Details: https://nvd.nist.gov/vuln/detail/CVE-2023-3297

The vulnerability is triggered by a patch added by Ubuntu, and the vulnerable 
patch is
not present in the recipe.

Signed-off-by: Gyorgy Sarvari <[email protected]>
---
 .../recipes-support/accountsservice/accountsservice_23.13.9.bb  | 2 ++
 1 file changed, 2 insertions(+)

diff --git 
a/meta-gnome/recipes-support/accountsservice/accountsservice_23.13.9.bb 
b/meta-gnome/recipes-support/accountsservice/accountsservice_23.13.9.bb
index e3dfcfffff..c024ae3f92 100644
--- a/meta-gnome/recipes-support/accountsservice/accountsservice_23.13.9.bb
+++ b/meta-gnome/recipes-support/accountsservice/accountsservice_23.13.9.bb
@@ -41,3 +41,5 @@ FILES:${PN} += " \
     ${datadir}/dbus-1 \
     ${datadir}/polkit-1 \
 "
+
+CVE_STATUS[CVE-2023-3297] = "not-applicable-platform: The vulnerability is 
Ubuntu specific"
-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.
View/Reply Online (#122460): 
https://lists.openembedded.org/g/openembedded-devel/message/122460
Mute This Topic: https://lists.openembedded.org/mt/116695313/21656
Group Owner: [email protected]
Unsubscribe: https://lists.openembedded.org/g/openembedded-devel/unsub 
[[email protected]]
-=-=-=-=-=-=-=-=-=-=-=-

Reply via email to