[Buildroot] [PATCH/stable] package/putty: Ignore CVE-2021-33500

Peter Korsgaard peter at korsgaard.com
Tue Jun 8 06:35:47 UTC 2021


>>>>> "Alexander" == Alexander Dahl <post at lespocky.de> writes:

 > Hello everyone,
 > since I get autobuilder warning mails every Monday for CVE-2021-33500
 > now, I kindly wanted to ask, if this is the right approach?

 > That CVE only affects Windows, master has putty 0.75 which has that
 > fixed already. So I thought it would not be necessary to backport 0.75
 > to the stable branch(es), but ignore that CVE in stable branches only?

Yes, that is fine. Sorry, I am running a bit behind on the LTS
backports, but I will get to it this week.

Thanks.

-- 
Bye, Peter Korsgaard



More information about the buildroot mailing list