[{"id":3669181,"web_url":"http://patchwork.ozlabs.org/comment/3669181/","msgid":"<ae06ae1d-7bf6-4668-a8fe-2c96e92b1ad6@cherry.de>","list_archive_url":null,"date":"2026-03-25T16:11:42","subject":"Re: [Buildroot] [PATCH] package/arm-trusted-firmware: add\n ARM_TRUSTED_FIRMWARE_CPE_ID_*","submitter":{"id":88462,"url":"http://patchwork.ozlabs.org/api/people/88462/","name":"Quentin Schulz","email":"quentin.schulz@cherry.de"},"content":"Hi Heiko,\n\nOn 3/25/26 4:03 PM, Heiko Stuebner wrote:\n> From: Heiko Stuebner <heiko.stuebner@cherry.de>\n> \n> Trusted-Firmware has been using a number of CPE identifiers in the past\n> but especially after v2.4, the correct identifier would be similar\n> to cpe:2.3:o:arm:trusted_firmware-a:2.12:rc0:*:*:-:*:*:*\n> \n>    https://nvd.nist.gov/products/cpe/detail/65DEC230-1CD5-40DB-903A-22537D1E44FE\n> \n> Add the relevant CPE fields to the trusted-firmware package.\n> \n\nmeta-arm (the official Yocto layer from Arm themselves) reports 4 \npossible CPEs (c.f. \nhttps://git.yoctoproject.org/meta-arm/commit/meta-arm/recipes-bsp/trusted-firmware-a/trusted-firmware-a.inc?id=067a259cbd5ad4d2a8c2b4ea2cff5acdc126ccd2), \nTF-A source code adds yet another one, c.f. \nhttps://review.trustedfirmware.org/plugins/gitiles/TF-A/trusted-firmware-a/+/refs/heads/master/docs/sbom.cdx.json.\n\nAs far as I could tell, only two CPEs have been used so far. I've sent a \nrequest to NVD to merge existing CPEs (and/or add all existing CPEs to \nexisting CVEs such that looking for one CPE will return all applicable \nCVEs). I've sent a patch \n(https://review.trustedfirmware.org/c/TF-A/trusted-firmware-a/+/49486) \nto TF-A to fix the CycloneDX to avoid yet another CPE to appear (but \nsince it's been in releases since v2.13, maybe it's \"too late\" and \nsomeone in the future will use that CPE and NVD won't correct it before \npublishing /me shrugs).\n\ncpe:2.3:o:arm:trusted_firmware-a: indeed seems to be the one people now \nuse to report CVEs as it contains the two newest CVEs for TF-A (the \nother CPE with CVEs haven't seen a new one since 2017).\n\nYocto supports the SPDX v3 format which allows to specify multiple CPEs \n(externalIdentifier) per Software Package. CycloneDX doesn't though... \nSo I am wondering what's the plan on Buildroot-side here?\n\nOP-TEE OS also has multiple CPEs... meta-arm Yocto layer reports \nlinaro:op-tee and op-tee:op-tee_os. Ugh...\n\nAnyway, this looks fine to me so:\n\nReviewed-by: Quentin Schulz <quentin.schulz@cherry.de>\n\nThanks!\nQuentin","headers":{"Return-Path":"<buildroot-bounces@buildroot.org>","X-Original-To":["incoming-buildroot@patchwork.ozlabs.org","buildroot@buildroot.org"],"Delivered-To":["patchwork-incoming-buildroot@legolas.ozlabs.org","buildroot@buildroot.org"],"Authentication-Results":["legolas.ozlabs.org;\n\tdkim=pass (2048-bit key;\n unprotected) header.d=buildroot.org header.i=@buildroot.org\n header.a=rsa-sha256 header.s=default header.b=faaicGhc;\n\tdkim-atps=neutral","legolas.ozlabs.org;\n spf=pass (sender SPF authorized) smtp.mailfrom=buildroot.org\n (client-ip=140.211.166.137; helo=smtp4.osuosl.org;\n envelope-from=buildroot-bounces@buildroot.org; receiver=patchwork.ozlabs.org)"],"Received":["from smtp4.osuosl.org (smtp4.osuosl.org [140.211.166.137])\n\t(using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)\n\t key-exchange x25519 server-signature ECDSA (secp384r1) server-digest SHA384)\n\t(No client certificate requested)\n\tby legolas.ozlabs.org (Postfix) with ESMTPS id 4fgsNt2W2nz1y1K\n\tfor <incoming-buildroot@patchwork.ozlabs.org>;\n Thu, 26 Mar 2026 03:11:58 +1100 (AEDT)","from localhost (localhost [127.0.0.1])\n\tby smtp4.osuosl.org (Postfix) with ESMTP id 570E340B61;\n\tWed, 25 Mar 2026 16:11:55 +0000 (UTC)","from smtp4.osuosl.org ([127.0.0.1])\n by localhost (smtp4.osuosl.org [127.0.0.1]) (amavis, port 10024) with ESMTP\n id RyTHb8FA59_l; Wed, 25 Mar 2026 16:11:54 +0000 (UTC)","from lists1.osuosl.org (lists1.osuosl.org [140.211.166.142])\n\tby smtp4.osuosl.org (Postfix) with ESMTP id 572EC40B73;\n\tWed, 25 Mar 2026 16:11:54 +0000 (UTC)","from smtp4.osuosl.org (smtp4.osuosl.org [140.211.166.137])\n by lists1.osuosl.org (Postfix) with ESMTP id B527DF5\n for <buildroot@buildroot.org>; Wed, 25 Mar 2026 16:11:52 +0000 (UTC)","from localhost (localhost [127.0.0.1])\n by smtp4.osuosl.org (Postfix) with ESMTP id 9B3F340A39\n for <buildroot@buildroot.org>; Wed, 25 Mar 2026 16:11:52 +0000 (UTC)","from smtp4.osuosl.org ([127.0.0.1])\n by localhost (smtp4.osuosl.org [127.0.0.1]) (amavis, port 10024) with ESMTP\n id OIXdLVqM3qi5 for <buildroot@buildroot.org>;\n Wed, 25 Mar 2026 16:11:51 +0000 (UTC)","from AS8PR04CU009.outbound.protection.outlook.com\n (mail-westeuropeazlp170110003.outbound.protection.outlook.com\n [IPv6:2a01:111:f403:c201::3])\n by smtp4.osuosl.org (Postfix) with ESMTPS id 7F8B740A26\n for <buildroot@buildroot.org>; Wed, 25 Mar 2026 16:11:49 +0000 (UTC)","from GVXPR04MB12038.eurprd04.prod.outlook.com (2603:10a6:150:2be::5)\n by VE1PR04MB7485.eurprd04.prod.outlook.com (2603:10a6:800:1a6::5)\n with Microsoft SMTP Server (version=TLS1_2,\n cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.9723.31; Wed, 25 Mar\n 2026 16:11:43 +0000","from GVXPR04MB12038.eurprd04.prod.outlook.com\n ([fe80::6c04:8947:f2f0:5e78]) by GVXPR04MB12038.eurprd04.prod.outlook.com\n ([fe80::6c04:8947:f2f0:5e78%6]) with mapi id 15.20.9723.030; Wed, 25 Mar 2026\n 16:11:43 +0000"],"X-Virus-Scanned":["amavis at osuosl.org","amavis at osuosl.org"],"X-Comment":"SPF check N/A for local connections - client-ip=140.211.166.142;\n helo=lists1.osuosl.org; envelope-from=buildroot-bounces@buildroot.org;\n receiver=<UNKNOWN> ","DKIM-Filter":["OpenDKIM Filter v2.11.0 smtp4.osuosl.org 572EC40B73","OpenDKIM Filter v2.11.0 smtp4.osuosl.org 7F8B740A26"],"DKIM-Signature":"v=1; a=rsa-sha256; c=relaxed/relaxed; d=buildroot.org;\n\ts=default; t=1774455114;\n\tbh=58K1Nr770fMzfOqNpNVMXtwjiszhe48xmM3cQAtcVwg=;\n\th=Date:To:Cc:References:In-Reply-To:Subject:List-Id:\n\t List-Unsubscribe:List-Archive:List-Post:List-Help:List-Subscribe:\n\t From:Reply-To:From;\n\tb=faaicGhc7D94VaTdzJzZgX1mUqMOPDnxn+7WWBFnDbGxZRXNhw5q4DSU9tzFJjr3L\n\t tKp7YKq4OzLAVX7PPgIC0WVoFvjF2iZvNkfH4SimqsbOcq6yAc/jImRUBnPcyRU8Sv\n\t 7Tkfd/EbkLEOJRV7m3FLlM9e/mnh+hD3pRn3oiuyimy/0oCbhs2OpFsOA/WFTRq4h0\n\t lodLpWbY2rjbEA1qyY2FWOr3pC9IuW8KIDDyxJzLMcTQe1oewp4l3l1fq3nwc1EDa3\n\t pEKF+Up2rkibm+NET5VTVqJyyYylAR1wjkQkFAwBB5HRt4i3mMCqHOZloyAIoJlj/v\n\t creCxBtlJf9UA==","Received-SPF":"Pass (mailfrom) identity=mailfrom;\n client-ip=2a01:111:f403:c201::3;\n helo=as8pr04cu009.outbound.protection.outlook.com;\n envelope-from=quentin.schulz@cherry.de; receiver=<UNKNOWN>","DMARC-Filter":"OpenDMARC Filter v1.4.2 smtp4.osuosl.org 7F8B740A26","ARC-Seal":"i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none;\n b=ftMn+iItRr6RKnmN65kCNNpzsgdw+wWGnna62HJGqGxHR6AQcd5KuNX0vx+2VN3dO4rfA/nlPpovcFjGoiNJXQZPW7fYG2+oH8H7hvq4RxnoYPhITSk8L6QZ61gcM9YHJWRFglcNLIJd0zppJzY6+DQSC1r5hec+eaYThRiMyGbqdujPXkynsO7lxuPvFEHFAUCH2XRsndwdJRxZxUIoZhvoexQEnbr59Da45q0ATatRNFRlmL3Io607cxqHEpAm3MjAA4wByOct81amFeEZbmufSUkIvMWqX5Yck+oq0F+gg3ki9LPvSP38W+N5LbOXjvYIqwx+9QIda1tOa1ePxA==","ARC-Message-Signature":"i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com;\n s=arcselector10001;\n h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1;\n bh=4gY8yF4KzRaexM0MVxISmfhlHUaONNtZ0ZCZgpZ5xSw=;\n b=MKDLXRveMPy5Swh9DBxcILHMJt8rQPpg4tBgikAj2+WrbpwFiDsW2lB42knuV6RUr3sM+EUo5wTC1SWgs92LnuOO9mCAjpP00TX5T/FjSYQTVGpvDTVV7wLw0YEqcyUiHfIn+mPg+4qQbzElFCMUg8K4fPmtPKQ+J1lhf9SiWZSTXSWJhs8Il2zbYuUHbPphPcqXv/qaKuQuo2fn4XmShfUf+1B3xtnUBSLexzARpvVEAeNV3mQ2d2RuSGwGJ8CHbP2WLzzd9bYTD8tG8UyKmGIF/OfB4N7GzULm8Cqo7fcTw/LfAJmo2HN4or++/kHeMgj4p4k3L6rKCdnPYSkM1g==","ARC-Authentication-Results":"i=1; mx.microsoft.com 1; spf=pass\n smtp.mailfrom=cherry.de; dmarc=pass action=none header.from=cherry.de;\n dkim=pass header.d=cherry.de; arc=none","Message-ID":"<ae06ae1d-7bf6-4668-a8fe-2c96e92b1ad6@cherry.de>","Date":"Wed, 25 Mar 2026 17:11:42 +0100","User-Agent":"Mozilla Thunderbird","To":"Heiko Stuebner <heiko@sntech.de>, buildroot@buildroot.org","Cc":"Etienne Carriere <etienne.carriere@foss.st.com>,\n Heiko Stuebner <heiko.stuebner@cherry.de>","References":"<20260325150346.414826-1-heiko@sntech.de>","Content-Language":"en-US","In-Reply-To":"<20260325150346.414826-1-heiko@sntech.de>","X-ClientProxiedBy":"VI1PR07CA0140.eurprd07.prod.outlook.com\n (2603:10a6:802:16::27) To GVXPR04MB12038.eurprd04.prod.outlook.com\n (2603:10a6:150:2be::5)","MIME-Version":"1.0","X-MS-PublicTrafficType":"Email","X-MS-TrafficTypeDiagnostic":"GVXPR04MB12038:EE_|VE1PR04MB7485:EE_","X-MS-Office365-Filtering-Correlation-Id":"46e84ff6-a41b-4f37-bb4f-08de8a8934aa","X-MS-Exchange-SenderADCheck":"1","X-MS-Exchange-AntiSpam-Relay":"0","X-Microsoft-Antispam":"BCL:0;\n ARA:13230040|1800799024|376014|366016|18002099003|22082099003|56012099003;","X-Microsoft-Antispam-Message-Info":"\n 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","X-Forefront-Antispam-Report":"CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:;\n IPV:NLI; SFV:NSPM; H:GVXPR04MB12038.eurprd04.prod.outlook.com; PTR:;\n CAT:NONE;\n SFS:(13230040)(1800799024)(376014)(366016)(18002099003)(22082099003)(56012099003);\n DIR:OUT; SFP:1101;","X-MS-Exchange-AntiSpam-MessageData-ChunkCount":"1","X-MS-Exchange-AntiSpam-MessageData-0":"=?utf-8?q?iijL2aDb92TWWZ0UT289bKsNVHBJ?=\n\t=?utf-8?q?L1M+NFzXJsKIvHm2Uid2DgYzpziZPYo9AF9eA7f9BzCr2poHT8RmiIknQc2gUEUPf?=\n\t=?utf-8?q?uYGY5uARLmFJJ82w4+lZbKruAXDgJlbLkZpnX/ZK8ICXsiJZrd/Z10unu+MCpVwdU?=\n\t=?utf-8?q?HOcn6MhNhBIWlvkTAnk8aOmG9cJ29hJYIdyR3jrv4VJoNCRfN+dyuXPceJ5F1SAkF?=\n\t=?utf-8?q?QJfkbwx+JBvbRE4GiBux90a4ra/IsTv6F2Pm9NrkEmfWK6o1JQ0+5qEpUZXv2rMtH?=\n\t=?utf-8?q?8AdVfvdEy+K3MLtp8oZsJHa9wlxzs7RJp1sAIiyDMRZSWn0dQcfE5KC6Vdct2azIf?=\n\t=?utf-8?q?p8zbEKrnr2WZlsZA0xpONrIVxMlyGW/jOUHVgTA4yq6eTrPxFtX3G9qoTLiQs0CR1?=\n\t=?utf-8?q?GajShw/7rObMS9oRl71IeuDgeLybsoYjTZJ6RpkeBJbHV328e4xY8RqpHEbuLoHz0?=\n\t=?utf-8?q?3qWf6EJqBxmyzOKQuV0d5rdGD7k/tL++O3LTs7JWFHwyEm19r31Psj6cy9LLBUBbs?=\n\t=?utf-8?q?opTQnrxx/BBU9T4B/OX2WfbQ1w5MGRlyRa/VESriIc8ozEI21sHwmIETxXHvPo1Yx?=\n\t=?utf-8?q?tq+DL1+uPQxyrgRBB4Nv/VpEwxhYvUbJ0aL1wDU5HpjuDib44hBwVkRPao3DB8RCJ?=\n\t=?utf-8?q?VpAgbw2Cr+noxNOSnHv3SnoiBw91fwIzNMlS5wdUUvOlsWpoKbjXOZYpbp53dCTxU?=\n\t=?utf-8?q?rE4YyhIzH0x4+hZMQPNjuNCJywOMu2WxZGw7yvyDkXtrw46MCCa94CY5eex4VaBtC?=\n\t=?utf-8?q?RqC04DIE7tfjEbqlJlQuBi1tBUPtexUruje9qsfzzxMPa06BkslsejhjpoMxsRHlh?=\n\t=?utf-8?q?83x0kn2KuX/XYrl3iemTukfTDSaH2mjUt5amLlkoMn+elT6XiJbIIalwIHTDZ+66A?=\n\t=?utf-8?q?OjyxhYA/NHC9m/sYjfFZ4OYEindOxO1EoPtEzRltU0iF691uA572CJP3tY85tHzjz?=\n\t=?utf-8?q?17GoF1dBcjACdV+0Sxqe7agH71Uob1BY951g87AXm8sx4nPQ9FIk328wn6DCC6kuM?=\n\t=?utf-8?q?Z76FPabud7xqpRwPWKXyCTKt1mF+GXO/CyEDK/hLvGPtmqJfsbuWh2QTrmPZq7sXv?=\n\t=?utf-8?q?JhMLZYiG/j/xlENCDaKL42CuVSFzbF89deoBauT4mFd3bvRji0dqFJ/hlosG3tazG?=\n\t=?utf-8?q?02GyF4xVmOgCwpjVvGzCvRReWe88OoCsfxX/CO+8CMZ4igrTI2bWwKL76vN045Q8p?=\n\t=?utf-8?q?DSs+7jhIawDgGRfbryqfiDtVdl+xwlSQwuRf9MPH4TsLuVqtMcPllVp/fNdMcMcqD?=\n\t=?utf-8?q?AitLmHuk5dR9AX8Ww83qIugTEid43bX30DP/Efb7nl204g8fVyD4UK/+kHXdzD6Sy?=\n\t=?utf-8?q?pcmekne9LsQj/2RrJQBL6ZjZH2UZl1i3+NeDwB06TYomCnQQk/tfXn8hwg3q/fReE?=\n\t=?utf-8?q?6coPuUoCqLyQQ+gwiCmNtPHVPN+iPZGgVxEG9mZZLWauUcPQuAdlE2CbwPWdieU3B?=\n\t=?utf-8?q?c7wOdUMiWQDsji1lIPRsGoF/2cpfGeH+unSPQnMGXcD1BxftczUz0LFNIwuaer8OS?=\n\t=?utf-8?q?0MUOzXFWYjd9oo/9/YwkuRI2DaBt/rJi4XGkdcyLLWYjRm7ht6hJgZihYwRLXZOxK?=\n\t=?utf-8?q?eI9rcLTaaZbyqhwcB9SFLmponnoqFMQ7OmczPTy01PXpsZw7OCKp+ZmuAyL+zNTLf?=\n\t=?utf-8?q?qzp8V1DB815RetSn/eo+i28PVkIvxUtQ=3D=3D?=","X-OriginatorOrg":"cherry.de","X-MS-Exchange-CrossTenant-Network-Message-Id":"\n 46e84ff6-a41b-4f37-bb4f-08de8a8934aa","X-MS-Exchange-CrossTenant-AuthSource":"GVXPR04MB12038.eurprd04.prod.outlook.com","X-MS-Exchange-CrossTenant-AuthAs":"Internal","X-MS-Exchange-CrossTenant-OriginalArrivalTime":"25 Mar 2026 16:11:43.3144 (UTC)","X-MS-Exchange-CrossTenant-FromEntityHeader":"Hosted","X-MS-Exchange-CrossTenant-Id":"5e0e1b52-21b5-4e7b-83bb-514ec460677e","X-MS-Exchange-CrossTenant-MailboxType":"HOSTED","X-MS-Exchange-CrossTenant-UserPrincipalName":"\n trqXRL1Xd+FsE0NcL255aoGS1iDkxNyzdNlMSVY58p3xSbCevgi1Iwx0PBh2qyE7TFrOTd/vxGPmKU0+0pvFF27/NZZ7m00OgOkA+PyKqZo=","X-MS-Exchange-Transport-CrossTenantHeadersStamped":"VE1PR04MB7485","X-Mailman-Original-DKIM-Signature":"v=1; a=rsa-sha256; c=relaxed/relaxed;\n d=cherry.de; s=selector1;\n h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck;\n bh=4gY8yF4KzRaexM0MVxISmfhlHUaONNtZ0ZCZgpZ5xSw=;\n b=RtYN/DNdjrAEN44NEAriQIVPrqJo45kXt+SEFwMfHz6+tV7VezJ84sgURa4EJdhXAzFzzAFZodQjb7ebSZBqWcBkIzk5WYWTY4cGHAY/8H/VaxIXiPm05gU8yaUZnCAPRLM87PS1nHx4iA11ZurmNJ6zjtfsBIbYyoFSd2y3voE=","X-Mailman-Original-Authentication-Results":["smtp4.osuosl.org;\n dmarc=pass (p=quarantine dis=none)\n header.from=cherry.de","smtp4.osuosl.org;\n dkim=pass (1024-bit key,\n unprotected) header.d=cherry.de header.i=@cherry.de header.a=rsa-sha256\n header.s=selector1 header.b=RtYN/DNd","dkim=none (message not signed)\n header.d=none;dmarc=none action=none header.from=cherry.de;"],"Subject":"Re: [Buildroot] [PATCH] package/arm-trusted-firmware: add\n ARM_TRUSTED_FIRMWARE_CPE_ID_*","X-BeenThere":"buildroot@buildroot.org","X-Mailman-Version":"2.1.30","Precedence":"list","List-Id":"Discussion and development of buildroot <buildroot.buildroot.org>","List-Unsubscribe":"<https://lists.buildroot.org/mailman/options/buildroot>,\n <mailto:buildroot-request@buildroot.org?subject=unsubscribe>","List-Archive":"<http://lists.buildroot.org/pipermail/buildroot/>","List-Post":"<mailto:buildroot@buildroot.org>","List-Help":"<mailto:buildroot-request@buildroot.org?subject=help>","List-Subscribe":"<https://lists.buildroot.org/mailman/listinfo/buildroot>,\n <mailto:buildroot-request@buildroot.org?subject=subscribe>","From":"Quentin Schulz via buildroot <buildroot@buildroot.org>","Reply-To":"Quentin Schulz <quentin.schulz@cherry.de>","Content-Transfer-Encoding":"7bit","Content-Type":"text/plain; charset=\"us-ascii\"; Format=\"flowed\"","Errors-To":"buildroot-bounces@buildroot.org","Sender":"\"buildroot\" <buildroot-bounces@buildroot.org>"}},{"id":3669261,"web_url":"http://patchwork.ozlabs.org/comment/3669261/","msgid":"<d728395d-316b-4ab6-be7e-bba218dcf31a@cherry.de>","list_archive_url":null,"date":"2026-03-25T18:12:33","subject":"Re: [Buildroot] [PATCH] package/arm-trusted-firmware: add\n ARM_TRUSTED_FIRMWARE_CPE_ID_*","submitter":{"id":88462,"url":"http://patchwork.ozlabs.org/api/people/88462/","name":"Quentin Schulz","email":"quentin.schulz@cherry.de"},"content":"Hi Heiko,\n\nOn 3/25/26 4:03 PM, Heiko Stuebner wrote:\n> From: Heiko Stuebner <heiko.stuebner@cherry.de>\n> \n> Trusted-Firmware has been using a number of CPE identifiers in the past\n> but especially after v2.4, the correct identifier would be similar\n> to cpe:2.3:o:arm:trusted_firmware-a:2.12:rc0:*:*:-:*:*:*\n> \n>    https://nvd.nist.gov/products/cpe/detail/65DEC230-1CD5-40DB-903A-22537D1E44FE\n> \n> Add the relevant CPE fields to the trusted-firmware package.\n> \n\nThinking about it a bit more, I **think** we may want to strip lts- \nprefix for the CPE_ID_VERSION. I don't see any version past 2.4 on NVD \nso we cannot really know what they'll do once they need to tackle LTSes, \nbut I am assuming they are NOT going to use the lts- prefix?\n\nWhat do you think?\n\nCheers,\nQuentin","headers":{"Return-Path":"<buildroot-bounces@buildroot.org>","X-Original-To":["incoming-buildroot@patchwork.ozlabs.org","buildroot@buildroot.org"],"Delivered-To":["patchwork-incoming-buildroot@legolas.ozlabs.org","buildroot@buildroot.org"],"Authentication-Results":["legolas.ozlabs.org;\n\tdkim=pass (2048-bit key;\n unprotected) header.d=buildroot.org header.i=@buildroot.org\n header.a=rsa-sha256 header.s=default header.b=rFsnVerb;\n\tdkim-atps=neutral","legolas.ozlabs.org;\n spf=pass (sender SPF authorized) smtp.mailfrom=buildroot.org\n (client-ip=140.211.166.136; helo=smtp3.osuosl.org;\n envelope-from=buildroot-bounces@buildroot.org; receiver=patchwork.ozlabs.org)"],"Received":["from smtp3.osuosl.org (smtp3.osuosl.org [140.211.166.136])\n\t(using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)\n\t key-exchange x25519 server-signature ECDSA (secp384r1) server-digest SHA384)\n\t(No client certificate requested)\n\tby legolas.ozlabs.org (Postfix) with ESMTPS id 4fgw4H04jmz1y1K\n\tfor <incoming-buildroot@patchwork.ozlabs.org>;\n Thu, 26 Mar 2026 05:12:46 +1100 (AEDT)","from localhost (localhost [127.0.0.1])\n\tby smtp3.osuosl.org (Postfix) with ESMTP id 2D8FD6138C;\n\tWed, 25 Mar 2026 18:12:44 +0000 (UTC)","from smtp3.osuosl.org ([127.0.0.1])\n by localhost (smtp3.osuosl.org [127.0.0.1]) (amavis, port 10024) with ESMTP\n id 5pQiNg3CHYO6; Wed, 25 Mar 2026 18:12:42 +0000 (UTC)","from lists1.osuosl.org (lists1.osuosl.org [140.211.166.142])\n\tby smtp3.osuosl.org (Postfix) with ESMTP id 5865160855;\n\tWed, 25 Mar 2026 18:12:42 +0000 (UTC)","from smtp3.osuosl.org (smtp3.osuosl.org [140.211.166.136])\n by lists1.osuosl.org (Postfix) with ESMTP id 6B0151D3\n for <buildroot@buildroot.org>; Wed, 25 Mar 2026 18:12:40 +0000 (UTC)","from localhost (localhost [127.0.0.1])\n by smtp3.osuosl.org (Postfix) with ESMTP id 5BCE360855\n for <buildroot@buildroot.org>; Wed, 25 Mar 2026 18:12:40 +0000 (UTC)","from smtp3.osuosl.org ([127.0.0.1])\n by localhost (smtp3.osuosl.org [127.0.0.1]) (amavis, port 10024) with ESMTP\n id dM-nL0dlNLRC for <buildroot@buildroot.org>;\n Wed, 25 Mar 2026 18:12:39 +0000 (UTC)","from DUZPR83CU001.outbound.protection.outlook.com\n (mail-northeuropeazlp170120005.outbound.protection.outlook.com\n [IPv6:2a01:111:f403:c200::5])\n by smtp3.osuosl.org (Postfix) with ESMTPS id 4F94F607F2\n for <buildroot@buildroot.org>; Wed, 25 Mar 2026 18:12:38 +0000 (UTC)","from GVXPR04MB12038.eurprd04.prod.outlook.com (2603:10a6:150:2be::5)\n by AM0PR04MB12098.eurprd04.prod.outlook.com (2603:10a6:20b:743::16)\n with Microsoft SMTP Server (version=TLS1_2,\n cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.9723.31; Wed, 25 Mar\n 2026 18:12:34 +0000","from GVXPR04MB12038.eurprd04.prod.outlook.com\n ([fe80::6c04:8947:f2f0:5e78]) by GVXPR04MB12038.eurprd04.prod.outlook.com\n ([fe80::6c04:8947:f2f0:5e78%6]) with mapi id 15.20.9723.030; Wed, 25 Mar 2026\n 18:12:34 +0000"],"X-Virus-Scanned":["amavis at osuosl.org","amavis at osuosl.org"],"X-Comment":"SPF check N/A for local connections - client-ip=140.211.166.142;\n helo=lists1.osuosl.org; envelope-from=buildroot-bounces@buildroot.org;\n receiver=<UNKNOWN> ","DKIM-Filter":["OpenDKIM Filter v2.11.0 smtp3.osuosl.org 5865160855","OpenDKIM Filter v2.11.0 smtp3.osuosl.org 4F94F607F2"],"DKIM-Signature":"v=1; a=rsa-sha256; c=relaxed/relaxed; d=buildroot.org;\n\ts=default; t=1774462362;\n\tbh=/yD6NxZLMShFJPNCUcyftrIl0PtZOaqCPq1U/SkAsrE=;\n\th=Date:To:Cc:References:In-Reply-To:Subject:List-Id:\n\t List-Unsubscribe:List-Archive:List-Post:List-Help:List-Subscribe:\n\t From:Reply-To:From;\n\tb=rFsnVerb5AmpglwHwp9fuhMiPOSUa4uoMFcy8pnnLIiD+B55zE7rzRM4MLHMaD+SG\n\t HA+xMH/kGnSgtrHwgVfJxhrrcNy0eLIP+2pGe3BL5DYnNDGzxuBWJtc7LpFlWJOwiq\n\t IMKJpcfdnb2rNMSvbeTEL7BcUNHZslS3vKUzz+w+S1gPbtTMcb/0hOQfcrNJyjEeik\n\t L3zkYEM5PCxsTQxabOvGebRbct6MqAh7hENTfyxx9eM1rv0ffvo3YJkkF29dFWvgmL\n\t 10cubiVMDNZZmKt0o1693N7szz56UVpTwyoMAdmieFuTib19KpVWbVcT/oL6O0wWZD\n\t XXqFjnp+tqprw==","Received-SPF":"Pass (mailfrom) identity=mailfrom;\n client-ip=2a01:111:f403:c200::5;\n helo=duzpr83cu001.outbound.protection.outlook.com;\n envelope-from=quentin.schulz@cherry.de; receiver=<UNKNOWN>","DMARC-Filter":"OpenDMARC Filter v1.4.2 smtp3.osuosl.org 4F94F607F2","ARC-Seal":"i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none;\n b=KsLsYPjJmz0vuhJCJzuybDjwZQfloUCRWIlp5Be/2RESP/+J08aZnnuaniU11590T7J7xdkqdHpDu4mbin5AaGAGpn/D5Q7YhpPQ5YufnxUbUXAoxnqmh19qrT/knULujvqgEydJqgsom59vVlxJ9fT8j9fhQPsGyEzYNZNEICTajkHBPBhRu3boRAI7kRF+XZ+12ZyXg8vUrhG2hxi5gLN+iFQtj/wgbnmkOoj+WyfZ2kKVYeGps/U3LEhtD2imis839hw3Fo5kUdTqEGMWZYv3rfwEezSnwf0rxyj/YOwbuvNK4OhnflP4xSNO5BsRItMNujapRhGUb90EnsMs/w==","ARC-Message-Signature":"i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com;\n s=arcselector10001;\n h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1;\n bh=gAD/3Hm/CB3wP2zGo7poWpDha2Upe93Mys9x9oO/tBk=;\n b=e+rBAcq3IwQjUxK8nrgG82NnirgTJm/AnWkEcdTHfn46LkD3wA0FXs+kRrCp+ln82xvjyDm4J1+8BBNsXfTkPH0FRtH8UdCHIbA0jRVBiPzE0zG46g4ZNnGtKHJGAOEC0/evPiki8dliUWT12V8pbeF/8XqYEmT5IWLMrey/UBn3pHHpcObRS+ivKvb9k40N6HtcWWpbP5eDXNcdDXIGBx1MW1z1e2HvhtwVmdkpt58KlF7gT41NXoETuyemctXuUqMXZRgU4lOmIsjhQQoHH/KueIEKDcYN5rpRcU1r4fwRd6l30ToEVw0MFjQW6LY+d0LxNRxz3CiKGBHwIU2Vtg==","ARC-Authentication-Results":"i=1; mx.microsoft.com 1; spf=pass\n smtp.mailfrom=cherry.de; dmarc=pass action=none header.from=cherry.de;\n dkim=pass header.d=cherry.de; arc=none","Message-ID":"<d728395d-316b-4ab6-be7e-bba218dcf31a@cherry.de>","Date":"Wed, 25 Mar 2026 19:12:33 +0100","User-Agent":"Mozilla Thunderbird","To":"Heiko Stuebner <heiko@sntech.de>, buildroot@buildroot.org","Cc":"Etienne Carriere <etienne.carriere@foss.st.com>,\n Heiko Stuebner <heiko.stuebner@cherry.de>","References":"<20260325150346.414826-1-heiko@sntech.de>","Content-Language":"en-US","In-Reply-To":"<20260325150346.414826-1-heiko@sntech.de>","X-ClientProxiedBy":"FR0P281CA0008.DEUP281.PROD.OUTLOOK.COM\n (2603:10a6:d10:15::13) To GVXPR04MB12038.eurprd04.prod.outlook.com\n (2603:10a6:150:2be::5)","MIME-Version":"1.0","X-MS-PublicTrafficType":"Email","X-MS-TrafficTypeDiagnostic":"GVXPR04MB12038:EE_|AM0PR04MB12098:EE_","X-MS-Office365-Filtering-Correlation-Id":"e8e0b309-f1dc-4eb9-3f51-08de8a9a168f","X-MS-Exchange-SenderADCheck":"1","X-MS-Exchange-AntiSpam-Relay":"0","X-Microsoft-Antispam":"BCL:0;\n ARA:13230040|1800799024|376014|366016|56012099003|18002099003|22082099003;","X-Microsoft-Antispam-Message-Info":"\n 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","X-Forefront-Antispam-Report":"CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:;\n IPV:NLI; SFV:NSPM; H:GVXPR04MB12038.eurprd04.prod.outlook.com; PTR:;\n CAT:NONE;\n SFS:(13230040)(1800799024)(376014)(366016)(56012099003)(18002099003)(22082099003);\n DIR:OUT; SFP:1101;","X-MS-Exchange-AntiSpam-MessageData-ChunkCount":"1","X-MS-Exchange-AntiSpam-MessageData-0":"=?utf-8?q?IH3GLrjEg20vCCbQGhixeAuaDUMR?=\n\t=?utf-8?q?qkfdIJVL3WjT73+nxx0sByV4vFmuuUl9/mv6kgBOI4J4ITokVPjigTxGjd4aAykxN?=\n\t=?utf-8?q?XDZwY68jARyzgDmumBPEQjvx9gC9+bYhspglss3bVjWIcD0Dmwd6w1nMbp8qmJ7Ik?=\n\t=?utf-8?q?iK436USSp0X2SRVzod0FT1JBbyX5m+O7U58b/n0qerkpSCZ4V6tEdvODzdP5Ta+qO?=\n\t=?utf-8?q?9aAKFrayDdHZoA5ERZ1lY73NRQeukl/3aC9of8wylgj81Z2Xr/sz3758EU10vwd1l?=\n\t=?utf-8?q?JW8b8qF3FDfARgK9xvpK2gPaSk4BdJHpf9gu6YicUoUSO1Gbi8cVWFTB0DG8ezg8d?=\n\t=?utf-8?q?cT9ztaWZ+q2TVezlhUKTxmfKeSKfXUwTlFznQdS7+OmJAfHajsAnpEEqgHpvD1biM?=\n\t=?utf-8?q?RmA+0ksCwFoIc7Gy05CoeLhXHAPrd7Ot6H9HSKt4HxC0RUmPkhJvqzrdKkJkYH5OD?=\n\t=?utf-8?q?0i7ubf2dijygsYvnt+n2bEaXcDkJUZ4V9lIadPCeMB+EMNULU9cQKPEifTjVdGFdm?=\n\t=?utf-8?q?5ABlfJKi7tI0E3mUq6hj1l4kCVhBUHOYS+x+nTRx29MJr9zPFTIoBl1pBddWP1IF4?=\n\t=?utf-8?q?BBVF3GkgfubGFaPTI9Eu52rxQXqxmBIKQxq+pzH09yWPIeKGNwNMVDqomqIVaO54L?=\n\t=?utf-8?q?PUPF/V5NwKijWRVdKAUKA355ULYBT/EuBtldd5U+AcmO6QBcYyb+696t9mErdgPjM?=\n\t=?utf-8?q?QC0y/XSDf6FU4P7VydbTqTgJ9XBsCwr1IubJ5b9uPCUEkUX3tPn+MC+/itnDeMbpd?=\n\t=?utf-8?q?2egA/RJzNZcid20acqrGWq015b1bdx1hxYict6VyS4uQvyXGuIsGeKbQ6fKuOABxf?=\n\t=?utf-8?q?KGomTrs8zu+/oZETWclt1rQvtq0MKxxGt8j4tOuoqJrWAaZ5MJ4KOTCl0CpHfvvxh?=\n\t=?utf-8?q?YUVe2ybMMCKctPgqnq67/M6QHmRk0gQbGVsdiCwz/rfriFaaExzhUQStZQ2Da4sfJ?=\n\t=?utf-8?q?kSXPrwzA3z2yFVFXMfFZV48KgnhrBzXErD8UBWZfwVqWFiSjyvItc61QqFp1ynoad?=\n\t=?utf-8?q?7syPjO3mTcUMWmgTdY3X+7zRD0m8GyEo7VOKqoGBHbd6NnmQFT1KF/xMmaWaLReyP?=\n\t=?utf-8?q?/NM2sfjWucIM227ThA2qD3Tt/DiPHZxFYL+cQ5p5PWRW5xjgpPi0jnL2m5vIWxafT?=\n\t=?utf-8?q?34rxAHxocBXlqeS3DvBZPOWwTIdc67o4pe3x4uU24hxeYRM9OXnm40NPQumUjgsgV?=\n\t=?utf-8?q?kT+2xCwAppjLJXT6jFfbkvwTEHvHA6ctTHgNtbL02mZwH0b21KIFxcYWpmaAbo77N?=\n\t=?utf-8?q?NI9yLdCw2J2yfKv3YlBbvLwkbXKUmq4S7F6jfS7DWm0rc+mrnVH7bsYJXcpWtKcAs?=\n\t=?utf-8?q?LBXjNTECg7c3NVwVlnFeMIDgh4psdSllxZK0xYWd0inQe4T5V3lFQ+hrkRKsFLWE0?=\n\t=?utf-8?q?RnJOOi94BejUa5qzJtCBCvJXzwXjhs0SepyhNm+xx8WQs9vnzUySClwNLc7Wdu02j?=\n\t=?utf-8?q?/4IjUA2TG3NOl8gunGiJzpuL2ES38McqqcPHYWOHQDLv8FXIK3wCsafJ1gdkGRI8Y?=\n\t=?utf-8?q?LpW/m5QvmPvQbORSBsiuF4k9+71wK3Icw66j34qUskeBeYXnwlrEVzBc/Hel4U6fT?=\n\t=?utf-8?q?4BWA4G+LUuw6bGvzw8vXbUJD0TQjgPTE0a7uz1by+sbl6D8P9Q36desWPAdsFVAE1?=\n\t=?utf-8?q?yS6wURAHB3WsVwb2xbMC+gluu3R3w8uA=3D=3D?=","X-OriginatorOrg":"cherry.de","X-MS-Exchange-CrossTenant-Network-Message-Id":"\n e8e0b309-f1dc-4eb9-3f51-08de8a9a168f","X-MS-Exchange-CrossTenant-AuthSource":"GVXPR04MB12038.eurprd04.prod.outlook.com","X-MS-Exchange-CrossTenant-AuthAs":"Internal","X-MS-Exchange-CrossTenant-OriginalArrivalTime":"25 Mar 2026 18:12:34.2327 (UTC)","X-MS-Exchange-CrossTenant-FromEntityHeader":"Hosted","X-MS-Exchange-CrossTenant-Id":"5e0e1b52-21b5-4e7b-83bb-514ec460677e","X-MS-Exchange-CrossTenant-MailboxType":"HOSTED","X-MS-Exchange-CrossTenant-UserPrincipalName":"\n q/EYqr+nMpsAATr7NdfSs5YUQYa0elhNUXDtqvuY081jgsXYetE5NY9sH+N7XMaxdKublkIDyCkjZKCbHCSx4KXhp2mgOAJWCrp+QLEq3Dc=","X-MS-Exchange-Transport-CrossTenantHeadersStamped":"AM0PR04MB12098","X-Mailman-Original-DKIM-Signature":"v=1; a=rsa-sha256; c=relaxed/relaxed;\n d=cherry.de; s=selector1;\n h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck;\n bh=gAD/3Hm/CB3wP2zGo7poWpDha2Upe93Mys9x9oO/tBk=;\n b=PGG56tkRY8CNyc8c4pSsvH3BSvY4Jv2PDOqBcDrMAtnlxrMaWNAOCBzCkjnX10TiNqmVaoTtAMfzlYLKTK48cXYojJS7qyJr4Ut4c3dS/iqCdET82apQKeHUe6x8dz6HcKQRiXlbrmIE0qQafNufLvAinHxXQarfZfWiYhFm64Q=","X-Mailman-Original-Authentication-Results":["smtp3.osuosl.org;\n dmarc=pass (p=quarantine dis=none)\n header.from=cherry.de","smtp3.osuosl.org;\n dkim=pass (1024-bit key,\n unprotected) header.d=cherry.de header.i=@cherry.de header.a=rsa-sha256\n header.s=selector1 header.b=PGG56tkR","dkim=none (message not signed)\n header.d=none;dmarc=none action=none header.from=cherry.de;"],"Subject":"Re: [Buildroot] [PATCH] package/arm-trusted-firmware: add\n ARM_TRUSTED_FIRMWARE_CPE_ID_*","X-BeenThere":"buildroot@buildroot.org","X-Mailman-Version":"2.1.30","Precedence":"list","List-Id":"Discussion and development of buildroot <buildroot.buildroot.org>","List-Unsubscribe":"<https://lists.buildroot.org/mailman/options/buildroot>,\n <mailto:buildroot-request@buildroot.org?subject=unsubscribe>","List-Archive":"<http://lists.buildroot.org/pipermail/buildroot/>","List-Post":"<mailto:buildroot@buildroot.org>","List-Help":"<mailto:buildroot-request@buildroot.org?subject=help>","List-Subscribe":"<https://lists.buildroot.org/mailman/listinfo/buildroot>,\n <mailto:buildroot-request@buildroot.org?subject=subscribe>","From":"Quentin Schulz via buildroot <buildroot@buildroot.org>","Reply-To":"Quentin Schulz <quentin.schulz@cherry.de>","Content-Transfer-Encoding":"7bit","Content-Type":"text/plain; charset=\"us-ascii\"; Format=\"flowed\"","Errors-To":"buildroot-bounces@buildroot.org","Sender":"\"buildroot\" <buildroot-bounces@buildroot.org>"}},{"id":3669601,"web_url":"http://patchwork.ozlabs.org/comment/3669601/","msgid":"<3936876.kQq0lBPeGt@phil>","list_archive_url":null,"date":"2026-03-26T10:14:59","subject":"Re: [Buildroot] [PATCH] package/arm-trusted-firmware: add\n ARM_TRUSTED_FIRMWARE_CPE_ID_*","submitter":{"id":10645,"url":"http://patchwork.ozlabs.org/api/people/10645/","name":"Heiko Stuebner","email":"heiko@sntech.de"},"content":"Am Mittwoch, 25. März 2026, 19:12:33 Mitteleuropäische Normalzeit schrieb Quentin Schulz:\n> Hi Heiko,\n> \n> On 3/25/26 4:03 PM, Heiko Stuebner wrote:\n> > From: Heiko Stuebner <heiko.stuebner@cherry.de>\n> > \n> > Trusted-Firmware has been using a number of CPE identifiers in the past\n> > but especially after v2.4, the correct identifier would be similar\n> > to cpe:2.3:o:arm:trusted_firmware-a:2.12:rc0:*:*:-:*:*:*\n> > \n> >    https://nvd.nist.gov/products/cpe/detail/65DEC230-1CD5-40DB-903A-22537D1E44FE\n> > \n> > Add the relevant CPE fields to the trusted-firmware package.\n> > \n> \n> Thinking about it a bit more, I **think** we may want to strip lts- \n> prefix for the CPE_ID_VERSION. I don't see any version past 2.4 on NVD \n> so we cannot really know what they'll do once they need to tackle LTSes, \n> but I am assuming they are NOT going to use the lts- prefix?\n> \n> What do you think?\n\nI think you're quite right :-) .\n\nI also realized I messed the versioning anyway and did not remove\nthe \"v\" to match the version used in CPEs.\n\nDone both now in v2.\n\nThanks for the review\nHeiko","headers":{"Return-Path":"<buildroot-bounces@buildroot.org>","X-Original-To":["incoming-buildroot@patchwork.ozlabs.org","buildroot@buildroot.org"],"Delivered-To":["patchwork-incoming-buildroot@legolas.ozlabs.org","buildroot@buildroot.org"],"Authentication-Results":["legolas.ozlabs.org;\n\tdkim=pass (2048-bit key;\n unprotected) header.d=buildroot.org header.i=@buildroot.org\n header.a=rsa-sha256 header.s=default header.b=LrGImhGV;\n\tdkim-atps=neutral","legolas.ozlabs.org;\n spf=pass (sender SPF authorized) smtp.mailfrom=buildroot.org\n (client-ip=2605:bc80:3010::137; helo=smtp4.osuosl.org;\n envelope-from=buildroot-bounces@buildroot.org; receiver=patchwork.ozlabs.org)"],"Received":["from smtp4.osuosl.org (smtp4.osuosl.org [IPv6:2605:bc80:3010::137])\n\t(using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)\n\t key-exchange x25519 server-signature ECDSA (secp384r1) server-digest SHA384)\n\t(No client certificate requested)\n\tby legolas.ozlabs.org (Postfix) with ESMTPS id 4fhKQh2jHkz1y1x\n\tfor <incoming-buildroot@patchwork.ozlabs.org>;\n Thu, 26 Mar 2026 21:15:08 +1100 (AEDT)","from localhost (localhost [127.0.0.1])\n\tby smtp4.osuosl.org (Postfix) with ESMTP id 9118A40B86;\n\tThu, 26 Mar 2026 10:15:06 +0000 (UTC)","from smtp4.osuosl.org ([127.0.0.1])\n by localhost (smtp4.osuosl.org [127.0.0.1]) (amavis, port 10024) with ESMTP\n id AO8-4bD-ukXd; Thu, 26 Mar 2026 10:15:05 +0000 (UTC)","from lists1.osuosl.org (lists1.osuosl.org [140.211.166.142])\n\tby smtp4.osuosl.org (Postfix) with ESMTP id E1CF740B3E;\n\tThu, 26 Mar 2026 10:15:04 +0000 (UTC)","from smtp1.osuosl.org (smtp1.osuosl.org [140.211.166.138])\n by lists1.osuosl.org (Postfix) with ESMTP id D7F4A353\n for <buildroot@buildroot.org>; Thu, 26 Mar 2026 10:15:02 +0000 (UTC)","from localhost (localhost [127.0.0.1])\n by smtp1.osuosl.org (Postfix) with ESMTP id C9B81814C6\n for <buildroot@buildroot.org>; Thu, 26 Mar 2026 10:15:02 +0000 (UTC)","from smtp1.osuosl.org ([127.0.0.1])\n by localhost (smtp1.osuosl.org [127.0.0.1]) (amavis, port 10024) with ESMTP\n id hQgTTBs_TIIP for <buildroot@buildroot.org>;\n Thu, 26 Mar 2026 10:15:02 +0000 (UTC)","from gloria.sntech.de (gloria.sntech.de [185.11.138.130])\n by smtp1.osuosl.org (Postfix) with ESMTPS id C4548814BC\n for <buildroot@buildroot.org>; Thu, 26 Mar 2026 10:15:01 +0000 (UTC)"],"X-Virus-Scanned":["amavis at osuosl.org","amavis at osuosl.org"],"X-Comment":"SPF check N/A for local connections - client-ip=140.211.166.142;\n helo=lists1.osuosl.org; envelope-from=buildroot-bounces@buildroot.org;\n receiver=<UNKNOWN> ","DKIM-Filter":["OpenDKIM Filter v2.11.0 smtp4.osuosl.org E1CF740B3E","OpenDKIM Filter v2.11.0 smtp1.osuosl.org C4548814BC"],"DKIM-Signature":"v=1; a=rsa-sha256; c=relaxed/relaxed; d=buildroot.org;\n\ts=default; t=1774520105;\n\tbh=dsvziWXfvjlzLo0ORU04FamjStADau39pymmluW8mIs=;\n\th=To:Cc:Date:In-Reply-To:References:Subject:List-Id:\n\t List-Unsubscribe:List-Archive:List-Post:List-Help:List-Subscribe:\n\t From:Reply-To:From;\n\tb=LrGImhGViknEh17lWC3u39nePOOuopIChSnjYupxpgsxI8vXbDGNQmX5IFC6HG8z4\n\t x/4noIBeMqk+X7lGpgw5OLZu5KB5LByKJ1KaX9vvIW7OdMcP3hA4X48ILHucJSlTCg\n\t BTh04VBrIKSPjTFs6Za3MH3iHEhN0VTQ2mEK24GQSorEsp257Yy+L04uIBqdoftFly\n\t eaj+VvMskPphCs4DFI7VFUbo4W9OuaEjjpJb7ZkOKpUQaK9s36tr2hYc7afrWCqOYo\n\t yK6kxJUGoA0rDODKgCHDg1y7ejv5hgvdzsdMO+omODDo60MJH/8H9HtQ6yRFA3PLdj\n\t nWMMUn9uCvb7g==","Received-SPF":"Pass (mailfrom) identity=mailfrom; client-ip=185.11.138.130;\n helo=gloria.sntech.de; envelope-from=heiko@sntech.de; receiver=<UNKNOWN>","DMARC-Filter":"OpenDMARC Filter v1.4.2 smtp1.osuosl.org C4548814BC","To":"buildroot@buildroot.org, Quentin Schulz <quentin.schulz@cherry.de>","Cc":"Etienne Carriere <etienne.carriere@foss.st.com>,\n Heiko Stuebner <heiko.stuebner@cherry.de>","Date":"Thu, 26 Mar 2026 11:14:59 +0100","Message-ID":"<3936876.kQq0lBPeGt@phil>","In-Reply-To":"<d728395d-316b-4ab6-be7e-bba218dcf31a@cherry.de>","References":"<20260325150346.414826-1-heiko@sntech.de>\n <d728395d-316b-4ab6-be7e-bba218dcf31a@cherry.de>","MIME-Version":"1.0","X-Mailman-Original-DKIM-Signature":"v=1; a=rsa-sha256; q=dns/txt;\n c=relaxed/relaxed; d=sntech.de;\n s=gloria202408; h=Content-Type:Content-Transfer-Encoding:MIME-Version:\n References:In-Reply-To:Message-ID:Date:Subject:Cc:To:From:Reply-To;\n bh=0amiXQtoJIwvvZUQTmTpNLbBN9tMtjLlQrN/kdlM2co=; b=KqoVDX3IULu8sZfmatnH0KjZaI\n I3z8oWtWLxopmQjSxFxnyPLQSEK13zuY3k28zUAlHpn3y7adaA/DFdzw4wqC8u6GZcmFZ157B9JaY\n 4XgskXZPpjIK6oQxeRRIL66StVUk9H328AATC7y9l8C4h4OgYNGTanAlIGsk3UfCJTG66/cM6YnJN\n BPEfduE5dNGDvBX++lmADmiZ1IpgmhWSR/kRGha+WRARvo5TAv2fHX+AmoiJ8wszDxCTfqDzfyHcR\n KJZhrmI4IHI6yTvgxumt3ZpFlIDsWQhyvR7TJWNJPBBi/fAbSNDuExihiKGVMAA4BydFWTRAnY2jd\n NCiDgFyQ==;","X-Mailman-Original-Authentication-Results":["smtp1.osuosl.org;\n dmarc=pass (p=quarantine dis=none)\n header.from=sntech.de","smtp1.osuosl.org;\n dkim=pass (2048-bit key,\n unprotected) header.d=sntech.de header.i=@sntech.de header.a=rsa-sha256\n header.s=gloria202408 header.b=KqoVDX3I"],"Subject":"Re: [Buildroot] [PATCH] package/arm-trusted-firmware: add\n ARM_TRUSTED_FIRMWARE_CPE_ID_*","X-BeenThere":"buildroot@buildroot.org","X-Mailman-Version":"2.1.30","Precedence":"list","List-Id":"Discussion and development of buildroot <buildroot.buildroot.org>","List-Unsubscribe":"<https://lists.buildroot.org/mailman/options/buildroot>,\n <mailto:buildroot-request@buildroot.org?subject=unsubscribe>","List-Archive":"<http://lists.buildroot.org/pipermail/buildroot/>","List-Post":"<mailto:buildroot@buildroot.org>","List-Help":"<mailto:buildroot-request@buildroot.org?subject=help>","List-Subscribe":"<https://lists.buildroot.org/mailman/listinfo/buildroot>,\n <mailto:buildroot-request@buildroot.org?subject=subscribe>","From":"Heiko Stuebner via buildroot <buildroot@buildroot.org>","Reply-To":"Heiko Stuebner <heiko@sntech.de>","Content-Type":"text/plain; charset=\"utf-8\"","Content-Transfer-Encoding":"base64","Errors-To":"buildroot-bounces@buildroot.org","Sender":"\"buildroot\" <buildroot-bounces@buildroot.org>"}}]