On 11/24/25 13:58, Gyorgy Sarvari via lists.openembedded.org wrote:
> List of all open CVEs (76, out of which new this week: 29):
>
>

Hi all,

I would like to add a couple of random notes to this week's reports.

1. Whinlatter is now part of this report. The base for new/removed
comparison for the first report is the last week's result from master
branch.

2. There are some new CVEs which were missing in previous reports. This
is because until now I ran the checks with vanilla config, but these
reports were generated with a config that had more features added to
cover more recipes. And it has highlighted an issue with the CVE checks
with universe builds - if a recipe is excluded from building due to a
missing feature for example, that is excluded from CVE checks also.
Technically it makes sense, though I still find it somewhat unexpected.
Will try to spend some time on looking into bitbake about this, because
it makes it harder to get a fuller picture.

3. When I started sending these reports, I mentioned that I plan send
them till the end of November as an experiment. The end of November is
here - anybody has anything against getting these reports in the future?
Personally I think that they are useful even with their limitations, but
I might be biased, since I started it to scratch my own itch. If no one
will speak up, will keep sending them.

Let me know if you have any questions or comments, either on this ML or
in private message.

Thank you,
Gyorgy
-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#122013): 
https://lists.openembedded.org/g/openembedded-devel/message/122013
Mute This Topic: https://lists.openembedded.org/mt/116450609/21656
Group Owner: [email protected]
Unsubscribe: https://lists.openembedded.org/g/openembedded-devel/unsub 
[[email protected]]
-=-=-=-=-=-=-=-=-=-=-=-

Reply via email to