File _patchinfo of Package patchinfo.7508

<patchinfo incident="7508">
  <issue tracker="bnc" id="1085970">VUL-0: CVE-2018-8088: slf4j: Deserialisation vulnerability in EventData constructor can allow for arbitrary code execution</issue>
  <issue tracker="cve" id="2018-8088"/>
  <category>security</category>
  <rating>important</rating>
  <packager>pmonrealgonzalez</packager>
  <description>This update for slf4j fixes the following issues:

- CVE-2018-8088: Disallow EventData deserialization by default to avoid arbitrary code execution using serialized data (bsc#1085970)
</description>
  <summary>Security update for slf4j</summary>
</patchinfo>
openSUSE Build Service is sponsored by