]> code.ossystems Code Review - openembedded-core.git/commitdiff
bind: Whitelist CVE-2019-6470
authorAdrian Bunk <bunk@stusta.de>
Tue, 26 Nov 2019 08:56:29 +0000 (10:56 +0200)
committerAnuj Mittal <anuj.mittal@intel.com>
Fri, 6 Dec 2019 05:14:48 +0000 (13:14 +0800)
Signed-off-by: Adrian Bunk <bunk@stusta.de>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
meta/recipes-connectivity/bind/bind_9.11.5-P4.bb

index 92fd628e7dca3ed4b2e728d11a0504b05e962e21..b0bb64b7c791a614bb0c3e3377fea602cf3a5cb8 100644 (file)
@@ -37,6 +37,10 @@ UPSTREAM_CHECK_URI = "https://ftp.isc.org/isc/bind9/"
 # stay at 9.11 until 9.16, from 9.16 follow the ESV versions divisible by 4
 UPSTREAM_CHECK_REGEX = "(?P<pver>9.(11|16|20|24|28)(\.\d+)+(-P\d+)*)/"
 
+# BIND >= 9.11.2 need dhcpd >= 4.4.0,
+# don't report it here since dhcpd is already recent enough.
+CVE_CHECK_WHITELIST += "CVE-2019-6470"
+
 inherit autotools update-rc.d systemd useradd pkgconfig multilib_script
 
 MULTILIB_SCRIPTS = "${PN}:${bindir}/bind9-config ${PN}:${bindir}/isc-config.sh"