[meta-networking,kirkstone,master] quagga: ignore CVE-2016-4049

Message ID 20220706102419.22553-1-davide.gardenal@huawei.com
State Under Review
Delegated to: Armin Kuster
Headers show
Series [meta-networking,kirkstone,master] quagga: ignore CVE-2016-4049 | expand

Commit Message

Davide Gardenal July 6, 2022, 10:24 a.m. UTC
CVE-2016-4049 is not affecting our version, so we can ignore it.
This is caused because the CPE in the NVD database doesn't specify
a vulnerable version range.

Signed-off-by: Davide Gardenal <davide.gardenal@huawei.com>
---
 meta-networking/recipes-protocols/quagga/quagga_1.2.4.bb | 4 ++++
 1 file changed, 4 insertions(+)

Patch

diff --git a/meta-networking/recipes-protocols/quagga/quagga_1.2.4.bb b/meta-networking/recipes-protocols/quagga/quagga_1.2.4.bb
index a7697a1ae..984264a30 100644
--- a/meta-networking/recipes-protocols/quagga/quagga_1.2.4.bb
+++ b/meta-networking/recipes-protocols/quagga/quagga_1.2.4.bb
@@ -2,3 +2,7 @@  require quagga.inc
 
 SRC_URI[md5sum] = "eced21b054d71c9e1b7c6ac43286a166"
 SRC_URI[sha256sum] = "e364c082c3309910e1eb7b068bf39ee298e2f2f3f31a6431a5c115193bd653d3"
+
+CVE_CHECK_IGNORE += "\
+    CVE-2016-4049 \
+"