Script 'mail_helper' called by obssrc
Hello community,

here is the log from the commit of package patchinfo.15745 for 
openSUSE:Leap:15.2:Update checked in at 2021-02-08 12:05:24
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:Leap:15.2:Update/patchinfo.15745 (Old)
 and      /work/SRC/openSUSE:Leap:15.2:Update/.patchinfo.15745.new.28504 (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Package is "patchinfo.15745"

Mon Feb  8 12:05:24 2021 rev:1 rq:869707 version:unknown

Changes:
--------
New Changes file:

NO CHANGES FILE!!!

New:
----
  _patchinfo

++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Other differences:
------------------
++++++ _patchinfo ++++++
<patchinfo incident="15745">
  <issue tracker="cve" id="2020-8295"/>
  <issue tracker="cve" id="2020-8294"/>
  <issue tracker="cve" id="2020-8293"/>
  <issue tracker="bnc" id="1181803">VUL-1: CVE-2020-8294: nextcloud: A missing 
link validation</issue>
  <issue tracker="bnc" id="1181804">VUL-0: CVE-2020-8295: nextcloud: Denial of 
service attack when resetting the password for a user</issue>
  <issue tracker="bnc" id="1181445">VUL-0: CVE-2020-8293: nextcloud: input 
validation issue allows users to store unlimited data in workflow rules</issue>
  <packager>atopt</packager>
  <rating>moderate</rating>
  <category>security</category>
  <summary>Security update for nextcloud</summary>
  <description>This update for nextcloud fixes the following issues:

- nextcloud was upgraded to version 20.0.7
   - CVE-2020-8294: Fixed a missing link validation (boo#1181803)
   - CVE-2020-8295: Fixed a denial of service attack (boo#1181804)
   - CVE-2020-8293: Fixed an input validation issue (boo#1181445)
</description>
</patchinfo>

Reply via email to