diff options
| author | Gyorgy Sarvari <skandigraun@gmail.com> | 2026-02-05 07:59:50 +0100 |
|---|---|---|
| committer | Anuj Mittal <anuj.mittal@oss.qualcomm.com> | 2026-02-19 08:20:26 +0530 |
| commit | ea9fb97f53ae61851c26316275ad89a101d20a93 (patch) | |
| tree | 0134da52567ca6c2d1fb38abd610487fef53f78b /meta-python | |
| parent | 4ea240343937d47594a7a448c7287bc0e9795d9f (diff) | |
| download | meta-openembedded-ea9fb97f53ae61851c26316275ad89a101d20a93.tar.gz | |
python3-uvicorn: mark CVE-2020-7694 patched
Details: https://nvd.nist.gov/vuln/detail/CVE-2020-7694
The vulnerability was reported to the project[1], and the commit[2] that
resolved the issue has been part of the project since version 0.11.7.
Mark the CVE as patched due to this.
[1]: https://github.com/Kludex/uvicorn/issues/723
[2]: https://github.com/Kludex/uvicorn/commit/895807f94ea9a8e588605c12076b7d7517cda503
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com>
Signed-off-by: Khem Raj <raj.khem@gmail.com>
(cherry picked from commit a5ee234b8cf06b6385a9bf1eb5b60d6171a993c9)
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com>
Signed-off-by: Anuj Mittal <anuj.mittal@oss.qualcomm.com>
Diffstat (limited to 'meta-python')
| -rw-r--r-- | meta-python/recipes-devtools/python/python3-uvicorn_0.38.0.bb | 1 |
1 files changed, 1 insertions, 0 deletions
diff --git a/meta-python/recipes-devtools/python/python3-uvicorn_0.38.0.bb b/meta-python/recipes-devtools/python/python3-uvicorn_0.38.0.bb index b0ce49be97..ee295abf5d 100644 --- a/meta-python/recipes-devtools/python/python3-uvicorn_0.38.0.bb +++ b/meta-python/recipes-devtools/python/python3-uvicorn_0.38.0.bb | |||
| @@ -11,6 +11,7 @@ SRC_URI += "file://0001-ptest-disable-failing-tests.patch" | |||
| 11 | inherit pypi python_hatchling ptest-python-pytest | 11 | inherit pypi python_hatchling ptest-python-pytest |
| 12 | 12 | ||
| 13 | PYPI_PACKAGE = "uvicorn" | 13 | PYPI_PACKAGE = "uvicorn" |
| 14 | CVE_STATUS[CVE-2020-7694] = "fixed-version: The vulnerability has been fixed since 0.11.7" | ||
| 14 | 15 | ||
| 15 | RDEPENDS:${PN} = "\ | 16 | RDEPENDS:${PN} = "\ |
| 16 | python3-click \ | 17 | python3-click \ |
