[oe] [meta-python][PATCH] python3-pillow: Set CVE_PRODUCT

Akshay Bhat akshay.bhat at timesys.com
Wed May 1 19:37:02 UTC 2019


pillow is used in NVD for CVE's like:
https://nvd.nist.gov/vuln/detail/CVE-2016-3076

Signed-off-by: Akshay Bhat <akshay.bhat at timesys.com>
---
 meta-python/recipes-devtools/python/python3-pillow_5.4.1.bb | 2 ++
 1 file changed, 2 insertions(+)

diff --git a/meta-python/recipes-devtools/python/python3-pillow_5.4.1.bb b/meta-python/recipes-devtools/python/python3-pillow_5.4.1.bb
index 746c184..6fce162 100644
--- a/meta-python/recipes-devtools/python/python3-pillow_5.4.1.bb
+++ b/meta-python/recipes-devtools/python/python3-pillow_5.4.1.bb
@@ -23,6 +23,8 @@ DEPENDS += " \
     openjpeg \
 "
 
+CVE_PRODUCT = "pillow"
+
 S = "${WORKDIR}/git"
 
 BBCLASSEXTEND = "native"
-- 
2.7.4



More information about the Openembedded-devel mailing list