From 01063c4291a7300285ad9ec044b94968dd6c2d09 Mon Sep 17 00:00:00 2001 From: Alexander Dahl Date: Tue, 1 Jun 2021 09:03:16 +0200 Subject: [PATCH] package/putty: Ignore CVE-2021-33500 Since putty is only affected by this CVE on Windows, ignore it in the stable branch. Branch master is not affected anymore already, due to newer version which got fixed. Signed-off-by: Alexander Dahl Signed-off-by: Peter Korsgaard --- package/putty/putty.mk | 3 +++ 1 file changed, 3 insertions(+) diff --git a/package/putty/putty.mk b/package/putty/putty.mk index c40cac9dc5..8a494d4e54 100644 --- a/package/putty/putty.mk +++ b/package/putty/putty.mk @@ -12,6 +12,9 @@ PUTTY_CPE_ID_VENDOR = putty PUTTY_CONF_OPTS = --disable-gtktest PUTTY_CONF_ENV = CFLAGS="$(TARGET_CFLAGS) -Wno-error" +# Windows only, fixed for Windows with 0.75 +PUTTY_IGNORE_CVES += CVE-2021-33500 + ifeq ($(BR2_PACKAGE_LIBGTK2),y) PUTTY_CONF_OPTS += --with-gtk=2 PUTTY_DEPENDENCIES += libgtk2