Fixes: https://github.com/fleetdm/fleet/actions/runs/31153554311.
New run: https://github.com/fleetdm/fleet/actions/runs/31214011778.
<!-- This is an auto-generated comment: release notes by coderabbit.ai
-->
## Summary by CodeRabbit
* **Security**
* Added vulnerability assessments for four CVEs affecting Debian
`libaom3`.
* Added assessments for five CVEs affecting Debian `libheif` packages.
* Documented that the application is not affected because AV1, HEIF, and
AVIF media processing is not part of MSI package generation.
* Classified the vulnerable code as outside the application’s execution
path.
<!-- end of auto-generated comment: release notes by coderabbit.ai -->