From e1f6fe0d569b53a5ad06c5af4a626c9fe6895cb1 Mon Sep 17 00:00:00 2001 From: Zhixiong Chi Date: Sun, 24 Jul 2022 22:26:32 -0700 Subject: [PATCH] Debian: openldap: fix CVE-2022-29155 Upgrade the openldap version to 2.4.57+dfsg-3+deb11u1 to fix the CVE-2022-29155 issue. References: https://security-tracker.debian.org/tracker/CVE-2022-29155 TestPlan: PASS: build-pkgs -c -p openldap PASS: build-image --std Closes-Bug: 1982723 Signed-off-by: Zhixiong Chi Change-Id: I1ac30da3e4597035ef4f816ca7ab95aa9adcaa7c --- ldap/openldap/debian/meta_data.yaml | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/ldap/openldap/debian/meta_data.yaml b/ldap/openldap/debian/meta_data.yaml index 982271aa4..f0e763264 100644 --- a/ldap/openldap/debian/meta_data.yaml +++ b/ldap/openldap/debian/meta_data.yaml @@ -1,10 +1,10 @@ --- -debver: 2.4.57+dfsg-3 +debver: 2.4.57+dfsg-3+deb11u1 dl_path: - name: openldap-2.4.57+dfsg-3.tar.gz - url: https://salsa.debian.org/openldap-team/openldap/-/archive/2.4.57+dfsg-3/openldap-2.4.57+dfsg-3.tar.gz - md5sum: 85c7de35e79b8fe45b5d6aabba2b9a3d - sha256sum: be60a9e51d8be36e1ccfb64db55d9d2ebe280137368fc5abdcdfd86042e053c2 + name: openldap-2.4.57+dfsg-3+deb11u1.tar.gz + url: https://salsa.debian.org/openldap-team/openldap/-/archive/2.4.57+dfsg-3+deb11u1/openldap-2.4.57+dfsg-3+deb11u1.tar.gz + md5sum: eeda0e02cba40c553d6dfc5fa690d5a5 + sha256sum: ee82b1a22f0b1ff81567def39db2661284f44c2c717e54d7a4cffdb1d3bfc3b0 dl_files: ppolicy-check-password-debian-stretch.zip: topdir: null