diff options
| author | Bruce Ashfield <bruce.ashfield@gmail.com> | 2025-09-05 12:09:27 -0400 |
|---|---|---|
| committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2025-09-11 11:31:56 +0100 |
| commit | 23848300e9060521ba361642d1b65a72d5e5f964 (patch) | |
| tree | 8c5a149abe816d06f493cfd8a3498e8144199832 /meta/recipes-kernel | |
| parent | bb97216d85c3c0497a209e80b50f782cf2228820 (diff) | |
| download | poky-23848300e9060521ba361642d1b65a72d5e5f964.tar.gz | |
linux-yocto/6.12: update CVE exclusions (6.12.44)
Data pulled from: https://github.com/CVEProject/cvelistV5
1/1 [
Author: cvelistV5 Github Action
Email: github_action@example.com
Subject: 3 changes (0 new | 3 updated): - 0 new CVEs: - 3 updated CVEs: CVE-2025-32100, CVE-2025-55852, CVE-2025-55944
Date: Wed, 3 Sep 2025 20:01:09 +0000
]
(From OE-Core rev: 7f78db11847b54b32c2c3d6e86cf7e3a06dcd625)
Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'meta/recipes-kernel')
| -rw-r--r-- | meta/recipes-kernel/linux/cve-exclusion_6.12.inc | 140 |
1 files changed, 134 insertions, 6 deletions
diff --git a/meta/recipes-kernel/linux/cve-exclusion_6.12.inc b/meta/recipes-kernel/linux/cve-exclusion_6.12.inc index cc26368560..57b735ed34 100644 --- a/meta/recipes-kernel/linux/cve-exclusion_6.12.inc +++ b/meta/recipes-kernel/linux/cve-exclusion_6.12.inc | |||
| @@ -1,11 +1,11 @@ | |||
| 1 | 1 | ||
| 2 | # Auto-generated CVE metadata, DO NOT EDIT BY HAND. | 2 | # Auto-generated CVE metadata, DO NOT EDIT BY HAND. |
| 3 | # Generated at 2025-08-21 13:18:00.380174+00:00 for kernel version 6.12.42 | 3 | # Generated at 2025-09-03 20:06:37.780942+00:00 for kernel version 6.12.44 |
| 4 | # From linux_kernel_cves cve_2025-08-21_1200Z-2-g608fd2b01c2 | 4 | # From linux_kernel_cves cve_2025-09-03_1900Z-6-ga45e93ffde5 |
| 5 | 5 | ||
| 6 | 6 | ||
| 7 | python check_kernel_cve_status_version() { | 7 | python check_kernel_cve_status_version() { |
| 8 | this_version = "6.12.42" | 8 | this_version = "6.12.44" |
| 9 | kernel_version = d.getVar("LINUX_VERSION") | 9 | kernel_version = d.getVar("LINUX_VERSION") |
| 10 | if kernel_version != this_version: | 10 | if kernel_version != this_version: |
| 11 | bb.warn("Kernel CVE status needs updating: generated for %s but kernel is %s" % (this_version, kernel_version)) | 11 | bb.warn("Kernel CVE status needs updating: generated for %s but kernel is %s" % (this_version, kernel_version)) |
| @@ -12000,6 +12000,10 @@ CVE_STATUS[CVE-2024-58237] = "cpe-stable-backport: Backported in 6.12.9" | |||
| 12000 | 12000 | ||
| 12001 | CVE_STATUS[CVE-2024-58238] = "fixed-version: Fixed from version 6.9" | 12001 | CVE_STATUS[CVE-2024-58238] = "fixed-version: Fixed from version 6.9" |
| 12002 | 12002 | ||
| 12003 | CVE_STATUS[CVE-2024-58239] = "fixed-version: Fixed from version 6.8" | ||
| 12004 | |||
| 12005 | CVE_STATUS[CVE-2024-58240] = "fixed-version: Fixed from version 6.8" | ||
| 12006 | |||
| 12003 | CVE_STATUS[CVE-2025-21629] = "cpe-stable-backport: Backported in 6.12.9" | 12007 | CVE_STATUS[CVE-2025-21629] = "cpe-stable-backport: Backported in 6.12.9" |
| 12004 | 12008 | ||
| 12005 | CVE_STATUS[CVE-2025-21631] = "cpe-stable-backport: Backported in 6.12.10" | 12009 | CVE_STATUS[CVE-2025-21631] = "cpe-stable-backport: Backported in 6.12.10" |
| @@ -12492,7 +12496,7 @@ CVE_STATUS[CVE-2025-21882] = "fixed-version: only affects 6.13 onwards" | |||
| 12492 | 12496 | ||
| 12493 | CVE_STATUS[CVE-2025-21883] = "cpe-stable-backport: Backported in 6.12.18" | 12497 | CVE_STATUS[CVE-2025-21883] = "cpe-stable-backport: Backported in 6.12.18" |
| 12494 | 12498 | ||
| 12495 | # CVE-2025-21884 may need backporting (fixed from 6.12.43) | 12499 | CVE_STATUS[CVE-2025-21884] = "cpe-stable-backport: Backported in 6.12.43" |
| 12496 | 12500 | ||
| 12497 | CVE_STATUS[CVE-2025-21885] = "cpe-stable-backport: Backported in 6.12.18" | 12501 | CVE_STATUS[CVE-2025-21885] = "cpe-stable-backport: Backported in 6.12.18" |
| 12498 | 12502 | ||
| @@ -13060,7 +13064,7 @@ CVE_STATUS[CVE-2025-37742] = "cpe-stable-backport: Backported in 6.12.24" | |||
| 13060 | 13064 | ||
| 13061 | # CVE-2025-37743 needs backporting (fixed from 6.15) | 13065 | # CVE-2025-37743 needs backporting (fixed from 6.15) |
| 13062 | 13066 | ||
| 13063 | CVE_STATUS[CVE-2025-37744] = "cpe-stable-backport: Backported in 6.12.24" | 13067 | CVE_STATUS[CVE-2025-37744] = "fixed-version: only affects 6.14 onwards" |
| 13064 | 13068 | ||
| 13065 | CVE_STATUS[CVE-2025-37745] = "cpe-stable-backport: Backported in 6.12.24" | 13069 | CVE_STATUS[CVE-2025-37745] = "cpe-stable-backport: Backported in 6.12.24" |
| 13066 | 13070 | ||
| @@ -14774,12 +14778,136 @@ CVE_STATUS[CVE-2025-38612] = "cpe-stable-backport: Backported in 6.12.42" | |||
| 14774 | 14778 | ||
| 14775 | CVE_STATUS[CVE-2025-38613] = "fixed-version: only affects 6.13 onwards" | 14779 | CVE_STATUS[CVE-2025-38613] = "fixed-version: only affects 6.13 onwards" |
| 14776 | 14780 | ||
| 14777 | # CVE-2025-38614 may need backporting (fixed from 6.12.43) | 14781 | CVE_STATUS[CVE-2025-38614] = "cpe-stable-backport: Backported in 6.12.43" |
| 14778 | 14782 | ||
| 14779 | CVE_STATUS[CVE-2025-38615] = "cpe-stable-backport: Backported in 6.12.42" | 14783 | CVE_STATUS[CVE-2025-38615] = "cpe-stable-backport: Backported in 6.12.42" |
| 14780 | 14784 | ||
| 14785 | CVE_STATUS[CVE-2025-38616] = "cpe-stable-backport: Backported in 6.12.43" | ||
| 14786 | |||
| 14787 | CVE_STATUS[CVE-2025-38617] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14788 | |||
| 14789 | CVE_STATUS[CVE-2025-38618] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14790 | |||
| 14791 | CVE_STATUS[CVE-2025-38619] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14792 | |||
| 14793 | CVE_STATUS[CVE-2025-38620] = "fixed-version: only affects 6.16 onwards" | ||
| 14794 | |||
| 14795 | # CVE-2025-38621 needs backporting (fixed from 6.17rc1) | ||
| 14796 | |||
| 14797 | CVE_STATUS[CVE-2025-38622] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14798 | |||
| 14799 | CVE_STATUS[CVE-2025-38623] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14800 | |||
| 14801 | CVE_STATUS[CVE-2025-38624] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14802 | |||
| 14803 | CVE_STATUS[CVE-2025-38625] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14804 | |||
| 14805 | CVE_STATUS[CVE-2025-38626] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14806 | |||
| 14807 | # CVE-2025-38627 needs backporting (fixed from 6.17rc1) | ||
| 14808 | |||
| 14809 | CVE_STATUS[CVE-2025-38628] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14810 | |||
| 14811 | CVE_STATUS[CVE-2025-38629] = "fixed-version: only affects 6.13 onwards" | ||
| 14812 | |||
| 14813 | CVE_STATUS[CVE-2025-38630] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14814 | |||
| 14815 | CVE_STATUS[CVE-2025-38631] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14816 | |||
| 14817 | CVE_STATUS[CVE-2025-38632] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14818 | |||
| 14819 | CVE_STATUS[CVE-2025-38633] = "fixed-version: only affects 6.16 onwards" | ||
| 14820 | |||
| 14821 | CVE_STATUS[CVE-2025-38634] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14822 | |||
| 14823 | CVE_STATUS[CVE-2025-38635] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14824 | |||
| 14825 | # CVE-2025-38636 needs backporting (fixed from 6.17rc1) | ||
| 14826 | |||
| 14781 | CVE_STATUS[CVE-2025-38637] = "cpe-stable-backport: Backported in 6.12.23" | 14827 | CVE_STATUS[CVE-2025-38637] = "cpe-stable-backport: Backported in 6.12.23" |
| 14782 | 14828 | ||
| 14829 | CVE_STATUS[CVE-2025-38638] = "fixed-version: only affects 6.16 onwards" | ||
| 14830 | |||
| 14831 | CVE_STATUS[CVE-2025-38639] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14832 | |||
| 14833 | CVE_STATUS[CVE-2025-38640] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14834 | |||
| 14835 | CVE_STATUS[CVE-2025-38641] = "fixed-version: only affects 6.16 onwards" | ||
| 14836 | |||
| 14837 | CVE_STATUS[CVE-2025-38642] = "fixed-version: only affects 6.13 onwards" | ||
| 14838 | |||
| 14839 | # CVE-2025-38643 needs backporting (fixed from 6.17rc1) | ||
| 14840 | |||
| 14841 | CVE_STATUS[CVE-2025-38644] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14842 | |||
| 14843 | CVE_STATUS[CVE-2025-38645] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14844 | |||
| 14845 | CVE_STATUS[CVE-2025-38646] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14846 | |||
| 14847 | CVE_STATUS[CVE-2025-38647] = "fixed-version: only affects 6.16 onwards" | ||
| 14848 | |||
| 14849 | CVE_STATUS[CVE-2025-38648] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14850 | |||
| 14851 | CVE_STATUS[CVE-2025-38649] = "fixed-version: only affects 6.14 onwards" | ||
| 14852 | |||
| 14853 | CVE_STATUS[CVE-2025-38650] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14854 | |||
| 14855 | CVE_STATUS[CVE-2025-38651] = "fixed-version: only affects 6.15 onwards" | ||
| 14856 | |||
| 14857 | CVE_STATUS[CVE-2025-38652] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14858 | |||
| 14859 | CVE_STATUS[CVE-2025-38653] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14860 | |||
| 14861 | CVE_STATUS[CVE-2025-38654] = "fixed-version: only affects 6.13 onwards" | ||
| 14862 | |||
| 14863 | CVE_STATUS[CVE-2025-38655] = "fixed-version: only affects 6.13 onwards" | ||
| 14864 | |||
| 14865 | # CVE-2025-38656 has no known resolution | ||
| 14866 | |||
| 14867 | CVE_STATUS[CVE-2025-38657] = "fixed-version: only affects 6.16 onwards" | ||
| 14868 | |||
| 14869 | CVE_STATUS[CVE-2025-38658] = "fixed-version: only affects 6.14 onwards" | ||
| 14870 | |||
| 14871 | CVE_STATUS[CVE-2025-38659] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14872 | |||
| 14873 | CVE_STATUS[CVE-2025-38660] = "cpe-stable-backport: Backported in 6.12.42" | ||
| 14874 | |||
| 14875 | CVE_STATUS[CVE-2025-38661] = "fixed-version: only affects 6.15 onwards" | ||
| 14876 | |||
| 14877 | CVE_STATUS[CVE-2025-38662] = "cpe-stable-backport: Backported in 6.12.41" | ||
| 14878 | |||
| 14879 | CVE_STATUS[CVE-2025-38663] = "cpe-stable-backport: Backported in 6.12.41" | ||
| 14880 | |||
| 14881 | CVE_STATUS[CVE-2025-38664] = "cpe-stable-backport: Backported in 6.12.41" | ||
| 14882 | |||
| 14883 | CVE_STATUS[CVE-2025-38665] = "cpe-stable-backport: Backported in 6.12.41" | ||
| 14884 | |||
| 14885 | CVE_STATUS[CVE-2025-38666] = "cpe-stable-backport: Backported in 6.12.41" | ||
| 14886 | |||
| 14887 | CVE_STATUS[CVE-2025-38667] = "fixed-version: only affects 6.15 onwards" | ||
| 14888 | |||
| 14889 | CVE_STATUS[CVE-2025-38668] = "cpe-stable-backport: Backported in 6.12.41" | ||
| 14890 | |||
| 14891 | CVE_STATUS[CVE-2025-38669] = "fixed-version: only affects 6.15 onwards" | ||
| 14892 | |||
| 14893 | CVE_STATUS[CVE-2025-38670] = "cpe-stable-backport: Backported in 6.12.41" | ||
| 14894 | |||
| 14895 | CVE_STATUS[CVE-2025-38671] = "cpe-stable-backport: Backported in 6.12.41" | ||
| 14896 | |||
| 14897 | CVE_STATUS[CVE-2025-38672] = "fixed-version: only affects 6.15 onwards" | ||
| 14898 | |||
| 14899 | CVE_STATUS[CVE-2025-38673] = "fixed-version: only affects 6.15 onwards" | ||
| 14900 | |||
| 14901 | CVE_STATUS[CVE-2025-38674] = "fixed-version: only affects 6.15 onwards" | ||
| 14902 | |||
| 14903 | CVE_STATUS[CVE-2025-38675] = "cpe-stable-backport: Backported in 6.12.41" | ||
| 14904 | |||
| 14905 | CVE_STATUS[CVE-2025-38676] = "cpe-stable-backport: Backported in 6.12.44" | ||
| 14906 | |||
| 14907 | CVE_STATUS[CVE-2025-38677] = "cpe-stable-backport: Backported in 6.12.44" | ||
| 14908 | |||
| 14909 | # CVE-2025-38678 needs backporting (fixed from 6.17rc2) | ||
| 14910 | |||
| 14783 | CVE_STATUS[CVE-2025-39688] = "cpe-stable-backport: Backported in 6.12.23" | 14911 | CVE_STATUS[CVE-2025-39688] = "cpe-stable-backport: Backported in 6.12.23" |
| 14784 | 14912 | ||
| 14785 | CVE_STATUS[CVE-2025-39728] = "cpe-stable-backport: Backported in 6.12.23" | 14913 | CVE_STATUS[CVE-2025-39728] = "cpe-stable-backport: Backported in 6.12.23" |
