mirror of
https://gitlab.com/buildroot.org/buildroot.git
synced 2026-08-09 17:03:35 -09:00
36f1cafd5e88c6f5bfd03f6dad176122f9291534
In Buildroot there are multiple way to apply patches on a package [1] - Adding `.patch` file in the package directory. - Define `<pkg>_PATCH` variable with the location of the patch tar.gz. It used to download Debian patches tarball. - Implement custom patching logic with `PRE`/`POST` patches hooks. To make the CycloneDX SBOM generation not dependant on downloading the packages, the two last options have the downside of not appearing on the generated SBOM. The heirloom-mailx package is downloading a tarball from the Debian mirror with the `<pkg>_PATCH` method [2]. To improve the tracking of the patched vulnerabilities for the heirloom-mailx package this commit import the patches previously downloaded with the `_PATCH` variable in the Buildroot tree. This allows to add the `CVE:` trailer [3] on the patches that fix vulnerabilities to better track which patch is fixing the vulnerability. [1] https://buildroot.org/downloads/manual/manual.html#patch-policy [2] http://snapshot.debian.org/archive/debian/20150815T155609Z/pool/main/h/heirloom-mailx/heirloom-mailx_12.5-5.debian.tar.xz [3]1167d0ff3ddocs/manual: mention CVE trailer Signed-off-by: Thomas Perale <thomas.perale@mind.be> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com> (cherry picked from commitc9659fd9e8) Signed-off-by: Thomas Perale <thomas.perale@mind.be>
…
…
…
Buildroot is a simple, efficient and easy-to-use tool to generate embedded Linux systems through cross-compilation. The documentation can be found in docs/manual. You can generate a text document with 'make manual-text' and read output/docs/manual/manual.text. Online documentation can be found at https://buildroot.org/docs.html To build and use the buildroot stuff, do the following: 1) run 'make menuconfig' 2) select the target architecture and the packages you wish to compile 3) run 'make' 4) wait while it compiles 5) find the kernel, bootloader, root filesystem, etc. in output/images You do not need to be root to build or run buildroot. Have fun! Buildroot comes with a basic configuration for a number of boards. Run 'make list-defconfigs' to view the list of provided configurations. Please feed suggestions, bug reports, insults, and bribes back to the buildroot mailing list: buildroot@buildroot.org You can also find us on #buildroot on OFTC IRC. If you would like to contribute patches, please read https://buildroot.org/manual.html#submitting-patches
Description
Languages
Makefile
62.6%
Python
18.8%
C
8.5%
Shell
6.1%
PHP
1.4%
Other
2.2%