summaryrefslogtreecommitdiffstats
path: root/documentation/ref-manual/variables.rst
diff options
context:
space:
mode:
Diffstat (limited to 'documentation/ref-manual/variables.rst')
-rw-r--r--documentation/ref-manual/variables.rst13
1 files changed, 12 insertions, 1 deletions
diff --git a/documentation/ref-manual/variables.rst b/documentation/ref-manual/variables.rst
index 1150940133..f6d248a193 100644
--- a/documentation/ref-manual/variables.rst
+++ b/documentation/ref-manual/variables.rst
@@ -1471,11 +1471,22 @@ system and gives an overview of their function and contents.
1471 variable only in certain contexts (e.g. when building for kernel 1471 variable only in certain contexts (e.g. when building for kernel
1472 and kernel module recipes). 1472 and kernel module recipes).
1473 1473
1474 :term:`CVE_CHECK_PN_WHITELIST`
1475 The list of package names (:term:`PN`) for which
1476 CVEs (Common Vulnerabilities and Exposures) are ignored.
1477
1478 :term:`CVE_CHECK_WHITELIST`
1479 The list of CVE IDs which are ignored. Here is
1480 an example from the :oe_layerindex:`Python3 recipe</layerindex/recipe/23823>`::
1481
1482 # This is windows only issue.
1483 CVE_CHECK_WHITELIST += "CVE-2020-15523"
1484
1474 :term:`CVE_PRODUCT` 1485 :term:`CVE_PRODUCT`
1475 In a recipe, defines the name used to match the recipe name 1486 In a recipe, defines the name used to match the recipe name
1476 against the name in the upstream `NIST CVE database <https://nvd.nist.gov/>`__. 1487 against the name in the upstream `NIST CVE database <https://nvd.nist.gov/>`__.
1477 1488
1478 The default is ${:term:`BPN`}. If it does not match the name in NIST CVE 1489 The default is ${:term:`BPN`}. If it does not match the name in the NIST CVE
1479 database or matches with multiple entries in the database, the default 1490 database or matches with multiple entries in the database, the default
1480 value needs to be changed. 1491 value needs to be changed.
1481 1492