-support/libcroco/files
diff options
context:
space:
mode:
authorsaloni <saloni.jain@kpit.com>2021-02-05 21:07:12 +0530
committerRichard Purdie <richard.purdie@linuxfoundation.org>2021-02-06 09:03:00 +0000
commit51b95cf1e7e613043795b564311971450b14fd8e (patch)
treea57112b3f045d4204c8287a7e83003e6da47adff /meta/recipes-support/libcroco/files
parentb5356165861505e415ec424cef71a536053c870d (diff)
downloadpoky-51b95cf1e7e613043795b564311971450b14fd8e.tar.gz
libgcrypt: Whitelisted CVEs
Whitelisted below CVEs: 1. CVE-2018-12433 Link: https://security-tracker.debian.org/tracker/CVE-2018-12433 Link: https://nvd.nist.gov/vuln/detail/CVE-2018-12433 CVE-2018-12433 is marked disputed and ignored by NVD as it does not impact crypt libraries for any distros and hence, can be safely marked whitelisted. 2. CVE-2018-12438 Link: https://security-tracker.debian.org/tracker/CVE-2018-12438 Link: https://ubuntu.com/security/CVE-2018-12438 CVE-2018-12438 was reported for affecting openjdk crypt libraries but there are no details available on which openjdk versions are affected and does not directly affect libgcrypt or any specific yocto distributions, hence, can be whitelisted. (From OE-Core rev: 2943efe3f56d394308f9364b439c25f6a7613288) Signed-off-by: Saloni Jain <Saloni.Jain@kpit.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'meta/recipes-support/libcroco/files')
0 files changed, 0 insertions, 0 deletions