From 0dd2eb4ab87ff0b9e3c77f0cfc404f50caf19919 Mon Sep 17 00:00:00 2001 From: Zhixiong Chi Date: Sun, 3 Dec 2023 21:57:15 -0800 Subject: [PATCH] rabbitmq-server: Upgrade to 3.8.9-3+deb11u1 Upgrade rabbitmq-server to 3.8.9-3+deb11u1 to fix the CVE issue: CVE-2023-46118 Refer to: https://security-tracker.debian.org/tracker/CVE-2023-46118 https://www.debian.org/security/2023/dsa-5571 https://www.tenable.com/plugins/nessus/186517 TestPlan: PASS: downloader; build-pkgs; build-image PASS: Jenkins Installation Closes-bug: 2045522 Change-Id: Ifccda2e60db6915e10beef14dd3a65b615f4ec45 Signed-off-by: Zhixiong Chi --- openstack/rabbitmq-server/debian/meta_data.yaml | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/openstack/rabbitmq-server/debian/meta_data.yaml b/openstack/rabbitmq-server/debian/meta_data.yaml index ea6cfd1a..ab136e06 100644 --- a/openstack/rabbitmq-server/debian/meta_data.yaml +++ b/openstack/rabbitmq-server/debian/meta_data.yaml @@ -1,10 +1,10 @@ --- debname: rabbitmq-server -debver: 3.8.9-3 +debver: 3.8.9-3+deb11u1 dl_path: - name: rabbitmq-server-debian-3.8.9-3.tar.gz - url: https://salsa.debian.org/openstack-team/third-party/rabbitmq-server/-/archive/debian/3.8.9-3/rabbitmq-server-debian-3.8.9-3.tar.gz - md5sum: 1c4dea34094984e01c7b87b63e83ba2f + name: rabbitmq-server-debian-3.8.9-3+deb11u1.tar.gz + url: https://salsa.debian.org/openstack-team/third-party/rabbitmq-server/-/archive/debian/3.8.9-3+deb11u1/rabbitmq-server-debian-3.8.9-3+deb11u1.tar.gz + sha256sum: 021f6b92e25ca642a08b271d4ee3142359f828bda5b087811c469bd4a4bafd4e revision: dist: $STX_DIST GITREVCOUNT: