File _patchinfo of Package patchinfo.16429
<patchinfo incident="16429"> <issue tracker="bnc" id="1182321">VUL-0: CVE-2021-31998: inn: %post calls user owned file, LPE to root</issue> <issue tracker="cve" id="2021-31998"/> <packager>mlschroe</packager> <rating>moderate</rating> <category>security</category> <summary>Security update for inn</summary> <description>This update for inn fixes the following issues: - CVE-2021-31998: change user to news before calling innupgrade, which could have allow local privilege escalation. [boo#1182321] This update was imported from the openSUSE:Leap:15.2:Update update project.</description> </patchinfo>