package release.debian.org
tags 1132510 = bookworm pending
thanks

Hi,

The upload referenced by this bug report has been flagged for acceptance into 
the proposed-updates queue for Debian bookworm.

Thanks for your contribution!

Upload details
==============

Package: grub-efi-arm64-signed
Version: 1+2.06+13+deb12u2

Explanation: remove NTFS and jfs from monolithic EFI image; update SBAT levels; 
set "Protected: yes" for -signed packages so they cannot easily be removed; 
backport upstream regression fixes; fix "video/readers/jpeg: Do not permit 
duplicate SOF0 markers in JPEG" [CVE-2024-45774]; fix "commands/extcmd: Missing 
check for failed allocation" [CVE-2024-45775]; fix "commands/dump: The dump 
command is not in lockdown when secure boot is enabled" [CVE-2025-1118]; fix 
integer overflow issues [CVE-2024-45776 CVE-2024-45777 CVE-2024-45778 
CVE-2024-45779 CVE-2024-45780 CVE-2025-0677  CVE-2025-0678 CVE-2025-0684 
CVE-2025-0685 CVE-2025-0690  CVE-2025-1125]; fix out-of-bounds write issues 
[CVE-2024-45781 CVE-2024-45782 CVE-2025-0624]; fix use-after-free issues 
[CVE-2024-45783 CVE-2025-0622]; fix buffer overflow issue [CVE-2025-0689]

Reply via email to