On 1/12/26 10:13, Anuj Mittal via lists.openembedded.org wrote: > On Mon, Jan 12, 2026 at 2:08 PM Gyorgy Sarvari via > lists.openembedded.org <[email protected]> > wrote: >> At this time this CVE is both ignored and patched[1] - I think the patch >> could be dropped. >> >> [1]: >> https://git.openembedded.org/meta-openembedded-contrib/commit/?h=anujm/scarthgap&id=19d7eedf67ea1b8fe27790366d98a7e888cb839a > Since this isn't merged yet, I will drop this ignore unless there are > problems with the CVE patch because of which it needs to be reverted?
Personally I'm not a fan of that patch. I wanted to mention this, but I noticed it after it was merged. Planned something like that, but fortunately Ankur was faster. My main issue is in the first hunk: a header is duplicated (which is harmless), but there is also a macro redefinition, which doesn't look intentional, and have no idea if it actually has any noticeable side-effect. > Thanks, > > Anuj > > >
-=-=-=-=-=-=-=-=-=-=-=- Links: You receive all messages sent to this group. View/Reply Online (#123372): https://lists.openembedded.org/g/openembedded-devel/message/123372 Mute This Topic: https://lists.openembedded.org/mt/117189431/21656 Group Owner: [email protected] Unsubscribe: https://lists.openembedded.org/g/openembedded-devel/unsub [[email protected]] -=-=-=-=-=-=-=-=-=-=-=-
