[Buildroot] [git commit] package/speechd: set CPE_ID_VENDOR (to silence mismatched CVE warning)

Yann E. MORIN yann.morin.1998 at free.fr
Mon Apr 29 12:06:31 UTC 2024


commit: https://git.buildroot.net/buildroot/commit/?id=206527347c1f63d24d871bf5dcb065861bd1c2a4
branch: https://git.buildroot.net/buildroot/commit/?id=refs/heads/master

- set CPE_ID_VENDOR to silence mismatched CVE-2001-0956 ([1], [2]) warning
  clearly aiming some other product/version ("speechd 0.54 with Festival or
  rsynth speech synthesis package")

[1] https://security-tracker.debian.org/tracker/CVE-2001-0956
[2] https://github.com/advisories/GHSA-67cw-4jhh-3jm7

Signed-off-by: Peter Seiderer <ps.report at gmx.net>
Signed-off-by: Yann E. MORIN <yann.morin.1998 at free.fr>
---
 package/speechd/speechd.mk | 1 +
 1 file changed, 1 insertion(+)

diff --git a/package/speechd/speechd.mk b/package/speechd/speechd.mk
index 7d50f88c1d..669bec0634 100644
--- a/package/speechd/speechd.mk
+++ b/package/speechd/speechd.mk
@@ -8,6 +8,7 @@ SPEECHD_VERSION = 0.11.5
 SPEECHD_SITE = $(call github,brailcom,speechd,$(SPEECHD_VERSION))
 SPEECHD_LICENSE = GPL-2.0+, GPL-3.0+ (buildsystem), LGPL-2.1+
 SPEECHD_LICENSE_FILES = COPYING.GPL-2 COPYING.GPL-3 COPYING.LGPL
+SPEECHD_CPE_ID_VENDOR = brailcom
 SPEECHD_INSTALL_STAGING = YES
 # speechd source code is released without configure script
 SPEECHD_AUTORECONF = YES



More information about the buildroot mailing list