]> code.ossystems Code Review - openembedded-core.git/commitdiff
kernel.bbclass: set CVE_PRODUCT to linux_kernel if not set by recipe
authorMikko Rapeli <mikko.rapeli@bmw.de>
Thu, 20 Jul 2017 13:23:10 +0000 (16:23 +0300)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Mon, 24 Jul 2017 08:12:28 +0000 (09:12 +0100)
It is used by NVD database CVE's like:

https://nvd.nist.gov/vuln/detail/CVE-2017-7273

Setting this in kernel.bbclass fixes CVE reporting for all users of
the class.

Signed-off-by: Mikko Rapeli <mikko.rapeli@bmw.de>
Signed-off-by: Ross Burton <ross.burton@intel.com>
meta/classes/kernel.bbclass

index 7670c7107a673708a3f5bc2f7287e6e111a73746..ce2cab65ae400b47742f8b596c91521646239af0 100644 (file)
@@ -6,6 +6,8 @@ PACKAGE_WRITE_DEPS += "depmodwrapper-cross virtual/update-alternatives-native"
 
 do_deploy[depends] += "depmodwrapper-cross:do_populate_sysroot"
 
+CVE_PRODUCT ?= "linux_kernel"
+
 S = "${STAGING_KERNEL_DIR}"
 B = "${WORKDIR}/build"
 KBUILD_OUTPUT = "${B}"