diff options
author | Niko Mauno <niko.mauno@vaisala.com> | 2025-05-26 09:29:26 +0000 |
---|---|---|
committer | Richard Purdie <richard.purdie@linuxfoundation.org> | 2025-05-29 15:14:37 +0100 |
commit | 6c8662d11e7b3702aa3794f86b76eae90240250f (patch) | |
tree | 50b955e44506601d0deb9ffe5fd494532c32c5dd /scripts/lib/checklayer/context.py | |
parent | 59980007f0f7c6847fbda74822bb66ce4dda9ff5 (diff) | |
download | poky-6c8662d11e7b3702aa3794f86b76eae90240250f.tar.gz |
linux: cve-exclusions: Fix false negatives
Amend the generate-cve-exclusions.py checking logic in part of the code
responsible for iterating the "affected" defaultStatus part of the JSON
structure in order to mitigate occurrences of false negatives in the
generated output, as well as occurrences of wrong reason for negative
result in case where the reason is actually that the checked kernel
version is in backport fix scope.
In tandem we regenerate the content of cve-exclusion_6.12.inc using
https://github.com/CVEProject/cvelistV5.git repository main branch at
git hash b20d0043711588b6409ae3118bc0510ab888c316 to keep the content
in sync with the script.
(From OE-Core rev: b1a5939535d67b9c0e6d8c2729cff9749a0ebaae)
Signed-off-by: Niko Mauno <niko.mauno@vaisala.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Diffstat (limited to 'scripts/lib/checklayer/context.py')
0 files changed, 0 insertions, 0 deletions