File _patchinfo of Package patchinfo.2216

<patchinfo incident="2216">
  <issue id="970952" tracker="bnc">VUL-0: CVE-2016-2342 quagga: VPNv4 NLRI parses memcpys to stack on unchecked length</issue>
  <issue id="CVE-2016-2342" tracker="cve" />
  <category>security</category>
  <rating>moderate</rating>
  <packager>pwieczorkiewicz</packager>
  <description>
This update for quagga fixes the following security issue:

- CVE-2016-2342: Quagga was extended the prefixlen check to ensure it is
  within the bound of the NLRI packet data and the on-stack prefix structure
  and the maximum size for the address family (bsc#970952).
</description>
  <summary>Security update for quagga</summary>
</patchinfo>
openSUSE Build Service is sponsored by