File _patchinfo of Package patchinfo.2394
<patchinfo incident="2394">
<issue id="973639" tracker="bnc">L3: Empty passwords fields in /etc/shadow after SLES 12 SP1 installation</issue>
<issue id="974220" tracker="bnc">VUL-0: EMBARGOED: CVE-2016-1601: autoyast2: Empty passwords fields in /etc/shadow after SLES 12 SP1 autoyast installation</issue>
<issue id="971804" tracker="bnc">root login fails for some autoyast profiles</issue>
<issue id="CVE-2016-1601" tracker="cve" />
<category>security</category>
<rating>important</rating>
<packager>IGonzalezSosa</packager>
<description>yast2-users was updated to fix one security issue.
This security issue was fixed:
- CVE-2016-1601: Empty passwords fields in /etc/shadow after SLES 12 SP1 autoyast installation (bsc#974220).
This update includes a script that fixes installations that we're affected by this problem. It is run automatically
upon installing the update.
This non-security issue was fixed:
- bsc#971804: Set root password correctly when using a minimal profile
</description>
<summary>Security update for yast2-users</summary>
</patchinfo>