From 18969517c986adc7aab2156d067184f56dc788e9 Mon Sep 17 00:00:00 2001 From: Zhixiong Chi Date: Thu, 21 Dec 2023 21:53:37 -0800 Subject: [PATCH] libbluetooth3: Upgrade to 5.55-3.1+deb11u1 Upgrade subpackages libbluetooth3 and libbluetooth-dev to 5.55-3.1+deb11u1 to fix the CVE issue CVE-2023-45866. Add libbluetooth-dev since it's the dependency of python3.9. Refer to: https://www.debian.org/security/2023/dsa-5584 https://security-tracker.debian.org/tracker/CVE-2023-45866 TestPlan: PASS: downloader; build-pkgs -c; build-image PASS: Jenkins Installation Closes-Bug: 2047185 Signed-off-by: Zhixiong Chi Change-Id: Id4175c0ef5791dbc02fa546a6b0a21a64cfec711 --- debian-mirror-tools/config/debian/common/base-bullseye.lst | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/debian-mirror-tools/config/debian/common/base-bullseye.lst b/debian-mirror-tools/config/debian/common/base-bullseye.lst index d8265d90..373e35c9 100644 --- a/debian-mirror-tools/config/debian/common/base-bullseye.lst +++ b/debian-mirror-tools/config/debian/common/base-bullseye.lst @@ -255,7 +255,8 @@ libbasicobjects0 0.6.1-2 libbinutils 2.35.2-2 libblas3 3.9.0-3 libblkid1 2.36.1-8+deb11u1 -libbluetooth3 5.55-3.1 +libbluetooth3 5.55-3.1+deb11u1 https://snapshot.debian.org/archive/debian-security/20231222T044531Z/pool/updates/main/b/bluez/libbluetooth3_5.55-3.1+deb11u1_amd64.deb +libbluetooth-dev 5.55-3.1+deb11u1 https://snapshot.debian.org/archive/debian-security/20231222T044531Z/pool/updates/main/b/bluez/libbluetooth-dev_5.55-3.1+deb11u1_amd64.deb libboost-context1.74.0 1.74.0-9 libboost-filesystem1.74.0 1.74.0-9 libboost-iostreams1.74.0 1.74.0-9