diff options
Diffstat (limited to 'documentation/ref-manual/variables.rst')
-rw-r--r-- | documentation/ref-manual/variables.rst | 13 |
1 files changed, 12 insertions, 1 deletions
diff --git a/documentation/ref-manual/variables.rst b/documentation/ref-manual/variables.rst index 1150940133..f6d248a193 100644 --- a/documentation/ref-manual/variables.rst +++ b/documentation/ref-manual/variables.rst | |||
@@ -1471,11 +1471,22 @@ system and gives an overview of their function and contents. | |||
1471 | variable only in certain contexts (e.g. when building for kernel | 1471 | variable only in certain contexts (e.g. when building for kernel |
1472 | and kernel module recipes). | 1472 | and kernel module recipes). |
1473 | 1473 | ||
1474 | :term:`CVE_CHECK_PN_WHITELIST` | ||
1475 | The list of package names (:term:`PN`) for which | ||
1476 | CVEs (Common Vulnerabilities and Exposures) are ignored. | ||
1477 | |||
1478 | :term:`CVE_CHECK_WHITELIST` | ||
1479 | The list of CVE IDs which are ignored. Here is | ||
1480 | an example from the :oe_layerindex:`Python3 recipe</layerindex/recipe/23823>`:: | ||
1481 | |||
1482 | # This is windows only issue. | ||
1483 | CVE_CHECK_WHITELIST += "CVE-2020-15523" | ||
1484 | |||
1474 | :term:`CVE_PRODUCT` | 1485 | :term:`CVE_PRODUCT` |
1475 | In a recipe, defines the name used to match the recipe name | 1486 | In a recipe, defines the name used to match the recipe name |
1476 | against the name in the upstream `NIST CVE database <https://nvd.nist.gov/>`__. | 1487 | against the name in the upstream `NIST CVE database <https://nvd.nist.gov/>`__. |
1477 | 1488 | ||
1478 | The default is ${:term:`BPN`}. If it does not match the name in NIST CVE | 1489 | The default is ${:term:`BPN`}. If it does not match the name in the NIST CVE |
1479 | database or matches with multiple entries in the database, the default | 1490 | database or matches with multiple entries in the database, the default |
1480 | value needs to be changed. | 1491 | value needs to be changed. |
1481 | 1492 | ||