summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorPeter Marko <peter.marko@siemens.com>2023-03-22 08:18:04 +0100
committerArmin Kuster <akuster808@gmail.com>2023-03-26 16:02:15 -0400
commita397a38ed9e54378e66ce750a005bda14991b719 (patch)
tree30e48cbe00a9266d6b2e92bb5a6a36ff0285ff39
parentd50e7d70d9eb922774f8374083b99d691bf77e7e (diff)
downloadmeta-security-a397a38ed9e54378e66ce750a005bda14991b719.tar.gz
tpm2-tss: correct CVE product
Currently CVE-2023-22745 does not show up in kirkstone CVE report. This fixes that. Products from yocto's CVE check NVD database: sqlite> select * from products where product like "tpm2%"; CVE-2017-7524|tpm2-tools_project|tpm2.0-tools|||1.1.0|<= CVE-2020-24455|tpm2_software_stack_project|tpm2_software_stack|||2.4.3|< CVE-2020-24455|tpm2_software_stack_project|tpm2_software_stack|3.0.0|>=|3.0.1|< CVE-2021-3565|tpm2-tools_project|tpm2-tools|5.1|>=|5.1.1|< CVE-2021-3565|tpm2-tools_project|tpm2-tools|||4.3.2|< CVE-2023-22745|tpm2_software_stack_project|tpm2_software_stack|||4.0.0|<= Signed-off-by: Peter Marko <peter.marko@siemens.com> Signed-off-by: Armin Kuster <akuster808@gmail.com>
-rw-r--r--meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss_4.0.1.bb2
1 files changed, 2 insertions, 0 deletions
diff --git a/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss_4.0.1.bb b/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss_4.0.1.bb
index 657a2cd..cc7e6ae 100644
--- a/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss_4.0.1.bb
+++ b/meta-tpm/recipes-tpm2/tpm2-tss/tpm2-tss_4.0.1.bb
@@ -14,6 +14,8 @@ SRC_URI[sha256sum] = "532a70133910b6bd842289915b3f9423c0205c0ea009d65294ca18a740
14 14
15UPSTREAM_CHECK_URI = "https://github.com/tpm2-software/${BPN}/releases" 15UPSTREAM_CHECK_URI = "https://github.com/tpm2-software/${BPN}/releases"
16 16
17CVE_PRODUCT = "tpm2_software_stack"
18
17inherit autotools pkgconfig systemd useradd 19inherit autotools pkgconfig systemd useradd
18 20
19PACKAGECONFIG ??= "vendor" 21PACKAGECONFIG ??= "vendor"