diff options
| author | Bruce Ashfield <bruce.ashfield@gmail.com> | 2025-10-15 23:08:41 -0400 |
|---|---|---|
| committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2025-10-19 15:35:06 +0100 |
| commit | 5815abb3e4e4170837c0f15c6cce7b1fd81d8bf9 (patch) | |
| tree | 65fd0db350bc2a5d6c5f823dd3bbaf07242363e3 /meta/recipes-kernel | |
| parent | 308fae76a6e5f8d92fd757e83c793bf2f81c22bd (diff) | |
| download | poky-5815abb3e4e4170837c0f15c6cce7b1fd81d8bf9.tar.gz | |
linux-yocto/6.12: update CVE exclusions (6.12.52)
Data pulled from: https://github.com/CVEProject/cvelistV5
1/1 [
Author: cvelistV5 Github Action
Email: github_action@example.com
Subject: 10 changes (9 new | 1 updated): - 9 new CVEs: CVE-2025-42901, CVE-2025-42902, CVE-2025-42903, CVE-2025-42906, CVE-2025-42908, CVE-2025-42909, CVE-2025-42910, CVE-2025-42937, CVE-2025-42939 - 1 updated CVEs: CVE-2025-42907
Date: Tue, 14 Oct 2025 00:35:23 +0000
]
(From OE-Core rev: aee153dd5ccbfaeeca9f76df7b8f8b453ee478d2)
Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'meta/recipes-kernel')
| -rw-r--r-- | meta/recipes-kernel/linux/cve-exclusion_6.12.inc | 58 |
1 files changed, 36 insertions, 22 deletions
diff --git a/meta/recipes-kernel/linux/cve-exclusion_6.12.inc b/meta/recipes-kernel/linux/cve-exclusion_6.12.inc index a5ccb609b6..f84d42cfe1 100644 --- a/meta/recipes-kernel/linux/cve-exclusion_6.12.inc +++ b/meta/recipes-kernel/linux/cve-exclusion_6.12.inc | |||
| @@ -1,11 +1,11 @@ | |||
| 1 | 1 | ||
| 2 | # Auto-generated CVE metadata, DO NOT EDIT BY HAND. | 2 | # Auto-generated CVE metadata, DO NOT EDIT BY HAND. |
| 3 | # Generated at 2025-10-07 17:30:26.724165+00:00 for kernel version 6.12.51 | 3 | # Generated at 2025-10-14 01:23:30.027767+00:00 for kernel version 6.12.52 |
| 4 | # From linux_kernel_cves cve_2025-10-07_1700Z | 4 | # From linux_kernel_cves 2025-10-14_baseline-1-gddc0a257837 |
| 5 | 5 | ||
| 6 | 6 | ||
| 7 | python check_kernel_cve_status_version() { | 7 | python check_kernel_cve_status_version() { |
| 8 | this_version = "6.12.51" | 8 | this_version = "6.12.52" |
| 9 | kernel_version = d.getVar("LINUX_VERSION") | 9 | kernel_version = d.getVar("LINUX_VERSION") |
| 10 | if kernel_version != this_version: | 10 | if kernel_version != this_version: |
| 11 | bb.warn("Kernel CVE status needs updating: generated for %s but kernel is %s" % (this_version, kernel_version)) | 11 | bb.warn("Kernel CVE status needs updating: generated for %s but kernel is %s" % (this_version, kernel_version)) |
| @@ -4648,11 +4648,11 @@ CVE_STATUS[CVE-2022-50228] = "fixed-version: Fixed from version 6.0" | |||
| 4648 | 4648 | ||
| 4649 | CVE_STATUS[CVE-2022-50229] = "fixed-version: Fixed from version 6.0" | 4649 | CVE_STATUS[CVE-2022-50229] = "fixed-version: Fixed from version 6.0" |
| 4650 | 4650 | ||
| 4651 | # CVE-2022-50230 has no known resolution | 4651 | CVE_STATUS[CVE-2022-50230] = "fixed-version: Fixed from version 6.0" |
| 4652 | 4652 | ||
| 4653 | CVE_STATUS[CVE-2022-50231] = "fixed-version: Fixed from version 6.0" | 4653 | CVE_STATUS[CVE-2022-50231] = "fixed-version: Fixed from version 6.0" |
| 4654 | 4654 | ||
| 4655 | # CVE-2022-50232 has no known resolution | 4655 | CVE_STATUS[CVE-2022-50232] = "fixed-version: Fixed from version 6.0" |
| 4656 | 4656 | ||
| 4657 | CVE_STATUS[CVE-2022-50233] = "fixed-version: Fixed from version 6.0" | 4657 | CVE_STATUS[CVE-2022-50233] = "fixed-version: Fixed from version 6.0" |
| 4658 | 4658 | ||
| @@ -4664,7 +4664,7 @@ CVE_STATUS[CVE-2022-50236] = "fixed-version: Fixed from version 6.2" | |||
| 4664 | 4664 | ||
| 4665 | CVE_STATUS[CVE-2022-50239] = "fixed-version: Fixed from version 6.1" | 4665 | CVE_STATUS[CVE-2022-50239] = "fixed-version: Fixed from version 6.1" |
| 4666 | 4666 | ||
| 4667 | # CVE-2022-50240 has no known resolution | 4667 | CVE_STATUS[CVE-2022-50240] = "fixed-version: Fixed from version 6.0" |
| 4668 | 4668 | ||
| 4669 | CVE_STATUS[CVE-2022-50241] = "fixed-version: Fixed from version 6.1" | 4669 | CVE_STATUS[CVE-2022-50241] = "fixed-version: Fixed from version 6.1" |
| 4670 | 4670 | ||
| @@ -4858,8 +4858,6 @@ CVE_STATUS[CVE-2022-50336] = "fixed-version: Fixed from version 6.2" | |||
| 4858 | 4858 | ||
| 4859 | CVE_STATUS[CVE-2022-50337] = "fixed-version: Fixed from version 6.2" | 4859 | CVE_STATUS[CVE-2022-50337] = "fixed-version: Fixed from version 6.2" |
| 4860 | 4860 | ||
| 4861 | # CVE-2022-50338 has no known resolution | ||
| 4862 | |||
| 4863 | CVE_STATUS[CVE-2022-50339] = "fixed-version: Fixed from version 6.1" | 4861 | CVE_STATUS[CVE-2022-50339] = "fixed-version: Fixed from version 6.1" |
| 4864 | 4862 | ||
| 4865 | CVE_STATUS[CVE-2022-50340] = "fixed-version: Fixed from version 6.2" | 4863 | CVE_STATUS[CVE-2022-50340] = "fixed-version: Fixed from version 6.2" |
| @@ -4938,7 +4936,7 @@ CVE_STATUS[CVE-2022-50378] = "fixed-version: Fixed from version 6.1" | |||
| 4938 | 4936 | ||
| 4939 | CVE_STATUS[CVE-2022-50379] = "fixed-version: Fixed from version 6.1" | 4937 | CVE_STATUS[CVE-2022-50379] = "fixed-version: Fixed from version 6.1" |
| 4940 | 4938 | ||
| 4941 | # CVE-2022-50380 has no known resolution | 4939 | CVE_STATUS[CVE-2022-50380] = "fixed-version: Fixed from version 6.1" |
| 4942 | 4940 | ||
| 4943 | CVE_STATUS[CVE-2022-50381] = "fixed-version: Fixed from version 6.2" | 4941 | CVE_STATUS[CVE-2022-50381] = "fixed-version: Fixed from version 6.2" |
| 4944 | 4942 | ||
| @@ -5074,8 +5072,6 @@ CVE_STATUS[CVE-2022-50448] = "fixed-version: Fixed from version 6.1" | |||
| 5074 | 5072 | ||
| 5075 | CVE_STATUS[CVE-2022-50449] = "fixed-version: Fixed from version 6.2" | 5073 | CVE_STATUS[CVE-2022-50449] = "fixed-version: Fixed from version 6.2" |
| 5076 | 5074 | ||
| 5077 | CVE_STATUS[CVE-2022-50450] = "fixed-version: Fixed from version 6.2" | ||
| 5078 | |||
| 5079 | CVE_STATUS[CVE-2022-50451] = "fixed-version: Fixed from version 6.2" | 5075 | CVE_STATUS[CVE-2022-50451] = "fixed-version: Fixed from version 6.2" |
| 5080 | 5076 | ||
| 5081 | CVE_STATUS[CVE-2022-50452] = "fixed-version: Fixed from version 6.1" | 5077 | CVE_STATUS[CVE-2022-50452] = "fixed-version: Fixed from version 6.1" |
| @@ -5084,8 +5080,6 @@ CVE_STATUS[CVE-2022-50453] = "fixed-version: Fixed from version 6.2" | |||
| 5084 | 5080 | ||
| 5085 | CVE_STATUS[CVE-2022-50454] = "fixed-version: Fixed from version 6.1" | 5081 | CVE_STATUS[CVE-2022-50454] = "fixed-version: Fixed from version 6.1" |
| 5086 | 5082 | ||
| 5087 | CVE_STATUS[CVE-2022-50455] = "fixed-version: Fixed from version 6.2" | ||
| 5088 | |||
| 5089 | CVE_STATUS[CVE-2022-50456] = "fixed-version: Fixed from version 6.2" | 5083 | CVE_STATUS[CVE-2022-50456] = "fixed-version: Fixed from version 6.2" |
| 5090 | 5084 | ||
| 5091 | CVE_STATUS[CVE-2022-50457] = "fixed-version: Fixed from version 6.2" | 5085 | CVE_STATUS[CVE-2022-50457] = "fixed-version: Fixed from version 6.2" |
| @@ -5148,8 +5142,6 @@ CVE_STATUS[CVE-2022-50485] = "fixed-version: Fixed from version 6.2" | |||
| 5148 | 5142 | ||
| 5149 | CVE_STATUS[CVE-2022-50486] = "fixed-version: Fixed from version 6.2" | 5143 | CVE_STATUS[CVE-2022-50486] = "fixed-version: Fixed from version 6.2" |
| 5150 | 5144 | ||
| 5151 | CVE_STATUS[CVE-2022-50487] = "fixed-version: Fixed from version 6.1" | ||
| 5152 | |||
| 5153 | CVE_STATUS[CVE-2022-50488] = "fixed-version: Fixed from version 6.2" | 5145 | CVE_STATUS[CVE-2022-50488] = "fixed-version: Fixed from version 6.2" |
| 5154 | 5146 | ||
| 5155 | CVE_STATUS[CVE-2022-50489] = "fixed-version: Fixed from version 6.1" | 5147 | CVE_STATUS[CVE-2022-50489] = "fixed-version: Fixed from version 6.1" |
| @@ -5176,8 +5168,6 @@ CVE_STATUS[CVE-2022-50500] = "fixed-version: Fixed from version 6.1" | |||
| 5176 | 5168 | ||
| 5177 | CVE_STATUS[CVE-2022-50501] = "fixed-version: Fixed from version 6.2" | 5169 | CVE_STATUS[CVE-2022-50501] = "fixed-version: Fixed from version 6.2" |
| 5178 | 5170 | ||
| 5179 | # CVE-2022-50502 has no known resolution | ||
| 5180 | |||
| 5181 | CVE_STATUS[CVE-2022-50503] = "fixed-version: Fixed from version 6.2" | 5171 | CVE_STATUS[CVE-2022-50503] = "fixed-version: Fixed from version 6.2" |
| 5182 | 5172 | ||
| 5183 | CVE_STATUS[CVE-2022-50504] = "fixed-version: Fixed from version 6.2" | 5173 | CVE_STATUS[CVE-2022-50504] = "fixed-version: Fixed from version 6.2" |
| @@ -7114,7 +7104,7 @@ CVE_STATUS[CVE-2023-53467] = "fixed-version: Fixed from version 6.3" | |||
| 7114 | 7104 | ||
| 7115 | CVE_STATUS[CVE-2023-53468] = "fixed-version: Fixed from version 6.3" | 7105 | CVE_STATUS[CVE-2023-53468] = "fixed-version: Fixed from version 6.3" |
| 7116 | 7106 | ||
| 7117 | # CVE-2023-53469 has no known resolution | 7107 | CVE_STATUS[CVE-2023-53469] = "fixed-version: Fixed from version 6.5" |
| 7118 | 7108 | ||
| 7119 | CVE_STATUS[CVE-2023-53470] = "fixed-version: Fixed from version 6.4" | 7109 | CVE_STATUS[CVE-2023-53470] = "fixed-version: Fixed from version 6.4" |
| 7120 | 7110 | ||
| @@ -7458,7 +7448,7 @@ CVE_STATUS[CVE-2023-53640] = "fixed-version: Fixed from version 6.4" | |||
| 7458 | 7448 | ||
| 7459 | CVE_STATUS[CVE-2023-53641] = "fixed-version: Fixed from version 6.4" | 7449 | CVE_STATUS[CVE-2023-53641] = "fixed-version: Fixed from version 6.4" |
| 7460 | 7450 | ||
| 7461 | # CVE-2023-53642 has no known resolution | 7451 | CVE_STATUS[CVE-2023-53642] = "fixed-version: Fixed from version 6.4" |
| 7462 | 7452 | ||
| 7463 | CVE_STATUS[CVE-2023-53643] = "fixed-version: Fixed from version 6.3" | 7453 | CVE_STATUS[CVE-2023-53643] = "fixed-version: Fixed from version 6.3" |
| 7464 | 7454 | ||
| @@ -14388,7 +14378,7 @@ CVE_STATUS[CVE-2025-21986] = "cpe-stable-backport: Backported in 6.12.20" | |||
| 14388 | 14378 | ||
| 14389 | CVE_STATUS[CVE-2025-21987] = "cpe-stable-backport: Backported in 6.12.18" | 14379 | CVE_STATUS[CVE-2025-21987] = "cpe-stable-backport: Backported in 6.12.18" |
| 14390 | 14380 | ||
| 14391 | # CVE-2025-21988 has no known resolution | 14381 | CVE_STATUS[CVE-2025-21988] = "cpe-stable-backport: Backported in 6.12.20" |
| 14392 | 14382 | ||
| 14393 | CVE_STATUS[CVE-2025-21989] = "cpe-stable-backport: Backported in 6.12.20" | 14383 | CVE_STATUS[CVE-2025-21989] = "cpe-stable-backport: Backported in 6.12.20" |
| 14394 | 14384 | ||
| @@ -15448,7 +15438,7 @@ CVE_STATUS[CVE-2025-38103] = "cpe-stable-backport: Backported in 6.12.34" | |||
| 15448 | 15438 | ||
| 15449 | CVE_STATUS[CVE-2025-38104] = "cpe-stable-backport: Backported in 6.12.39" | 15439 | CVE_STATUS[CVE-2025-38104] = "cpe-stable-backport: Backported in 6.12.39" |
| 15450 | 15440 | ||
| 15451 | # CVE-2025-38105 needs backporting (fixed from 6.16) | 15441 | CVE_STATUS[CVE-2025-38105] = "cpe-stable-backport: Backported in 6.12.52" |
| 15452 | 15442 | ||
| 15453 | CVE_STATUS[CVE-2025-38106] = "cpe-stable-backport: Backported in 6.12.34" | 15443 | CVE_STATUS[CVE-2025-38106] = "cpe-stable-backport: Backported in 6.12.34" |
| 15454 | 15444 | ||
| @@ -17260,6 +17250,30 @@ CVE_STATUS[CVE-2025-39952] = "cpe-stable-backport: Backported in 6.12.49" | |||
| 17260 | 17250 | ||
| 17261 | CVE_STATUS[CVE-2025-39953] = "cpe-stable-backport: Backported in 6.12.49" | 17251 | CVE_STATUS[CVE-2025-39953] = "cpe-stable-backport: Backported in 6.12.49" |
| 17262 | 17252 | ||
| 17253 | CVE_STATUS[CVE-2025-39954] = "fixed-version: only affects 6.15 onwards" | ||
| 17254 | |||
| 17255 | CVE_STATUS[CVE-2025-39955] = "cpe-stable-backport: Backported in 6.12.49" | ||
| 17256 | |||
| 17257 | CVE_STATUS[CVE-2025-39956] = "cpe-stable-backport: Backported in 6.12.49" | ||
| 17258 | |||
| 17259 | CVE_STATUS[CVE-2025-39957] = "cpe-stable-backport: Backported in 6.12.49" | ||
| 17260 | |||
| 17261 | # CVE-2025-39958 needs backporting (fixed from 6.17) | ||
| 17262 | |||
| 17263 | CVE_STATUS[CVE-2025-39959] = "fixed-version: only affects 6.15 onwards" | ||
| 17264 | |||
| 17265 | CVE_STATUS[CVE-2025-39960] = "fixed-version: only affects 6.16 onwards" | ||
| 17266 | |||
| 17267 | CVE_STATUS[CVE-2025-39961] = "cpe-stable-backport: Backported in 6.12.49" | ||
| 17268 | |||
| 17269 | CVE_STATUS[CVE-2025-39962] = "fixed-version: only affects 6.16 onwards" | ||
| 17270 | |||
| 17271 | CVE_STATUS[CVE-2025-39963] = "cpe-stable-backport: Backported in 6.12.49" | ||
| 17272 | |||
| 17273 | CVE_STATUS[CVE-2025-39964] = "cpe-stable-backport: Backported in 6.12.49" | ||
| 17274 | |||
| 17275 | CVE_STATUS[CVE-2025-39965] = "cpe-stable-backport: Backported in 6.12.50" | ||
| 17276 | |||
| 17263 | CVE_STATUS[CVE-2025-39989] = "cpe-stable-backport: Backported in 6.12.23" | 17277 | CVE_STATUS[CVE-2025-39989] = "cpe-stable-backport: Backported in 6.12.23" |
| 17264 | 17278 | ||
| 17265 | # CVE-2025-40014 needs backporting (fixed from 6.15) | 17279 | # CVE-2025-40014 needs backporting (fixed from 6.15) |
| @@ -17270,5 +17284,5 @@ CVE_STATUS[CVE-2025-40300] = "cpe-stable-backport: Backported in 6.12.47" | |||
| 17270 | 17284 | ||
| 17271 | # CVE-2025-40325 needs backporting (fixed from 6.15) | 17285 | # CVE-2025-40325 needs backporting (fixed from 6.15) |
| 17272 | 17286 | ||
| 17273 | # CVE-2025-40364 has no known resolution | 17287 | CVE_STATUS[CVE-2025-40364] = "cpe-stable-backport: Backported in 6.12.14" |
| 17274 | 17288 | ||
