File _patchinfo of Package patchinfo.5250

<patchinfo incident="5250">
  <issue id="2017-1000198" tracker="cve" />
  <issue id="2017-1000199" tracker="cve" />
  <issue id="1049485" tracker="bnc">VUL-0: tcmu-runner: glfs handler allows local DoS via crafted CheckConfig strings</issue>
  <issue id="1049491" tracker="bnc">VUL-0: tcmu-runner: qcow handler opens up an information leak via the CheckConfig D-Bus method</issue>
  <category>security</category>
  <rating>moderate</rating>
  <packager>lee_duncan</packager>
  <description>This update for tcmu-runner fixes the following issues:

Security issues fixed:

- CVE-2017-1000198: The glfs handler allowed local DoS via crafted CheckConfig strings (bsc#1049485)
- CVE-2017-1000199: The qcow handler leaked information via the CheckConfig D-Bus method (bsc#1049491)
</description>
  <summary>Security update for tcmu-runner</summary>
</patchinfo>
openSUSE Build Service is sponsored by