package/coreutils: ignore CVE-2013-0221, CVE-2013-0222, CVE-2013-0223
This CVE is only relevant to a build when the SUSE coreutils-i18n.patch is included. The upstream codebase does not include this patch, nor does Buildroot. https://security-tracker.debian.org/tracker/CVE-2013-0221 https://security-tracker.debian.org/tracker/CVE-2013-0222 https://security-tracker.debian.org/tracker/CVE-2013-0223 Signed-off-by: Matthew Weber <matthew.weber@rockwellcollins.com> Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
This commit is contained in:
parent
357dd51bbd
commit
8ae9156d8b
@ -10,6 +10,10 @@ COREUTILS_SOURCE = coreutils-$(COREUTILS_VERSION).tar.xz
|
|||||||
COREUTILS_LICENSE = GPL-3.0+
|
COREUTILS_LICENSE = GPL-3.0+
|
||||||
COREUTILS_LICENSE_FILES = COPYING
|
COREUTILS_LICENSE_FILES = COPYING
|
||||||
COREUTILS_CPE_ID_VENDOR = gnu
|
COREUTILS_CPE_ID_VENDOR = gnu
|
||||||
|
# Only when including SUSE coreutils-i18n.patch
|
||||||
|
COREUTILS_IGNORE_CVES = CVE-2013-0221
|
||||||
|
COREUTILS_IGNORE_CVES += CVE-2013-0222
|
||||||
|
COREUTILS_IGNORE_CVES += CVE-2013-0223
|
||||||
# We're patching m4/pthread-cond.m4
|
# We're patching m4/pthread-cond.m4
|
||||||
COREUTILS_AUTORECONF = YES
|
COREUTILS_AUTORECONF = YES
|
||||||
|
|
||||||
|
Loading…
Reference in New Issue
Block a user