浏览代码

package/fail2ban: drop CVE-2021-32749 from IGNORE_CVES

CVE-2021-32749 affects fail2ban <= 0.9.7, 0.10.0 through 0.10.6, and
0.11.0 through 0.11.2.
The mentioned patch was removed in 76853089 when bumping to 1.0.1.

Signed-off-by: Daniel Lang <dalang@gmx.at>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
(cherry picked from commit a01a6b8dc840eb99528d3c876d18e1f8952d2a58)
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Daniel Lang 1 年之前
父节点
当前提交
bd82856138
共有 1 个文件被更改,包括 0 次插入3 次删除
  1. 0 3
      package/fail2ban/fail2ban.mk

+ 0 - 3
package/fail2ban/fail2ban.mk

@@ -12,9 +12,6 @@ FAIL2BAN_CPE_ID_VENDOR = fail2ban
 FAIL2BAN_SELINUX_MODULES = fail2ban
 FAIL2BAN_SETUP_TYPE = distutils
 
-# 0001-fixed-possible-RCE-vulnerability-unset-escape-variable.patch
-FAIL2BAN_IGNORE_CVES += CVE-2021-32749
-
 define FAIL2BAN_PYTHON_2TO3
 	$(HOST_DIR)/bin/2to3 --write --nobackups --no-diffs $(@D)/bin/* $(@D)/fail2ban
 endef