A couple of hopefully straightforward fixes to knock some CVEs off the unpatched list. The grub change does not add a patch but fixes the existing "CVE:" line in a patch so all the associated CVEs will be picked up as patched.
Scott Murray (2): grub: fix "CVE:" line in one of the patches patch: fix CVE-2019-20633 ...low-checking-primitives-where-we-do-.patch | 2 +- .../patch/patch/CVE-2019-20633.patch | 31 +++++++++++++++++++ meta/recipes-devtools/patch/patch_2.7.6.bb | 1 + 3 files changed, 33 insertions(+), 1 deletion(-) create mode 100644 meta/recipes-devtools/patch/patch/CVE-2019-20633.patch -- 2.26.2
-=-=-=-=-=-=-=-=-=-=-=- Links: You receive all messages sent to this group. View/Reply Online (#146313): https://lists.openembedded.org/g/openembedded-core/message/146313 Mute This Topic: https://lists.openembedded.org/mt/79323789/21656 Group Owner: openembedded-core+ow...@lists.openembedded.org Unsubscribe: https://lists.openembedded.org/g/openembedded-core/unsub [arch...@mail-archive.com] -=-=-=-=-=-=-=-=-=-=-=-