[OE-core] [RFC PATCH 2/2] vuln-cve_image: rootfs manifest about vulnerability

2020-03-09 Thread Toshikazu Nakayama
nd for the image recipe itself, prepare VULNFUNC_IMAGE_CLASS plugin which may append summary header as image manifest such as CVE database freshness which is inserted at the top of manifest files. Signed-off-by: Toshikazu Nakayama --- meta/classes/vuln-cve.bbclass | 18 +- meta/cl

[OE-core] [RFC PATCH 0/2] Proposal vuln-cve.bbclass about plug and call style CVE task

2020-03-09 Thread Toshikazu Nakayama
sing in the way of my contacts, please let me know. Or if possible, please review or give comments. Regards, Toshikazu. Toshikazu Nakayama (2): vuln-cve: vulnerability task with plug and call style vuln-cve_image: rootfs manifest about vulnerability meta/classe

[OE-core] [RFC PATCH 1/2] vuln-cve: vulnerability task with plug and call style

2020-03-09 Thread Toshikazu Nakayama
eports. This is used to specify patch or git repository containing places. Finally vulnerability task publishes per package "vulnerability.summary" and "vulnerability.patchlist" reports. First one is reporting CVE number list and their judgement, second one is reporting only about '