Fixes: https://github.com/fleetdm/fleet/actions/runs/31153554311. New run: https://github.com/fleetdm/fleet/actions/runs/31214011778. <!-- This is an auto-generated comment: release notes by coderabbit.ai --> ## Summary by CodeRabbit * **Security** * Added vulnerability assessments for four CVEs affecting Debian `libaom3`. * Added assessments for five CVEs affecting Debian `libheif` packages. * Documented that the application is not affected because AV1, HEIF, and AVIF media processing is not part of MSI package generation. * Classified the vulnerable code as outside the application’s execution path. <!-- end of auto-generated comment: release notes by coderabbit.ai -->