aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorLee Chee Yang <chee.yang.lee@intel.com>2020-01-21 13:26:47 +0800
committerArmin Kuster <akuster808@gmail.com>2020-02-09 13:28:30 -0800
commit0a88a86d92b294175c14c7c5a2533d4e418fec6a (patch)
tree2e2f38ccf0381577a56acf783ccb298c05703367
parent2be6ab4249c4f49c9ffcd9bb8fea964c8c5d449c (diff)
downloadopenembedded-core-contrib-0a88a86d92b294175c14c7c5a2533d4e418fec6a.tar.gz
openembedded-core-contrib-0a88a86d92b294175c14c7c5a2533d4e418fec6a.tar.bz2
openembedded-core-contrib-0a88a86d92b294175c14c7c5a2533d4e418fec6a.zip
rsync: whitelist CVE-2017-16548
patch for this CVE applies to v3.1.3pre1 not for v3.1.3. patch already in v3.1.3. see https://git.samba.org/rsync.git/?p=rsync.git;a=commitdiff;h=47a63d90e71d3e19e0e96052bb8c6b9cb140ecc1;hp=bc112b0e7feece62ce98708092306639a8a53cce (From OE-Core rev: 1e2739c821312527010fb0afbde5a20cd3f03d24) Signed-off-by: Lee Chee Yang <chee.yang.lee@intel.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> (cherry picked from commit 842bd7ca21efc6378ba24a8d0bf065c4d0f54f1d) Signed-off-by: Armin Kuster <akuster808@gmail.com>
-rw-r--r--meta/recipes-devtools/rsync/rsync_3.1.3.bb3
1 files changed, 3 insertions, 0 deletions
diff --git a/meta/recipes-devtools/rsync/rsync_3.1.3.bb b/meta/recipes-devtools/rsync/rsync_3.1.3.bb
index ffb1d061c04..152ff02a25f 100644
--- a/meta/recipes-devtools/rsync/rsync_3.1.3.bb
+++ b/meta/recipes-devtools/rsync/rsync_3.1.3.bb
@@ -20,6 +20,9 @@ SRC_URI = "https://download.samba.org/pub/${BPN}/src/${BP}.tar.gz \
SRC_URI[md5sum] = "1581a588fde9d89f6bc6201e8129afaf"
SRC_URI[sha256sum] = "55cc554efec5fdaad70de921cd5a5eeb6c29a95524c715f3bbf849235b0800c0"
+# -16548 required for v3.1.3pre1. Already in v3.1.3.
+CVE_CHECK_WHITELIST += " CVE-2017-16548 "
+
inherit autotools
PACKAGECONFIG ??= "acl attr \