File _patchinfo of Package patchinfo.7508
<patchinfo incident="7508"> <issue tracker="bnc" id="1085970">VUL-0: CVE-2018-8088: slf4j: Deserialisation vulnerability in EventData constructor can allow for arbitrary code execution</issue> <issue tracker="cve" id="2018-8088"/> <category>security</category> <rating>important</rating> <packager>pmonrealgonzalez</packager> <description>This update for slf4j fixes the following issues: - CVE-2018-8088: Disallow EventData deserialization by default to avoid arbitrary code execution using serialized data (bsc#1085970) </description> <summary>Security update for slf4j</summary> </patchinfo>