libmad: ignore CVE-2017-11552 and CVE-2018-7263

These CVEs are for mpg321, not libmad.
See Debian assessment:
* https://security-tracker.debian.org/tracker/CVE-2017-11552
* https://security-tracker.debian.org/tracker/CVE-2018-7263

Signed-off-by: Peter Marko <peter.marko@siemens.com>
Signed-off-by: Khem Raj <raj.khem@gmail.com>
This commit is contained in:
Peter Marko 2025-03-21 00:14:03 +01:00 committed by Khem Raj
parent 0dcbb0b5d4
commit fee86a312f
No known key found for this signature in database
GPG Key ID: BB053355919D3314

View File

@ -36,3 +36,6 @@ do_configure:prepend () {
}
ARM_INSTRUCTION_SET = "arm"
CVE_STATUS[CVE-2017-11552] = "cpe-incorrect: this CVE is for mpg321, not libmad"
CVE_STATUS[CVE-2018-7263] = "cpe-incorrect: this CVE is for mpg321, not libmad"