From: Raspbian automatic forward porter Date: Fri, 28 Jul 2023 10:38:58 +0000 (+0100) Subject: Merge version 8.1.6+ds-1~deb11u1+rpi1 and 8.1.7+ds-1~deb11u1 to produce 8.1.7+ds... X-Git-Tag: archive/raspbian/8.1.7+ds-1_deb11u1+rpi1^0 X-Git-Url: https://dgit.raspbian.org/?a=commitdiff_plain;h=c548e7ef0109619dd3c69e3153f202ad4c01c80b;p=trafficserver.git Merge version 8.1.6+ds-1~deb11u1+rpi1 and 8.1.7+ds-1~deb11u1 to produce 8.1.7+ds-1~deb11u1+rpi1 --- c548e7ef0109619dd3c69e3153f202ad4c01c80b diff --cc debian/changelog index 6ff9100b,c9280c81..df88f2ea --- a/debian/changelog +++ b/debian/changelog @@@ -1,9 -1,12 +1,19 @@@ - trafficserver (8.1.6+ds-1~deb11u1+rpi1) bullseye-staging; urgency=medium ++trafficserver (8.1.7+ds-1~deb11u1+rpi1) bullseye-staging; urgency=medium + + [changes brought forward from 8.0.1-4+rpi1 by Peter Michael Green at Sat, 19 Jan 2019 12:42:48 +0000] + * Use -latomic on raspbian too. + - -- Raspbian forward porter Tue, 10 Jan 2023 22:24:18 +0000 ++ -- Raspbian forward porter Fri, 28 Jul 2023 10:38:58 +0000 ++ + trafficserver (8.1.7+ds-1~deb11u1) bullseye-security; urgency=high + + * New upstream version 8.1.7+ds + * Multiple CVE fixes for 8.1.x (Closes: #1038248) + + CVE-2022-47184: Exposure of Sensitive Information to an Unauthorized Actor vulnerability + + CVE-2023-30631: Improper Input Validation vulnerability + + CVE-2023-33933: Exposure of Sensitive Information to an Unauthorized Actor vulnerability + + -- Jean Baptiste Favre Wed, 21 Jun 2023 11:16:56 +0200 trafficserver (8.1.6+ds-1~deb11u1) bullseye-security; urgency=high