File _patchinfo of Package patchinfo.621

<patchinfo incident="621">
  <issue id="925225" tracker="bnc">CVE-2014-8119: augeas: augeas path expression injection via interface name</issue>
  <issue id="CVE-2014-8119" tracker="cve" />
  <category>security</category>
  <rating>moderate</rating>
  <packager>mfilka</packager>
  <description>
This update fixes an untrusted argument escaping problem (CVE-2014-8119):

* new API - aug_escape_name() - which can be used to escape
  untrusted inputs before using them as part of path expressions
* aug_match() is changed to return properly escaped output
</description>
  <summary>Security update for augeas</summary>
</patchinfo>
openSUSE Build Service is sponsored by