From 44f318a38d18391a541c1bfc4bdc273d71fbe90c Mon Sep 17 00:00:00 2001 From: Li Zhou Date: Tue, 5 Sep 2023 13:54:52 +0800 Subject: [PATCH] grub2/grub-efi: fix CVEs Porting patches from grub2_2.06-3~deb11u1 to fix below CVEs: CVE-2021-3695 CVE-2021-3696 CVE-2021-3697 CVE-2022-28733 CVE-2022-28734 The source code of grub2_2.06-3~deb11u1 is from: https://snapshot.debian.org/archive/debian/20220807T030023Z/pool /main/g/grub2/grub2_2.06-3~deb11u1.debian.tar.xz The relationship between commits and CVEs is as below: (1)CVE-2021-3695 commit