From 39d4d554231f8ecbd7433487e9a2d9299d56c894 Mon Sep 17 00:00:00 2001 From: Maik Otto Date: Wed, 5 Aug 2026 03:09:52 -0700 Subject: [PATCH] u-boot: Set CVE_PRODUCT The CPE vendor is "denx" and the CPE product is "u-boot". Set CVE_PRODUCT for properly matching in the NVD database. (From OE-Core rev: 6ac428e32aecf1f172c6b5c851edf2e0403eeeec) Signed-off-by: Maik Otto Signed-off-by: Mathieu Dubois-Briand Signed-off-by: Richard Purdie (cherry picked from commit d2e5d427de13b33694a1d802f5ac833b2c04ced6) Signed-off-by: Devansh Patel Signed-off-by: Fabien Thomas Signed-off-by: Paul Barker --- meta/recipes-bsp/u-boot/u-boot.inc | 2 ++ 1 file changed, 2 insertions(+) diff --git a/meta/recipes-bsp/u-boot/u-boot.inc b/meta/recipes-bsp/u-boot/u-boot.inc index 7935f2b4aa..00dda93b4a 100644 --- a/meta/recipes-bsp/u-boot/u-boot.inc +++ b/meta/recipes-bsp/u-boot/u-boot.inc @@ -19,6 +19,8 @@ PACKAGECONFIG ??= "openssl" # a host build dependency. PACKAGECONFIG[openssl] = ",,openssl-native" +CVE_PRODUCT = "denx:u-boot" + # Allow setting an additional version string that will be picked up by the # u-boot build system and appended to the u-boot version. If the .scmversion # file already exists it will not be overwritten.