]> code.ossystems Code Review - openembedded-core.git/commitdiff
lz4: Whitelist CVE-2014-4715
authorAdrian Bunk <bunk@stusta.de>
Fri, 17 Jan 2020 17:14:35 +0000 (19:14 +0200)
committerArmin Kuster <akuster808@gmail.com>
Thu, 23 Jan 2020 02:14:57 +0000 (18:14 -0800)
Signed-off-by: Adrian Bunk <bunk@stusta.de>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
meta/recipes-support/lz4/lz4_1.8.3.bb

index 125836f7bfc6878296ebf9cb85c5ab778212fcb3..605e148d819d5451c22205fd930027d43bef6e2b 100644 (file)
@@ -18,6 +18,9 @@ UPSTREAM_CHECK_GITTAGREGEX = "v(?P<pver>.*)"
 
 S = "${WORKDIR}/git"
 
+# Fixed in r118, which is larger than the current version.
+CVE_CHECK_WHITELIST += "CVE-2014-4715"
+
 EXTRA_OEMAKE = "PREFIX=${prefix} CC='${CC}' DESTDIR=${D} LIBDIR=${libdir} INCLUDEDIR=${includedir}"
 
 do_install() {