meta-openembedded/meta-python/recipes-devtools/python/python3-svglib_1.6.0.bb
Gyorgy Sarvari 34f5fd45af
python3-svglib: set CVE_PRODUCT
There is only one relevant CVE in the database, but it is tracked using
svglib_project:svglib CPE, not the expected python:svglib CPE, making the
cve-checker miss it.

See CVE db query:
sqlite> select * from products where product like '%svglib%';
CVE-2020-10799|svglib_project|svglib|||0.9.3|<=

Set the CVE_PRODUCT accordingly.

Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com>
Signed-off-by: Khem Raj <raj.khem@gmail.com>
2025-12-31 08:28:56 -08:00

19 lines
641 B
BlitzBasic

SUMMARY = "A pure-Python library for reading and converting SVG."
DESCRIPTION = "Svglib is a Python library for reading SVG files and \
converting them (to a reasonable degree) to other formats using the \
ReportLab Open Source toolkit."
LICENSE = "LGPL-3.0-or-later"
LIC_FILES_CHKSUM = "file://LICENSE.txt;md5=b52f2d57d10c4f7ee67a7eb9615d5d24"
CVE_PRODUCT = "svglib"
SRC_URI[sha256sum] = "4c38a274a744ef0d1677f55d5d62fc0fb798819f813e52872a796e615741733d"
inherit pypi python_hatchling
BBCLASSEXTEND = "native nativesdk"
RDEPENDS:${PN} = "python3-pillow python3-html python3-cssselect2 python3-webencodings \
python3-lxml"