File _patchinfo of Package patchinfo.18670
<patchinfo incident="18670"> <issue tracker="cve" id="2024-47533"/> <issue tracker="bnc" id="1231332">VUL-0: CVE-2024-47533: cobbler: Authentication Exploit</issue> <packager>PSuarezHernandez</packager> <rating>critical</rating> <category>security</category> <summary>Security update for cobbler</summary> <description>This update for cobbler fixes the following issues: Update to 3.3.7 * Security: Fix issue that allowed anyone to connect to the API as admin (CVE-2024-47533, boo#1231332) * bind - Fix bug that prevents cname entries from being generated successfully * Fix build on RHEL9 based distributions (fence-agents-all split) * Fix for Windows systems * Docs: Add missing dependencies for source installation * Fix issue that prevented systems from being synced when the profile was edited </description> </patchinfo>