]> code.ossystems Code Review - openembedded-core.git/commit
cve-check: ensure all known CVEs are in the report
authorRoss Burton <ross.burton@intel.com>
Sun, 8 Dec 2019 18:35:48 +0000 (20:35 +0200)
committerArmin Kuster <akuster808@gmail.com>
Mon, 23 Dec 2019 04:26:27 +0000 (20:26 -0800)
commit430e95cd819577d4d71fe6d579a175b8776aa467
tree974ba2028145bb3ff42946c38090c9c74068da6f
parent7b8f6388e0a1e1eab35918a3764e98553a2452f4
cve-check: ensure all known CVEs are in the report

CVEs that are whitelisted or were not vulnerable when there are version
comparisons were not included in the report, so alter the logic to ensure that
all relevant CVEs are in the report for completeness.

(From OE-Core rev: 98256ff05fcfe9d5ccad360582c36eafb577c264)

Signed-off-by: Ross Burton <ross.burton@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Signed-off-by: Armin Kuster <akuster808@gmail.com>
meta/classes/cve-check.bbclass