Univention Bugzilla – Full Text Bug Listing |
Summary: | firmware-nonfree: Multiple issues (4.3) | ||
---|---|---|---|
Product: | UCS | Reporter: | Quality Assurance <qa> |
Component: | Security updates | Assignee: | Quality Assurance <qa> |
Status: | CLOSED FIXED | QA Contact: | Philipp Hahn <hahn> |
Severity: | normal | ||
Priority: | P3 | ||
Version: | UCS 4.3 | ||
Target Milestone: | UCS 4.3-2-errata | ||
Hardware: | All | ||
OS: | Linux | ||
What kind of report is it?: | Security Issue | What type of bug is this?: | --- |
Who will be affected by this bug?: | --- | How will those affected feel about the bug?: | --- |
User Pain: | Enterprise Customer affected?: | ||
School Customer affected?: | ISV affected?: | ||
Waiting Support: | Flags outvoted (downgraded) after PO Review: | ||
Ticket number: | Bug group (optional): | ||
Max CVSS v3 score: | 8.1 (CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N) Debian RedHat |
Description
Quality Assurance
2018-11-19 12:47:44 CET
--- mirror/ftp/4.3/unmaintained/4.3-0/source/firmware-nonfree_20161130-3.dsc +++ apt/ucs_4.3-0-errata4.3-2/source/firmware-nonfree_20161130-4.dsc @@ -1,3 +1,24 @@ +20161130-4 [Sat, 13 Oct 2018 20:27:06 +0100] Ben Hutchings <ben@decadent.org.uk>: + + * debian/bin/gencontrol.py: Set encoding to UTF-8 globally + * Add back firmware-{adi,ralink} as transitional packages (Closes: #907320) + * debian/control: Point Vcs URLs to Salsa + * Update to linux-support 4.9.0-8 + * firmware-brcm80211: Update Broadcom wifi firmware to fix security issues + (Closes: #869639): + - BCM4339 (CVE-2016-0801) + - BCM4354 (CVE-2016-0801, CVE-2017-0561, CVE-2017-9417, CVE-2017-13077, + CVE-2017-13078, CVE-2017-13079, CVE-2017-13080, CVE-2017-13081) + - BCM4356-PCIe (CVE-2016-0801, CVE-2017-0561, CVE-2017-9417, + CVE-2017-13077, CVE-2017-13078, CVE-2017-13079, CVE-2017-13080, + CVE-2017-13081) + - BCM43340 (CVE-2017-13077, CVE-2017-13078, CVE-2017-13079, CVE-2017-13080, + CVE-2017-13081) (also fixes issues when operating in 5GHz band) + - BCM43362 (CVE-2017-13077, CVE-2017-13078, CVE-2017-13079, CVE-2017-13080, + CVE-2017-13081) + - BCM43430 (CVE-2017-13077, CVE-2017-13078, CVE-2017-13079, CVE-2017-13080, + CVE-2017-13081) + 20161130-3 [Tue, 06 Jun 2017 00:56:25 +0100] Ben Hutchings <ben@decadent.org.uk>: * misc-nonfree: Include Intel OPA Gen1 firmware (Closes: #862458) <http://10.200.17.11/4.3-2/#6133496246701244083> OK: yaml OK: announce_errata OK: patch ~OK: piuparts The licences of firmware-ipw2x00 and firmware-ivtv require interactive confirmation, which breaks PIUpaRTs. [4.3-2] 70d374032a Bug #48178: firmware-nonfree 20161130-4 doc/errata/staging/firmware-nonfree.yaml | 7 ++----- 1 file changed, 2 insertions(+), 5 deletions(-) [4.3-2] b4e6a7e747 Bug #48178: firmware-nonfree 20161130-4 doc/errata/staging/firmware-nonfree.yaml | 38 ++++++++++++++++++++++++++++++++ 1 file changed, 38 insertions(+) |