]> code.ossystems Code Review - openembedded-core.git/commitdiff
avahi: Exclude CVE-2021-26720 from cve-check
authorRichard Purdie <richard.purdie@linuxfoundation.org>
Wed, 12 May 2021 22:54:49 +0000 (23:54 +0100)
committerSteve Sakoman <steve@sakoman.com>
Fri, 14 May 2021 17:16:38 +0000 (07:16 -1000)
Issue only affects Debian and SUSE.

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
(cherry picked from commit 72522fa1a5f3b9b2855043fe6b421886d641385f)
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-connectivity/avahi/avahi_0.7.bb

index f6e3afb24e26a7c01c6c1c4b6bead84f04ec2ab8..0df44bffbee31e13ca4c4fd90feb544bfa1a9de4 100644 (file)
@@ -8,6 +8,9 @@ SRC_URI += "file://00avahi-autoipd \
 
 inherit update-rc.d systemd useradd
 
+# Issue only affects Debian/SUSE, not us
+CVE_CHECK_WHITELIST += "CVE-2021-26720"
+
 PACKAGES =+ "libavahi-gobject avahi-daemon libavahi-common libavahi-core libavahi-client avahi-dnsconfd libavahi-glib avahi-autoipd avahi-utils"
 
 LICENSE_libavahi-gobject = "LGPLv2.1+"