mirror of
git://git.openembedded.org/meta-openembedded
synced 2026-01-01 13:58:06 +00:00
python3-svglib: set CVE_PRODUCT
There is only one relevant CVE in the database, but it is tracked using svglib_project:svglib CPE, not the expected python:svglib CPE, making the cve-checker miss it. See CVE db query: sqlite> select * from products where product like '%svglib%'; CVE-2020-10799|svglib_project|svglib|||0.9.3|<= Set the CVE_PRODUCT accordingly. Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com> Signed-off-by: Khem Raj <raj.khem@gmail.com>
This commit is contained in:
parent
07dd23f681
commit
34f5fd45af
|
|
@ -6,6 +6,8 @@ DESCRIPTION = "Svglib is a Python library for reading SVG files and \
|
|||
LICENSE = "LGPL-3.0-or-later"
|
||||
LIC_FILES_CHKSUM = "file://LICENSE.txt;md5=b52f2d57d10c4f7ee67a7eb9615d5d24"
|
||||
|
||||
CVE_PRODUCT = "svglib"
|
||||
|
||||
SRC_URI[sha256sum] = "4c38a274a744ef0d1677f55d5d62fc0fb798819f813e52872a796e615741733d"
|
||||
|
||||
inherit pypi python_hatchling
|
||||
|
|
|
|||
Loading…
Reference in New Issue
Block a user