summaryrefslogtreecommitdiffstats
path: root/meta-python
diff options
context:
space:
mode:
authorGyorgy Sarvari <skandigraun@gmail.com>2026-01-19 18:55:03 +0100
committerKhem Raj <raj.khem@gmail.com>2026-01-20 08:27:13 -0800
commit91f6b85b36316d5940ee194b1d195caf3ac040b1 (patch)
tree6013cea5badaa52b9816cde4bd6113c705a3829f /meta-python
parentecf359d2562795ca8de18f12f117cd654c30965e (diff)
downloadmeta-openembedded-91f6b85b36316d5940ee194b1d195caf3ac040b1.tar.gz
python3-py: ignore CVE-2022-42969
Details: https://nvd.nist.gov/vuln/detail/CVE-2022-42969 Upstream could not reproduce the issue. The vulnerability has currently the "disputed" flag in the NVD database, and Github has revoked their related advisory[1]. Ignore this CVE due to this. [1]: https://github.com/advisories/GHSA-w596-4wvx-j9j6 Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com> Signed-off-by: Khem Raj <raj.khem@gmail.com>
Diffstat (limited to 'meta-python')
-rw-r--r--meta-python/recipes-devtools/python/python3-py_1.11.0.bb1
1 files changed, 1 insertions, 0 deletions
diff --git a/meta-python/recipes-devtools/python/python3-py_1.11.0.bb b/meta-python/recipes-devtools/python/python3-py_1.11.0.bb
index 143f7ec555..61f3873b4c 100644
--- a/meta-python/recipes-devtools/python/python3-py_1.11.0.bb
+++ b/meta-python/recipes-devtools/python/python3-py_1.11.0.bb
@@ -6,6 +6,7 @@ LIC_FILES_CHKSUM = "file://LICENSE;md5=a6bb0320b04a0a503f12f69fea479de9"
6SRC_URI[sha256sum] = "51c75c4126074b472f746a24399ad32f6053d1b34b68d2fa41e558e6f4a98719" 6SRC_URI[sha256sum] = "51c75c4126074b472f746a24399ad32f6053d1b34b68d2fa41e558e6f4a98719"
7 7
8CVE_PRODUCT = "py" 8CVE_PRODUCT = "py"
9CVE_STATUS[CVE-2022-42969] = "disputed: upstream could not reproduce it, github also revoked the advisory"
9 10
10DEPENDS += "python3-setuptools-scm-native" 11DEPENDS += "python3-setuptools-scm-native"
11 12