From d7981d4270275ca8c36cff5fb8bf19e9ff481fde Mon Sep 17 00:00:00 2001 From: Benjamin Gilbert Date: Thu, 16 Apr 2020 02:09:05 -0400 Subject: [PATCH] test_image_content: whitelist some GLSAs systemd and sudo are already fixed. Git was fixed by updating to 2.23.2, not 2.24.1. Samba is 2 years old and customized, thus difficult to update. file, Python, and gdb are only in the SDK. --- build_library/test_image_content.sh | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/build_library/test_image_content.sh b/build_library/test_image_content.sh index bc94a231c9..1d1f6ae210 100644 --- a/build_library/test_image_content.sh +++ b/build_library/test_image_content.sh @@ -9,6 +9,13 @@ GLSA_WHITELIST=( 201909-01 # Perl, SDK only 201909-08 # backported fix 201911-01 # package too old to even have the affected USE flag + 202003-20 # backported fix + 202003-12 # only applies to old, already-fixed CVEs + 202003-24 # SDK only + 202003-26 # SDK only + 202003-30 # fixed by updating within older minor release + 202003-31 # SDK only + 202003-52 # difficult to update :-( ) glsa_image() {