From 9b5355375d028577de0b98e05992de6a088cb972 Mon Sep 17 00:00:00 2001 From: Richard Purdie Date: Mon, 10 May 2021 12:17:15 +0100 Subject: qemu: Exclude CVE-2017-5957 from cve-check The CVE applies to virglrender before 0.6.0 which we don't have. Signed-off-by: Richard Purdie --- meta/recipes-devtools/qemu/qemu.inc | 3 +++ 1 file changed, 3 insertions(+) diff --git a/meta/recipes-devtools/qemu/qemu.inc b/meta/recipes-devtools/qemu/qemu.inc index 384b0c19b0..e210f38cfe 100644 --- a/meta/recipes-devtools/qemu/qemu.inc +++ b/meta/recipes-devtools/qemu/qemu.inc @@ -65,6 +65,9 @@ SRC_URI[sha256sum] = "cb18d889b628fbe637672b0326789d9b0e3b8027e0445b936537c78549 SRC_URI_append_class-target = " file://cross.patch" SRC_URI_append_class-nativesdk = " file://cross.patch" +# Applies against virglrender < 0.6.0 and not qemu itself +CVE_CHECK_WHITELIST += "CVE-2017-5957" + COMPATIBLE_HOST_mipsarchn32 = "null" COMPATIBLE_HOST_mipsarchn64 = "null" -- cgit 1.2.3-korg