File _patchinfo of Package patchinfo.2965
<patchinfo incident="2965">
<issue id="987527" tracker="bnc">empty VNC password disables authentication</issue>
<issue id="854343" tracker="bnc">libvirt installation run inappropriate systemd restart</issue>
<issue id="989755" tracker="bnc">virsh blockcommit fails</issue>
<issue id="968483" tracker="bnc">zypper reloads updated rpms in the wrong order causing libvirt reload to fail</issue>
<issue id="975729" tracker="bnc">augeas errors on default files</issue>
<issue id="2016-5008" tracker="cve" />
<category>security</category>
<rating>moderate</rating>
<packager>jfehlig</packager>
<description>
This update for libvirt fixes one security issue:
- CVE-2016-5008: Empty VNC password disables authentication. (bsc#987527)
Additionally, the update includes the following non-security fixes:
- Improve waiting for block job readines in virsh. (bsc#989755)
- Parse negative values in augeas lenses. (bsc#975729)
- Restart daemons in %posttrans after connection drivers have been processed.
(bsc#854343, bsc#968483)
</description>
<summary>Security update for libvirt</summary>
</patchinfo>