diff options
| author | Ross Burton <ross.burton@arm.com> | 2023-06-23 13:32:49 +0100 | 
|---|---|---|
| committer | Steve Sakoman <steve@sakoman.com> | 2023-07-13 06:37:15 -1000 | 
| commit | 41280e390ab6f29fb8596bd520c0a2f228bb2625 (patch) | |
| tree | 1c882e1550bfd2d53a946f0dccf04a3aed3e034d /scripts/lib/checklayer | |
| parent | 6e17b3e644ca15b8b4afd071ccaa6f172a0e681a (diff) | |
| download | poky-41280e390ab6f29fb8596bd520c0a2f228bb2625.tar.gz | |
cve-update-nvd2-native: handle all configuration nodes, not just first
Some CVEs, such as CVE-2013-6629, list multiple configurations which are
vulnerable. The current JSON parser only considers the first
configuration.
Instead, consider every configuration. We don't yet handle the AND/OR
logical operators, but this is a step in the right direction.
(From OE-Core rev: a2d50c0fd1e1be869d8786b920f8b428a3292ed1)
Signed-off-by: Ross Burton <ross.burton@arm.com>
Signed-off-by: Alexandre Belloni <alexandre.belloni@bootlin.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
(cherry picked from commit e1bf4f6dd686055fe9a8bdcc3f739eac2807bae0)
Signed-off-by: Steve Sakoman <steve@sakoman.com>
Diffstat (limited to 'scripts/lib/checklayer')
0 files changed, 0 insertions, 0 deletions
