Details: https://nvd.nist.gov/vuln/detail/CVE-2013-2018

According to oss-security email[1], version 7.0.45 included
the fixes[2][3][4]

[1]: https://www.openwall.com/lists/oss-security/2013/04/29/11
[2]: 
https://github.com/BOINC/boinc/commit/6e205de096da83b12ffb2f0183b43e51261eb0c4
[3]: 
https://github.com/BOINC/boinc/commit/e8d6c33fe158129a5616e18eb84a7a9d44aca15f
[4]: 
https://github.com/BOINC/boinc/commit/ce3110489bc139b8218252ba1cb0862d69f72ae3

Signed-off-by: Gyorgy Sarvari <[email protected]>
Signed-off-by: Khem Raj <[email protected]>
(cherry picked from commit 2a78ad8813845677132ad0f1552fcaa4961c3e15)

Adapted to Kirkstone (CVE_STATUS -> CVE_CHECK_IGNORE)

Signed-off-by: Gyorgy Sarvari <[email protected]>
---
 meta-oe/recipes-extended/boinc/boinc-client_7.18.1.bb | 4 ++++
 1 file changed, 4 insertions(+)

diff --git a/meta-oe/recipes-extended/boinc/boinc-client_7.18.1.bb 
b/meta-oe/recipes-extended/boinc/boinc-client_7.18.1.bb
index 8f85a508e7..098a6796e3 100644
--- a/meta-oe/recipes-extended/boinc/boinc-client_7.18.1.bb
+++ b/meta-oe/recipes-extended/boinc/boinc-client_7.18.1.bb
@@ -31,6 +31,10 @@ DEPENDS = "curl \
 "
 SRCREV = "b49adfb118211e11c719766c0d71e7bdfe7f3363"
 BRANCH = "client_release/7/7.18"
+
+# fixed-version: fixed in version 7.0.45 and later"
+CVE_CHECK_IGNORE += "CVE-2013-2018"
+
 SRC_URI = "git://github.com/BOINC/boinc;protocol=https;branch=${BRANCH} \
            file://boinc-AM_CONDITIONAL.patch \
            file://gtk-configure.patch \
-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#123649): 
https://lists.openembedded.org/g/openembedded-devel/message/123649
Mute This Topic: https://lists.openembedded.org/mt/117350069/21656
Group Owner: [email protected]
Unsubscribe: https://lists.openembedded.org/g/openembedded-devel/unsub 
[[email protected]]
-=-=-=-=-=-=-=-=-=-=-=-

  • [oe] [meta-oe][kirkstone][PATCH ... Gyorgy Sarvari via lists.openembedded.org

Reply via email to