Fabrice Fontaine
10f8934c59
package/librelp: add LIBRELP_CPE_ID_VENDOR
...
cpe:2.3🅰️ rsyslog:librelp is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Arsyslog%3Alibrelp
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 19:28:08 +02:00
Fabrice Fontaine
c3e5a675dd
package/liboping: add LIBOPING_CPE_ID_VENDOR
...
cpe:2.3🅰️ noping:liboping is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Anoping%3Aliboping
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 19:28:07 +02:00
Fabrice Fontaine
8910dc505a
package/libmodbus: add LIBMODBUS_CPE_ID_VENDOR
...
cpe:2.3🅰️ libmodbus:libmodbus is a valid CPE identifier for this
package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Alibmodbus%3Alibmodbus
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 19:28:06 +02:00
Fabrice Fontaine
c91b3c3ce2
package/libmms: add LIBMMS_CPE_ID_VENDOR
...
cpe:2.3🅰️ libmms_project:libmms is a valid CPE identifier for this
package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Alibmms_project%3Alibmms
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 19:28:04 +02:00
Fabrice Fontaine
c2bc364c08
package/libldns: add CPE variables
...
cpe:2.3🅰️ nlnetlabs:ldns is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Anlnetlabs%3Aldns
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:45 +02:00
Fabrice Fontaine
c5e9b02251
package/kodi: add CPE variables
...
cpe:2.3🅰️ kodi:kodi is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Akodi%3Akodi
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:45 +02:00
Fabrice Fontaine
00cb0f00fa
package/keepalived: add KEEPALIVED_CPE_ID_VENDOR
...
cpe:2.3🅰️ keepalived:keepalived is a valid CPE identifier for this
package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Akeepalived%3Akeepalived
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:45 +02:00
Fabrice Fontaine
ea77594f3f
package/grpc: add GRPC_CPE_ID_VENDOR
...
cpe:2.3🅰️ grpc:grpc is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Agrpc%3Agrpc
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:45 +02:00
Fabrice Fontaine
c4c11c2e1a
package/frr: add CPE variables
...
cpe:2.3🅰️ linuxfoundation:free_range_routing is a valid CPE identifier
for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Alinuxfoundation%3Afree_range_routing
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:45 +02:00
Fabrice Fontaine
13bca2271d
package/fluidsynth: add FLUIDSYNTH_CPE_ID_VENDOR
...
cpe:2.3🅰️ fluidsynth:fluidsynth is a valid CPE identifier for this
package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Afluidsynth%3Afluidsynth
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:45 +02:00
Fabrice Fontaine
c98e315838
package/exempi: add EXEMPI_CPE_ID_VENDOR
...
cpe:2.3🅰️ exempi_project:exempi is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Aexempi_project%3Aexempi
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:45 +02:00
Fabrice Fontaine
2ad812a0b3
package/enscript: add ENSCRIPT_CPE_ID_VENDOR
...
cpe:2.3🅰️ gnu:enscript is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Agnu%3Aenscript
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:45 +02:00
Fabrice Fontaine
e7b8832a5e
package/enlightenment: add ENLIGHTENMENT_CPE_ID_VENDOR
...
cpe:2.3🅰️ enlightenment:enlightenment is a valid CPE identifier for this
package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Aenlightenment%3Aenlightenment
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:45 +02:00
Fabrice Fontaine
05bffd0613
package/terminology: add TERMINOLOGY_CPE_ID_VENDOR
...
cpe:2.3🅰️ enlightenment:terminology is a valid CPE identifier for this
package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Aenlightenment%3Aterminology
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:45 +02:00
Fabrice Fontaine
8391f7d189
package/libidn: add LIBIDN_CPE_ID_VENDOR
...
cpe:2.3🅰️ gnu:libidn is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Agnu%3Alibidn
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:45 +02:00
Fabrice Fontaine
981850b353
package/libidn2: add LIBIDN2_CPE_ID_VENDOR
...
cpe:2.3🅰️ gnu:libidn2 is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Agnu%3Alibidn2
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:45 +02:00
Fabrice Fontaine
ba91be05c2
package/tinyproxy: add TINYPROXY_CPE_ID_VENDOR
...
cpe:2.3🅰️ tinyproxy_project:tinyproxy is a valid CPE identifier for this
package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Atinyproxy_project%3Atinyproxy
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:45 +02:00
Fabrice Fontaine
c00a99c292
package/tinyxml2: add TINYXML2_CPE_ID_VENDOR
...
cpe:2.3🅰️ tinyxml2_project:tinyxml2 is a valid CPE identifier for this
package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Atinyxml2_project%3Atinyxml2
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:45 +02:00
Fabrice Fontaine
5b074ef1f3
package/tini: add TINI_CPE_ID_VENDOR
...
cpe:2.3🅰️ tini_project:tini is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Atini_project%3Atini
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:44 +02:00
Fabrice Fontaine
1ffd14f28a
package/tclap: add TCLAP_CPE_ID_VENDOR
...
cpe:2.3🅰️ tclap_project:tclap is a valid CPE identifier for this
package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Atclap_project%3Atclap
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:44 +02:00
Fabrice Fontaine
4e48f5da05
package/thermald: add THERMALD_CPE_ID_VENDOR
...
cpe:2.3🅰️ intel:thermald is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Aintel%3Athermald
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:44 +02:00
Fabrice Fontaine
eecf0e55d3
package/taglib: add TAGLIB_CPE_ID_VENDOR
...
cpe:2.3🅰️ taglib:taglib is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Ataglib%3Ataglib
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:44 +02:00
Fabrice Fontaine
2774a21025
package/qpdf: add QPDF_CPE_ID_VENDOR
...
cpe:2.3🅰️ qpdf_project:qpdf is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Aqpdf_project%3Aqpdf
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:30:44 +02:00
Fabrice Fontaine
7fa481437e
package/mesa3d{,-headers}: add CPE variables
...
cpe:2.3🅰️ mesa3d:mesa is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Amesa3d%3Amesa
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
[yann.morin.1998@free.fr: add to mesa3d-headers too]
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
2021-05-16 18:29:55 +02:00
Fabrice Fontaine
d70da0be78
package/lvm2: add LVM2_CPE_ID_VENDOR
...
cpe:2.3🅰️ redhat:lvm2 is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Aredhat%3Alvm2
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 18:28:01 +02:00
Matt Weber
f3b07e2ded
support/scripts/pkg-stats: add column reporting ignored CVEs
...
When doing analysis it is helpful to be able to view what CVE have
been patched / diagnosed to not apply to Buildroot. This exposes
that list to the reporting and prevents a step where you have to
dig into the .mk's of a pkg to check for sure what has been
ignored.
Signed-off-by: Matthew Weber <matthew.weber@rockwellcollins.com >
[yann.morin.1998@free.fr: only set background if there are ignored CVEs]
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
2021-05-16 18:22:58 +02:00
Matt Weber
c5aa3c5883
support/scripts/pkg-stats: add CPE searching links
...
For cases of a CPE having a unknown version or when there hasn't
been a CPE verified, proposed a search criteria to help the
user research an update.
(libcurl has NIST dict entries but not this version)
cpe:2.3🅰️ haxx:libcurl:7.76.1:*:*:*:*:*:*:*
CPE identifier unknown in CPE database (Search)
(jitterentropy-library package doesn't have any NIST dict entries)
no verified CPE identifier (Search)
Signed-off-by: Matthew Weber <matthew.weber@rockwellcollins.com >
[yann.morin.1998@free.fr: fix flake8 issues]
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
2021-05-16 17:54:25 +02:00
Thomas Petazzoni
fd7312940a
Makefile: add new missing-cpe target
...
It invokes the recently introduced gen-missing-cpe script.
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com >
Reviewed-by: Arnout Vandecappelle (Essensium/Mind) <arnout@mind.be >
Tested-by: Matt Weber <matthew.weber@rockwellcollins.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 13:58:36 +02:00
Matt Weber
fffc553485
support/scripts/gen-missing-cpe: add new script
...
This script queries the list of CPE IDs for the packages of the
current configuration (based on the "make show-info" output), and:
- for CPE IDs that do not have any matching entry in the CPE
database, it emits a warning
- for CPE IDs that do have a matching entry, but not with the same
version, it generates a snippet of XML that can be used to propose
an updated version to NIST.
Ref: NIST has a group email (cpe_dictionary@nist.gov ) used to
recieve these version update and new entry xml files. They do
process the XML and provide feedback. In some cases they will
propose back something different where the vendor or version is
slightly different.
Limitations
- Currently any use of non-number version identifiers isn't
supported by NIST as they use ranges to determine impact
of a CVE
- Any Linux version from a non-upstream is also not supported
without manually adjusting the information as the custom
kernel will more then likely not match the upstream version
used in the dictionary
Signed-off-by: Matt Weber <matthew.weber@rockwellcollins.com >
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com >
Reviewed-by: Arnout Vandecappelle (Essensium/Mind) <arnout@mind.be >
Tested-by: Matt Weber <matthew.weber@rockwellcollins.com >
[yann.morin.1998@free.fr:
- codestyles as spotted by Arnout
]
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
2021-05-16 13:57:38 +02:00
Fabrice Fontaine
ae79f0f403
package/jquery-validation: security bump to version 1.19.3
...
Fix CVE-2021-21252: The jQuery Validation Plugin provides drop-in
validation for your existing forms. It is published as an npm package
"jquery-validation". jquery-validation before version 1.19.3 contains
one or more regular expressions that are vulnerable to ReDoS (Regular
Expression Denial of Service).
Update hash of README.md due to changes not related to license
https://github.com/jquery-validation/jquery-validation/releases/tag/1.19.3
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 13:47:45 +02:00
Fabrice Fontaine
a5ff2a2828
package/jquery-validation: add CPE variables
...
cpe:2.3🅰️ jqueryvalidation:jquery_validation is a valid CPE identifier
for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Ajqueryvalidation%3Ajquery_validation
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 13:47:44 +02:00
Fabrice Fontaine
97be782fd4
package/bullet: needs wchar
...
bullet needs wchar since bump to version 3.09 in commit
28b4947ed8 :
/home/giuliobenetti/autobuild/run/instance-0/output-1/build/bullet-3.09/examples/ThirdPartyLibs/Gwen/Structures.h:42:14: error: 'wstring' in namespace 'std' does not name a type
42 | typedef std::wstring UnicodeString;
| ^~~~~~~
Fixes:
- http://autobuild.buildroot.org/results/2b1158970fc45e9ebd4be4d726352166ed417a1f
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 13:36:45 +02:00
Yann E. MORIN
9d60b443e7
Revert "package/libbluray: add optional support for libudfread"
...
This reverts commit 7aa9b9041d .
libbluray before 1.3.0 does not properly detect libudfread, because it
checks for the incorrect name (it asks pkg-config for udfread instead of
libudfread). So, even with the dependency, it would miss it.
Reported-by: Bernd Kuhls <bernd.kuhls@t-online.de >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-16 11:14:29 +02:00
Bernd Kuhls
7aa9b9041d
package/libbluray: add optional support for libudfread
...
Signed-off-by: Bernd Kuhls <bernd.kuhls@t-online.de >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 18:14:28 +02:00
Peter Korsgaard
ab6dbf1c9f
{linux, linux-headers}: bump 5.{4, 10, 11, 12}.x series
...
Signed-off-by: Peter Korsgaard <peter@korsgaard.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 18:12:39 +02:00
Fabrice Fontaine
68b5b3fbf0
package/dmalloc: fix static build
...
Build of dmalloc is broken since commit
19ec872f16 because --enable-shlib is
unconditionally set
Fixes:
- http://autobuild.buildroot.org/results/62c9c6aebca60649bd6f635125507bf10d63fc05
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 18:09:29 +02:00
Fabrice Fontaine
12916827e0
package/openssh: security bump to version 8.6p1
...
Security
========
* sshd(8): OpenSSH 8.5 introduced the LogVerbose keyword. When this
option was enabled with a set of patterns that activated logging
in code that runs in the low-privilege sandboxed sshd process, the
log messages were constructed in such a way that printf(3) format
strings could effectively be specified the low-privilege code.
An attacker who had sucessfully exploited the low-privilege
process could use this to escape OpenSSH's sandboxing and attack
the high-privilege process. Exploitation of this weakness is
highly unlikely in practice as the LogVerbose option is not
enabled by default and is typically only used for debugging. No
vulnerabilities in the low-privilege process are currently known
to exist.
https://www.openssh.com/txt/release-8.6
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 17:18:50 +02:00
Fabrice Fontaine
8a86b50092
board/qemu/s390x: disable SSP when needed
...
Fix build failure raised since commit
810ba387be by disabling SSP when needed
Fixes:
- https://gitlab.com/kubu93/buildroot/-/jobs/1247043361
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Reviewed-by: Romain Naour <romain.naour@gmail.com >
Reviewed-by: Alexander Egorenkov <egorenar@linux.ibm.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 16:48:18 +02:00
Adam Duskett
bcff1166d4
package/mender-grubenv: fix installing on non-efi platforms
...
Currently, mender-grubenv unconditionally installs files from the
$(TARGET_DIR)/boot/EFI directory to the $(BINARIES_DIR)/efi-part.
This fails on systems that are not building grub against EFI.
Add a check in mender-grubenv.mk to ensure the files are copied to the correct
location if EFI is not selected.
Signed-off-by: Adam Duskett <aduskett@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 14:53:09 +02:00
Fabrice Fontaine
bf1925cb97
package/refpolicy: fix REFPOLICY_CPE_ID_VENDOR
...
cpe:2.3🅰️ selinuxproject:refpolicy is a valid CPE identifier for this
package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Aselinuxproject%3Arefpolicy
Indeed, cpe:2.3🅰️ tresys:refpolicy has been deprecated since April 21th:
<cpe-item name="cpe:/a:tresys:refpolicy:2.20180701" deprecated="true" deprecation_date="2021-04-21T16:55:43.710Z">
<title xml:lang="en-US">Tresys refpolicy 2.20180701</title>
<reference href="https://github.com/TresysTechnology/refpolicy ">Product</reference>
<cpe-23:cpe23-item name="cpe:2.3🅰️ tresys:refpolicy:2.20180701:*:*:*:*:*:*:*">
<cpe-23:deprecated-by name="cpe:2.3🅰️ selinuxproject:refpolicy:2.20180701:*:*:*:*:*:*:*" type="NAME_CORRECTION"/>
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 14:20:58 +02:00
Fabrice Fontaine
28b19ccb48
package/python-autobahn: add CPE variables
...
cpe:2.3🅰️ crossbar:autobahn is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Acrossbar%3Aautobahn
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 14:20:48 +02:00
Fabrice Fontaine
ca6fab6ef9
package/python-tqdm: add CPE variables
...
cpe:2.3🅰️ tqdm_project:tqdm is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Atqdm_project%3Atqdm
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 14:20:47 +02:00
Fabrice Fontaine
6c5cf37880
package/python-requests: add CPE variables
...
cpe:2.3🅰️ python:requests is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Apython%3Arequests
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 14:19:42 +02:00
Fabrice Fontaine
901689bfcc
package/python-engineio: add PYTHON_ENGINEIO_CPE_ID_VENDOR
...
cpe:2.3🅰️ python-engineio_project:python-engineio is a valid CPE
identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Apython-engineio_project%3Apython-engineio
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 14:19:41 +02:00
Fabrice Fontaine
14614d63f7
package/python-keyring: add CPE variables
...
cpe:2.3🅰️ python:keyring is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Apython%3Akeyring
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 14:19:40 +02:00
Fabrice Fontaine
38fb1ad2a0
package/gstreamer1/gstreamer1: add CPE variables
...
cpe:2.3🅰️ gstreamer_project:gstreamer is a valid CPE identifier for this
package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Agstreamer_project%3Agstreamer
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 14:18:21 +02:00
Fabrice Fontaine
75d795c493
package/gstreamer1/gst1-rtsp-server: add CPE variables
...
cpe:2.3🅰️ gstreamer_project:gst-rtsp-server is a valid CPE identifier
for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Agstreamer_project%3Agst-rtsp-server
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 14:18:19 +02:00
Fabrice Fontaine
13c2242034
package/gstreamer1/gst1-plugins-bad: add CPE variables
...
cpe:2.3🅰️ freedesktop:gst-plugins-bad is a valid CPE identifier for
this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Afreedesktop%3Agst-plugins-bad
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 14:18:18 +02:00
Fabrice Fontaine
6381183d49
package/udisks: add UDISKS_CPE_ID_VENDOR
...
cpe:2.3🅰️ freedesktop:udisks is a valid CPE identifier for this package:
https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=cpe%3A2.3%3Aa%3Afreedesktop%3Audisks
Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 14:18:17 +02:00
Thomas Petazzoni
4cf819f80e
configs/beaglev: enable host jh71xx-tools
...
This host utility is useful to recover the bootloader.
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com >
Reviewed-by: Bin Meng <bmeng.cn@gmail.com >
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr >
2021-05-15 14:12:17 +02:00