summaryrefslogtreecommitdiffstats
path: root/meta/recipes-kernel
diff options
context:
space:
mode:
authorBruce Ashfield <bruce.ashfield@gmail.com>2025-10-30 13:12:22 -0400
committerRichard Purdie <richard.purdie@linuxfoundation.org>2025-11-03 17:40:41 +0000
commit4e63a67221e8067ceacec3c554ce4d170f632557 (patch)
treebc287cba0526856b53c8c0e70f7f686c1c110860 /meta/recipes-kernel
parentcd2780eb302c6a0ab33f096dc71c748c26bea6df (diff)
downloadpoky-4e63a67221e8067ceacec3c554ce4d170f632557.tar.gz
linux-yocto/6.12: update CVE exclusions (6.12.53)
Data pulled from: https://github.com/CVEProject/cvelistV5 1/1 [ Author: cvelistV5 Github Action Email: github_action@example.com Subject: 1 changes (0 new | 1 updated): - 0 new CVEs: - 1 updated CVEs: CVE-2025-9152 Date: Thu, 16 Oct 2025 13:08:42 +0000 ] (From OE-Core rev: 1dddfafa3218e786c07f1e8a4dab187514997465) Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'meta/recipes-kernel')
-rw-r--r--meta/recipes-kernel/linux/cve-exclusion_6.12.inc74
1 files changed, 71 insertions, 3 deletions
diff --git a/meta/recipes-kernel/linux/cve-exclusion_6.12.inc b/meta/recipes-kernel/linux/cve-exclusion_6.12.inc
index f84d42cfe1..48a7d59689 100644
--- a/meta/recipes-kernel/linux/cve-exclusion_6.12.inc
+++ b/meta/recipes-kernel/linux/cve-exclusion_6.12.inc
@@ -1,11 +1,11 @@
1 1
2# Auto-generated CVE metadata, DO NOT EDIT BY HAND. 2# Auto-generated CVE metadata, DO NOT EDIT BY HAND.
3# Generated at 2025-10-14 01:23:30.027767+00:00 for kernel version 6.12.52 3# Generated at 2025-10-16 13:21:03.993902+00:00 for kernel version 6.12.53
4# From linux_kernel_cves 2025-10-14_baseline-1-gddc0a257837 4# From linux_kernel_cves cve_2025-10-16_1200Z-2-g676292fb5cd
5 5
6 6
7python check_kernel_cve_status_version() { 7python check_kernel_cve_status_version() {
8 this_version = "6.12.52" 8 this_version = "6.12.53"
9 kernel_version = d.getVar("LINUX_VERSION") 9 kernel_version = d.getVar("LINUX_VERSION")
10 if kernel_version != this_version: 10 if kernel_version != this_version:
11 bb.warn("Kernel CVE status needs updating: generated for %s but kernel is %s" % (this_version, kernel_version)) 11 bb.warn("Kernel CVE status needs updating: generated for %s but kernel is %s" % (this_version, kernel_version))
@@ -17274,8 +17274,76 @@ CVE_STATUS[CVE-2025-39964] = "cpe-stable-backport: Backported in 6.12.49"
17274 17274
17275CVE_STATUS[CVE-2025-39965] = "cpe-stable-backport: Backported in 6.12.50" 17275CVE_STATUS[CVE-2025-39965] = "cpe-stable-backport: Backported in 6.12.50"
17276 17276
17277CVE_STATUS[CVE-2025-39966] = "cpe-stable-backport: Backported in 6.12.50"
17278
17279CVE_STATUS[CVE-2025-39967] = "cpe-stable-backport: Backported in 6.12.50"
17280
17281CVE_STATUS[CVE-2025-39968] = "cpe-stable-backport: Backported in 6.12.50"
17282
17283CVE_STATUS[CVE-2025-39969] = "cpe-stable-backport: Backported in 6.12.50"
17284
17285CVE_STATUS[CVE-2025-39970] = "cpe-stable-backport: Backported in 6.12.50"
17286
17287CVE_STATUS[CVE-2025-39971] = "cpe-stable-backport: Backported in 6.12.50"
17288
17289CVE_STATUS[CVE-2025-39972] = "cpe-stable-backport: Backported in 6.12.50"
17290
17291CVE_STATUS[CVE-2025-39973] = "cpe-stable-backport: Backported in 6.12.50"
17292
17293CVE_STATUS[CVE-2025-39974] = "fixed-version: only affects 6.16 onwards"
17294
17295CVE_STATUS[CVE-2025-39975] = "cpe-stable-backport: Backported in 6.12.50"
17296
17297CVE_STATUS[CVE-2025-39976] = "fixed-version: only affects 6.16 onwards"
17298
17299CVE_STATUS[CVE-2025-39977] = "cpe-stable-backport: Backported in 6.12.50"
17300
17301CVE_STATUS[CVE-2025-39978] = "cpe-stable-backport: Backported in 6.12.50"
17302
17303CVE_STATUS[CVE-2025-39979] = "fixed-version: only affects 6.14 onwards"
17304
17305CVE_STATUS[CVE-2025-39980] = "cpe-stable-backport: Backported in 6.12.50"
17306
17307# CVE-2025-39981 needs backporting (fixed from 6.17)
17308
17309CVE_STATUS[CVE-2025-39982] = "cpe-stable-backport: Backported in 6.12.50"
17310
17311CVE_STATUS[CVE-2025-39983] = "fixed-version: only affects 6.15 onwards"
17312
17313CVE_STATUS[CVE-2025-39984] = "cpe-stable-backport: Backported in 6.12.50"
17314
17315CVE_STATUS[CVE-2025-39985] = "cpe-stable-backport: Backported in 6.12.50"
17316
17317CVE_STATUS[CVE-2025-39986] = "cpe-stable-backport: Backported in 6.12.50"
17318
17319CVE_STATUS[CVE-2025-39987] = "cpe-stable-backport: Backported in 6.12.50"
17320
17321CVE_STATUS[CVE-2025-39988] = "cpe-stable-backport: Backported in 6.12.50"
17322
17277CVE_STATUS[CVE-2025-39989] = "cpe-stable-backport: Backported in 6.12.23" 17323CVE_STATUS[CVE-2025-39989] = "cpe-stable-backport: Backported in 6.12.23"
17278 17324
17325CVE_STATUS[CVE-2025-39990] = "cpe-stable-backport: Backported in 6.12.50"
17326
17327CVE_STATUS[CVE-2025-39991] = "cpe-stable-backport: Backported in 6.12.51"
17328
17329CVE_STATUS[CVE-2025-39992] = "cpe-stable-backport: Backported in 6.12.51"
17330
17331CVE_STATUS[CVE-2025-39993] = "cpe-stable-backport: Backported in 6.12.51"
17332
17333CVE_STATUS[CVE-2025-39994] = "cpe-stable-backport: Backported in 6.12.51"
17334
17335CVE_STATUS[CVE-2025-39995] = "cpe-stable-backport: Backported in 6.12.52"
17336
17337CVE_STATUS[CVE-2025-39996] = "cpe-stable-backport: Backported in 6.12.51"
17338
17339CVE_STATUS[CVE-2025-39997] = "fixed-version: only affects 6.16 onwards"
17340
17341CVE_STATUS[CVE-2025-39998] = "cpe-stable-backport: Backported in 6.12.51"
17342
17343CVE_STATUS[CVE-2025-39999] = "fixed-version: only affects 6.16 onwards"
17344
17345CVE_STATUS[CVE-2025-40000] = "cpe-stable-backport: Backported in 6.12.52"
17346
17279# CVE-2025-40014 needs backporting (fixed from 6.15) 17347# CVE-2025-40014 needs backporting (fixed from 6.15)
17280 17348
17281CVE_STATUS[CVE-2025-40114] = "cpe-stable-backport: Backported in 6.12.23" 17349CVE_STATUS[CVE-2025-40114] = "cpe-stable-backport: Backported in 6.12.23"