summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorGyorgy Sarvari <skandigraun@gmail.com>2026-01-03 09:48:35 +0100
committerGyorgy Sarvari <skandigraun@gmail.com>2026-01-08 22:03:03 +0100
commit08c486ce76e2cd0c65647aa56a87a29b489fdd48 (patch)
treeb263ac0c9843114f637742116bc3a5be071d86d7
parent3dc63bce4de9f8c9dd44264d17430bfb91cc17be (diff)
downloadmeta-openembedded-08c486ce76e2cd0c65647aa56a87a29b489fdd48.tar.gz
netdata: ignore CVE-2024-32019
Details: https://nvd.nist.gov/vuln/detail/CVE-2024-32019 The vulnerability affects the ndsudo binary, part of netdata. This binary was introduced in version 1.45.0[1], and the recipe contains v1.34.1 - which is not vulnerable yet. Ignore the CVE due to this. [1]: https://github.com/netdata/netdata/commit/0c8b46cbfd05109a45ee4de27f034567569fa3fa Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com>
-rw-r--r--meta-webserver/recipes-webadmin/netdata/netdata_1.34.1.bb3
1 files changed, 3 insertions, 0 deletions
diff --git a/meta-webserver/recipes-webadmin/netdata/netdata_1.34.1.bb b/meta-webserver/recipes-webadmin/netdata/netdata_1.34.1.bb
index 71fb0783b6..516fde6281 100644
--- a/meta-webserver/recipes-webadmin/netdata/netdata_1.34.1.bb
+++ b/meta-webserver/recipes-webadmin/netdata/netdata_1.34.1.bb
@@ -79,3 +79,6 @@ do_install:append() {
79FILES:${PN} += "${localstatedir}/cache/netdata/ ${localstatedir}/lib/netdata/" 79FILES:${PN} += "${localstatedir}/cache/netdata/ ${localstatedir}/lib/netdata/"
80 80
81RDEPENDS:${PN} = "bash zlib" 81RDEPENDS:${PN} = "bash zlib"
82
83# versions <1.45.0 are not vulnerable yet
84CVE_CHECK_IGNORE = "CVE-2024-32019"