File _patchinfo of Package patchinfo.16429

<patchinfo incident="16429">
  <issue tracker="bnc" id="1182321">VUL-0: CVE-2021-31998: inn: %post calls user owned file, LPE to root</issue>
  <issue tracker="cve" id="2021-31998"/>
  <packager>mlschroe</packager>
  <rating>moderate</rating>
  <category>security</category>
  <summary>Security update for inn</summary>
  <description>This update for inn fixes the following issues:

- CVE-2021-31998: change user to news before calling innupgrade, which could have 
  allow local privilege escalation.
  [boo#1182321]

This update was imported from the openSUSE:Leap:15.2:Update update project.</description>
</patchinfo>
openSUSE Build Service is sponsored by