mirror of
https://gitlab.com/buildroot.org/buildroot.git
synced 2026-08-08 00:20:38 -09:00
package/libcurl: remove stale IGNORE_CVES
Since Buildroot commit [1] the CVEs are no longer matched to CPEs with versions using '-'. The CVE-2024-32928 introduced in [2] is then no longer matched to the libcurl package. For more information, see the explanation in commit [1]. [1]35f376d88esupport/scripts/cve.py: fix CPE matching [2]7e739d49b2package/libcurl: ignore CVE-2024-32928 Signed-off-by: Thomas Perale <thomas.perale@mind.be> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
This commit is contained in:
committed by
Thomas Petazzoni
parent
4aacd22a85
commit
b155395a52
@@ -25,10 +25,6 @@ LIBCURL_CONF_OPTS = \
|
||||
--disable-ldap \
|
||||
--disable-ldaps
|
||||
|
||||
# Only affects Nest products.
|
||||
# https://nvd.nist.gov/vuln/detail/CVE-2024-32928
|
||||
LIBCURL_IGNORE_CVES += CVE-2024-32928
|
||||
|
||||
# threaded resolver cannot be used with c-ares
|
||||
# https://github.com/curl/curl/commit/d364f1347f05c53eea5d25a15b4ad8a62ecc85b8
|
||||
ifeq ($(BR2_TOOLCHAIN_HAS_THREADS)x$(BR2_PACKAGE_C_ARES),yx)
|
||||
|
||||
Reference in New Issue
Block a user