File _patchinfo of Package patchinfo.33763
<patchinfo incident="33763">
<issue tracker="bnc" id="1014637">VUL-0: CVE-2016-9566: nagios,icinga: Privilege escalation issue</issue>
<issue tracker="bnc" id="1156309">VUL-0: CVE-2019-3698: nagios: /etc/cron.weekly/nagios allows privilege escalation from nagios to root</issue>
<issue tracker="cve" id="2016-9566"/>
<issue tracker="cve" id="2019-3698"/>
<issue tracker="ijsc" id="MSQA-775"/>
<packager>mauriziogalli</packager>
<rating>moderate</rating>
<category>security</category>
<summary>Security update for SUSE Manager Client Tools Beta</summary>
<description>This update for SUSE Manager Client Tools Beta fixes the following issues:
- Changed codestream origin of SUSE Manager Client Tools Beta (no source changes)
icinga in SUSE Manager Client Tools Beta also received the following security fixes:
- CVE-2016-9566: Fixed root privilege escalation (bsc#1014637)
- CVE-2019-3698 : Symbolic Link (Symlink) following
vulnerability in the cronjob allows local attackers to cause cause
DoS or potentially escalate privileges by winning a race (bsc#1156309)
</description>
</patchinfo>