From: Raspbian automatic forward porter Date: Sat, 11 Jun 2022 18:41:18 +0000 (+0100) Subject: Merge version 8.1.1+ds-1.1+rpi1 and 8.1.1+ds-1.1+deb11u1 to produce 8.1.1+ds-1.1... X-Git-Tag: archive/raspbian/8.1.1+ds-1.1+rpi1+deb11u1^0 X-Git-Url: https://dgit.raspbian.org/?a=commitdiff_plain;h=2b4ee9a4eb7cce5d15d38732f0783d2e8a0662a6;p=trafficserver.git Merge version 8.1.1+ds-1.1+rpi1 and 8.1.1+ds-1.1+deb11u1 to produce 8.1.1+ds-1.1+rpi1+deb11u1 --- 2b4ee9a4eb7cce5d15d38732f0783d2e8a0662a6 diff --cc debian/changelog index b92f84a3,5720a022..1af40b4d --- a/debian/changelog +++ b/debian/changelog @@@ -1,9 -1,14 +1,21 @@@ - trafficserver (8.1.1+ds-1.1+rpi1) bullseye-staging; urgency=medium ++trafficserver (8.1.1+ds-1.1+rpi1+deb11u1) bullseye-staging; urgency=medium + + [changes brought forward from 8.0.1-4+rpi1 by Peter Michael Green at Sat, 19 Jan 2019 12:42:48 +0000] + * Use -latomic on raspbian too. + - -- Raspbian forward porter Sat, 07 Aug 2021 00:02:59 +0000 ++ -- Raspbian forward porter Sat, 11 Jun 2022 18:41:18 +0000 ++ + trafficserver (8.1.1+ds-1.1+deb11u1) bullseye-security; urgency=high + + * Multiple CVE fixes for 8.1.x + + CVE-2021-37147: Improper input validation vulnerability + + CVE-2021-37148: Improper input validation vulnerability + + CVE-2021-37149: Improper Input Validation vulnerability + + CVE-2021-38161: Improper Authentication vulnerability in TLS origin verification + + CVE-2021-44040: Improper Input Validation vulnerability in request line parsing + + CVE-2021-44759: Improper Authentication vulnerability in TLS origin validation + + -- Jean Baptiste Favre Sat, 21 May 2022 19:28:31 +0200 trafficserver (8.1.1+ds-1.1) unstable; urgency=medium