Some recipes does not have 'CVE_PRODUCT' set, and will thus pass a check against the NIST database with 0 CVEs, even though there could be several.
Emil Kronborg Andersen (3): libopus: add CVE_PRODUCT lcms: add CVE_PRODUCT snappy: add CVE_PRODUCT meta-oe/recipes-extended/snappy/snappy_1.1.9.bb | 2 ++ meta-oe/recipes-multimedia/libopus/libopus_1.4.bb | 2 ++ meta-oe/recipes-support/lcms/lcms_2.15.bb | 2 ++ 3 files changed, 6 insertions(+) -- 2.41.0
-=-=-=-=-=-=-=-=-=-=-=- Links: You receive all messages sent to this group. View/Reply Online (#104603): https://lists.openembedded.org/g/openembedded-devel/message/104603 Mute This Topic: https://lists.openembedded.org/mt/100952231/21656 Group Owner: [email protected] Unsubscribe: https://lists.openembedded.org/g/openembedded-devel/unsub [[email protected]] -=-=-=-=-=-=-=-=-=-=-=-
