summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorGyorgy Sarvari <skandigraun@gmail.com>2026-03-17 18:23:40 +0100
committerKhem Raj <raj.khem@gmail.com>2026-03-18 14:33:31 -0700
commit1cad6f53a40db5268ad0054b0526367b11a00bdf (patch)
treed8f3457466511401e35a24f5d085fa3d475e31fa
parent2184766a34ce42d648bb9bc7fec4e28bab42619f (diff)
downloadmeta-openembedded-1cad6f53a40db5268ad0054b0526367b11a00bdf.tar.gz
libsodium: mark CVE-2025-69277 patched
Details: https://nvd.nist.gov/vuln/detail/CVE-2025-69277 The vulnerability has been fixed[1] since version 1.0.20, but NVD tracks it without version info. Mark it patched explicitly. [1]: https://github.com/jedisct1/libsodium/commit/f2da4cd8cb26599a0285a6ab0c02948e361a674a Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com> Signed-off-by: Khem Raj <raj.khem@gmail.com>
-rw-r--r--meta-oe/recipes-crypto/libsodium/libsodium_1.0.21.bb2
1 files changed, 2 insertions, 0 deletions
diff --git a/meta-oe/recipes-crypto/libsodium/libsodium_1.0.21.bb b/meta-oe/recipes-crypto/libsodium/libsodium_1.0.21.bb
index 9f07634c41..a1647d2a30 100644
--- a/meta-oe/recipes-crypto/libsodium/libsodium_1.0.21.bb
+++ b/meta-oe/recipes-crypto/libsodium/libsodium_1.0.21.bb
@@ -13,3 +13,5 @@ SRC_URI[sha256sum] = "9e4285c7a419e82dedb0be63a72eea357d6943bc3e28e6735bf600dd48
13inherit autotools 13inherit autotools
14 14
15BBCLASSEXTEND = "native nativesdk" 15BBCLASSEXTEND = "native nativesdk"
16
17CVE_STATUS[CVE-2025-69277] = "fixed-version: fixed in 1.0.20"