Re: [Buildroot] [PATCH 1/3] boot/arm-trusted-firmware: fix CPE
Julien Olivain via buildroot <[email protected]>
| Newsgroups | net.busybox.buildroot |
|---|---|
| Message-ID | <[email protected]> |
On 25/06/2026 17:37, Quentin Schulz via buildroot wrote: > From: Quentin Schulz <[email protected]> > > A new (and hopefully definitive) CPE is to be used for TF-A: > > cpe:2.3:o:trustedfirmware:trusted_firmware-a: > > as reported in TF-A directly[1]. NVD correctly reports[2] the new CPE > deprecates the "old" one Buildroot was using. > > CVEs for projects under the TrustedFirmware umbrella are now seemingly > handled under the CPE vendor "trustedfirmware". > > [1] > https://review.trustedfirmware.org/plugins/gitiles/TF-A/trusted-firmware-a/+/efd7b189fa259c349699957462c7b52bf640e27b%5E%21/ > [2] > https://nvd.nist.gov/products/cpe/detail/2E1BD3E8-DF65-42E3-A0BA-747137D6DEF2 > Signed-off-by: Quentin Schulz <[email protected]> Series applied to master, thanks. _______________________________________________ buildroot mailing list [email protected] https://lists.buildroot.org/mailman/listinfo/buildroot