mirror of
https://git.yoctoproject.org/poky
synced 2026-09-12 15:49:36 +02:00
python3-babel: fix CVE_PRODUCT
Recipe (PV): python3-babel (2.14.0) Before -> After: python:Babel -> pocoo:babel Newly caught CVEs: CVE-2021-42771 (locale .dat deserialization RCE) Status: patched (fixed 2.9.1) Note: The original commit targeted python3-babel_2.18.0.bb. This is adjusted for Scarthgap, where the recipe version is 2.14.0. AI-Generated: Claude Sonnet 5 (From OE-Core rev: 27c524d5c69993338612461831f7aec054eb4d00) Signed-off-by: Tim Orling <tim.orling@konsulko.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> (cherry picked from commit 134175fa92b85e639dc4646d9a88eeaba0fae4d3) Signed-off-by: Devansh Patel <devanshp@cisco.com> Signed-off-by: Yoann Congal <yoann.congal@smile.fr> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
This commit is contained in:
committed by
Richard Purdie
parent
35a3f1bb5d
commit
492fbe84e8
@@ -9,6 +9,8 @@ PYPI_PACKAGE = "Babel"
|
|||||||
|
|
||||||
inherit pypi setuptools3
|
inherit pypi setuptools3
|
||||||
|
|
||||||
|
CVE_PRODUCT = "pocoo:babel"
|
||||||
|
|
||||||
CLEANBROKEN = "1"
|
CLEANBROKEN = "1"
|
||||||
|
|
||||||
RDEPENDS:${PN} += " \
|
RDEPENDS:${PN} += " \
|
||||||
|
|||||||
Reference in New Issue
Block a user