File _patchinfo of Package patchinfo.621
<patchinfo incident="621">
<issue id="925225" tracker="bnc">CVE-2014-8119: augeas: augeas path expression injection via interface name</issue>
<issue id="CVE-2014-8119" tracker="cve" />
<category>security</category>
<rating>moderate</rating>
<packager>mfilka</packager>
<description>
This update fixes an untrusted argument escaping problem (CVE-2014-8119):
* new API - aug_escape_name() - which can be used to escape
untrusted inputs before using them as part of path expressions
* aug_match() is changed to return properly escaped output
</description>
<summary>Security update for augeas</summary>
</patchinfo>