Files
poky/meta/recipes-extended
Mikko Rapeli 60ca60be6f zip: whitelist CVE-2018-13410 and CVE-2018-13684
https://nvd.nist.gov/vuln/detail/CVE-2018-13410 is disputed and
also Debian considers it not a vulnerability:

https://security-tracker.debian.org/tracker/CVE-2018-13410

http://seclists.org/fulldisclosure/2018/Jul/24
"Negligible security impact, would involve that a untrusted party controls the -TT value."

https://nvd.nist.gov/vuln/detail/CVE-2018-13684 is not for zip, also Debian concludes this:

https://security-tracker.debian.org/tracker/CVE-2018-13684

"NOT-FOR-US: smart contract implementation for ZIP"

(From OE-Core rev: f0314a6937a63b3274bcd84817476834c1de876e)

Signed-off-by: Mikko Rapeli <mikko.rapeli@bmw.de>
Signed-off-by: Anuj Mittal <anuj.mittal@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
2021-01-27 09:32:45 +00:00
..
2020-08-25 16:00:10 +01:00
2019-08-21 21:52:59 +01:00
2020-09-24 22:32:49 +01:00
2019-07-02 08:13:07 +01:00
2019-03-29 08:28:53 +00:00
2020-07-08 10:37:12 +01:00
2020-07-03 11:38:24 +01:00
2019-12-15 09:10:46 +00:00
2020-04-24 14:10:08 +01:00
2020-08-20 15:30:07 +01:00
2021-01-04 11:45:47 +00:00
2019-02-19 16:14:57 +00:00
2020-05-30 12:32:48 +01:00
2018-11-14 11:14:39 +00:00
2020-02-25 10:41:22 +00:00
2020-07-18 11:06:32 +01:00
2019-08-22 22:48:26 +01:00
2020-06-04 13:27:30 +01:00
2019-02-19 16:14:57 +00:00
2021-01-12 14:25:13 +00:00
2020-08-25 16:00:10 +01:00
2020-08-25 16:00:10 +01:00
2020-09-03 09:44:30 +01:00
2020-08-01 19:57:49 +01:00
2019-04-23 23:30:19 +01:00
2020-02-21 17:48:08 +00:00
2020-02-03 13:03:32 +00:00
2019-06-07 09:11:49 +01:00
2020-12-18 23:01:48 +00:00
2019-12-09 12:00:43 +00:00
2018-05-04 13:28:05 +01:00
2021-01-12 14:25:13 +00:00
2019-09-30 16:55:21 +01:00
2020-05-09 18:57:21 +01:00
2020-06-09 13:14:00 +01:00
2020-05-19 22:57:27 +01:00