File _patchinfo of Package patchinfo.14631

<patchinfo incident="14631">
  <issue tracker="bnc" id="1136020">[RMT] rmt-data-import failed: can not find /usr/share/rmt/config/boot_cli_i18n.rb</issue>
  <issue tracker="bnc" id="1162296">Schema update issue preventing startup - Duplicate column name 'migration_extra'</issue>
  <issue tracker="bnc" id="1168554">RMT doesn't support 'partner' type subscriptions</issue>
  <issue tracker="bnc" id="1160922">VUL-0: CVE-2019-18904: rmt: Offline migrations endpoint eats up all of the CPU</issue>
  <issue tracker="bnc" id="1165548">VUL-0: EMBARGOED: rmt-server: rmt-cli is using a fixed file path in /tmp/rmt.lock</issue>
  <issue tracker="cve" id="2019-18904"/>
  <packager>digitaltomm</packager>
  <rating>moderate</rating>
  <category>security</category>
  <summary>Security update for rmt-server</summary>
  <description>This update for rmt-server to version 2.5.7 fixes the following issues:

Security issues fixed:

- CVE-2019-18904: Fixed offline migrations (bsc#1160922).
- Fixed a local denial of service (bsc#1165548).

Non-security issues fixed:

- Align supported subscription types with SCC (bsc#1168554).
- Fix migrations in case adding migration_extra column failed (bsc#1162296).
- Fix dependency to removed boot_cli_i18n file (bsc#1136020)
</description>
</patchinfo>
openSUSE Build Service is sponsored by