File _patchinfo of Package patchinfo.2394

<patchinfo incident="2394">
  <issue id="973639" tracker="bnc">L3: Empty passwords fields in /etc/shadow after SLES 12 SP1 installation</issue>
  <issue id="974220" tracker="bnc">VUL-0: EMBARGOED: CVE-2016-1601:  autoyast2: Empty passwords fields in /etc/shadow after SLES 12 SP1 autoyast installation</issue>
  <issue id="971804" tracker="bnc">root login fails for some autoyast profiles</issue>
  <issue id="CVE-2016-1601" tracker="cve" />
  <category>security</category>
  <rating>important</rating>
  <packager>IGonzalezSosa</packager>
  <description>yast2-users was updated to fix one security issue.

This security issue was fixed:
- CVE-2016-1601: Empty passwords fields in /etc/shadow after SLES 12 SP1 autoyast installation (bsc#974220).

This update includes a script that fixes installations that we're affected by this problem. It is run automatically
upon installing the update.

This non-security issue was fixed:
- bsc#971804: Set root password correctly when using a minimal profile
</description>
  <summary>Security update for yast2-users</summary>
</patchinfo>
openSUSE Build Service is sponsored by