diff options
-rw-r--r-- | meta/recipes-kernel/linux/cve-exclusion_5.15.inc | 44 |
1 files changed, 37 insertions, 7 deletions
diff --git a/meta/recipes-kernel/linux/cve-exclusion_5.15.inc b/meta/recipes-kernel/linux/cve-exclusion_5.15.inc index 84d0becb8d..0d54b414d9 100644 --- a/meta/recipes-kernel/linux/cve-exclusion_5.15.inc +++ b/meta/recipes-kernel/linux/cve-exclusion_5.15.inc | |||
@@ -1,9 +1,9 @@ | |||
1 | 1 | ||
2 | # Auto-generated CVE metadata, DO NOT EDIT BY HAND. | 2 | # Auto-generated CVE metadata, DO NOT EDIT BY HAND. |
3 | # Generated at 2024-01-11 21:16:55.956074 for version 5.15.146 | 3 | # Generated at 2024-01-18 18:47:24.084935 for version 5.15.147 |
4 | 4 | ||
5 | python check_kernel_cve_status_version() { | 5 | python check_kernel_cve_status_version() { |
6 | this_version = "5.15.146" | 6 | this_version = "5.15.147" |
7 | kernel_version = d.getVar("LINUX_VERSION") | 7 | kernel_version = d.getVar("LINUX_VERSION") |
8 | if kernel_version != this_version: | 8 | if kernel_version != this_version: |
9 | bb.warn("Kernel CVE status needs updating: generated for %s but kernel is %s" % (this_version, kernel_version)) | 9 | bb.warn("Kernel CVE status needs updating: generated for %s but kernel is %s" % (this_version, kernel_version)) |
@@ -6626,6 +6626,9 @@ CVE_CHECK_IGNORE += "CVE-2022-48425" | |||
6626 | # cpe-stable-backport: Backported in 5.15.121 | 6626 | # cpe-stable-backport: Backported in 5.15.121 |
6627 | CVE_CHECK_IGNORE += "CVE-2022-48502" | 6627 | CVE_CHECK_IGNORE += "CVE-2022-48502" |
6628 | 6628 | ||
6629 | # cpe-stable-backport: Backported in 5.15.42 | ||
6630 | CVE_CHECK_IGNORE += "CVE-2022-48619" | ||
6631 | |||
6629 | # fixed-version: Fixed after version 5.0rc1 | 6632 | # fixed-version: Fixed after version 5.0rc1 |
6630 | CVE_CHECK_IGNORE += "CVE-2023-0030" | 6633 | CVE_CHECK_IGNORE += "CVE-2023-0030" |
6631 | 6634 | ||
@@ -6747,6 +6750,8 @@ CVE_CHECK_IGNORE += "CVE-2023-1382" | |||
6747 | # fixed-version: Fixed after version 5.11rc4 | 6750 | # fixed-version: Fixed after version 5.11rc4 |
6748 | CVE_CHECK_IGNORE += "CVE-2023-1390" | 6751 | CVE_CHECK_IGNORE += "CVE-2023-1390" |
6749 | 6752 | ||
6753 | # CVE-2023-1476 has no known resolution | ||
6754 | |||
6750 | # cpe-stable-backport: Backported in 5.15.95 | 6755 | # cpe-stable-backport: Backported in 5.15.95 |
6751 | CVE_CHECK_IGNORE += "CVE-2023-1513" | 6756 | CVE_CHECK_IGNORE += "CVE-2023-1513" |
6752 | 6757 | ||
@@ -6921,7 +6926,8 @@ CVE_CHECK_IGNORE += "CVE-2023-23559" | |||
6921 | # fixed-version: Fixed after version 5.12rc1 | 6926 | # fixed-version: Fixed after version 5.12rc1 |
6922 | CVE_CHECK_IGNORE += "CVE-2023-23586" | 6927 | CVE_CHECK_IGNORE += "CVE-2023-23586" |
6923 | 6928 | ||
6924 | # CVE-2023-2430 needs backporting (fixed from 6.2rc5) | 6929 | # fixed-version: only affects 5.18rc1 onwards |
6930 | CVE_CHECK_IGNORE += "CVE-2023-2430" | ||
6925 | 6931 | ||
6926 | # cpe-stable-backport: Backported in 5.15.105 | 6932 | # cpe-stable-backport: Backported in 5.15.105 |
6927 | CVE_CHECK_IGNORE += "CVE-2023-2483" | 6933 | CVE_CHECK_IGNORE += "CVE-2023-2483" |
@@ -7351,7 +7357,8 @@ CVE_CHECK_IGNORE += "CVE-2023-45871" | |||
7351 | # fixed-version: only affects 6.5rc1 onwards | 7357 | # fixed-version: only affects 6.5rc1 onwards |
7352 | CVE_CHECK_IGNORE += "CVE-2023-45898" | 7358 | CVE_CHECK_IGNORE += "CVE-2023-45898" |
7353 | 7359 | ||
7354 | # CVE-2023-4610 needs backporting (fixed from 6.4) | 7360 | # fixed-version: only affects 6.4rc1 onwards |
7361 | CVE_CHECK_IGNORE += "CVE-2023-4610" | ||
7355 | 7362 | ||
7356 | # fixed-version: only affects 6.4rc1 onwards | 7363 | # fixed-version: only affects 6.4rc1 onwards |
7357 | CVE_CHECK_IGNORE += "CVE-2023-4611" | 7364 | CVE_CHECK_IGNORE += "CVE-2023-4611" |
@@ -7386,7 +7393,8 @@ CVE_CHECK_IGNORE += "CVE-2023-5090" | |||
7386 | # cpe-stable-backport: Backported in 5.15.135 | 7393 | # cpe-stable-backport: Backported in 5.15.135 |
7387 | CVE_CHECK_IGNORE += "CVE-2023-5158" | 7394 | CVE_CHECK_IGNORE += "CVE-2023-5158" |
7388 | 7395 | ||
7389 | # CVE-2023-51779 needs backporting (fixed from 6.7rc7) | 7396 | # cpe-stable-backport: Backported in 5.15.146 |
7397 | CVE_CHECK_IGNORE += "CVE-2023-51779" | ||
7390 | 7398 | ||
7391 | # cpe-stable-backport: Backported in 5.15.137 | 7399 | # cpe-stable-backport: Backported in 5.15.137 |
7392 | CVE_CHECK_IGNORE += "CVE-2023-5178" | 7400 | CVE_CHECK_IGNORE += "CVE-2023-5178" |
@@ -7417,6 +7425,8 @@ CVE_CHECK_IGNORE += "CVE-2023-5972" | |||
7417 | 7425 | ||
7418 | # CVE-2023-6039 needs backporting (fixed from 6.5rc5) | 7426 | # CVE-2023-6039 needs backporting (fixed from 6.5rc5) |
7419 | 7427 | ||
7428 | # CVE-2023-6040 needs backporting (fixed from 5.18rc1) | ||
7429 | |||
7420 | # fixed-version: only affects 6.6rc3 onwards | 7430 | # fixed-version: only affects 6.6rc3 onwards |
7421 | CVE_CHECK_IGNORE += "CVE-2023-6111" | 7431 | CVE_CHECK_IGNORE += "CVE-2023-6111" |
7422 | 7432 | ||
@@ -7428,8 +7438,13 @@ CVE_CHECK_IGNORE += "CVE-2023-6176" | |||
7428 | 7438 | ||
7429 | # CVE-2023-6238 has no known resolution | 7439 | # CVE-2023-6238 has no known resolution |
7430 | 7440 | ||
7441 | # CVE-2023-6270 has no known resolution | ||
7442 | |||
7431 | # CVE-2023-6356 has no known resolution | 7443 | # CVE-2023-6356 has no known resolution |
7432 | 7444 | ||
7445 | # fixed-version: only affects 6.1rc1 onwards | ||
7446 | CVE_CHECK_IGNORE += "CVE-2023-6531" | ||
7447 | |||
7433 | # CVE-2023-6535 has no known resolution | 7448 | # CVE-2023-6535 has no known resolution |
7434 | 7449 | ||
7435 | # CVE-2023-6536 has no known resolution | 7450 | # CVE-2023-6536 has no known resolution |
@@ -7439,14 +7454,16 @@ CVE_CHECK_IGNORE += "CVE-2023-6546" | |||
7439 | 7454 | ||
7440 | # CVE-2023-6560 needs backporting (fixed from 6.7rc4) | 7455 | # CVE-2023-6560 needs backporting (fixed from 6.7rc4) |
7441 | 7456 | ||
7442 | # CVE-2023-6606 needs backporting (fixed from 6.7rc7) | 7457 | # cpe-stable-backport: Backported in 5.15.146 |
7458 | CVE_CHECK_IGNORE += "CVE-2023-6606" | ||
7443 | 7459 | ||
7444 | # CVE-2023-6610 needs backporting (fixed from 6.7rc7) | 7460 | # CVE-2023-6610 needs backporting (fixed from 6.7rc7) |
7445 | 7461 | ||
7446 | # cpe-stable-backport: Backported in 5.15.143 | 7462 | # cpe-stable-backport: Backported in 5.15.143 |
7447 | CVE_CHECK_IGNORE += "CVE-2023-6622" | 7463 | CVE_CHECK_IGNORE += "CVE-2023-6622" |
7448 | 7464 | ||
7449 | # CVE-2023-6679 needs backporting (fixed from 6.7rc6) | 7465 | # fixed-version: only affects 6.7rc1 onwards |
7466 | CVE_CHECK_IGNORE += "CVE-2023-6679" | ||
7450 | 7467 | ||
7451 | # cpe-stable-backport: Backported in 5.15.143 | 7468 | # cpe-stable-backport: Backported in 5.15.143 |
7452 | CVE_CHECK_IGNORE += "CVE-2023-6817" | 7469 | CVE_CHECK_IGNORE += "CVE-2023-6817" |
@@ -7459,3 +7476,16 @@ CVE_CHECK_IGNORE += "CVE-2023-6932" | |||
7459 | 7476 | ||
7460 | # CVE-2023-7042 has no known resolution | 7477 | # CVE-2023-7042 has no known resolution |
7461 | 7478 | ||
7479 | # cpe-stable-backport: Backported in 5.15.100 | ||
7480 | CVE_CHECK_IGNORE += "CVE-2023-7192" | ||
7481 | |||
7482 | # fixed-version: only affects 6.5rc6 onwards | ||
7483 | CVE_CHECK_IGNORE += "CVE-2024-0193" | ||
7484 | |||
7485 | # CVE-2024-0340 needs backporting (fixed from 6.4rc6) | ||
7486 | |||
7487 | # fixed-version: only affects 6.2rc1 onwards | ||
7488 | CVE_CHECK_IGNORE += "CVE-2024-0443" | ||
7489 | |||
7490 | # Skipping dd=CVE-2023-1476, no affected_versions | ||
7491 | |||