File _patchinfo of Package patchinfo.10568
<patchinfo incident="10568"> <issue tracker="cve" id="2019-13132"/> <issue tracker="bnc" id="1082318">Packages must not mark license files as %doc</issue> <issue tracker="bnc" id="1140255">EMU: VUL-0: EMBARGOED: CVE-2019-13132: zeromq: application metadata not parsed correctly when using CURVE</issue> <packager>vitezslav_cizek</packager> <rating>important</rating> <category>security</category> <summary>Security update for zeromq</summary> <description>This update for zeromq fixes the following issues: - CVE-2019-13132: An unauthenticated remote attacker could have exploited a stack overflow vulnerability on a server that is supposed to be protected by encryption and authentication to potentially gain a remote code execution. (bsc#1140255) - Correctly mark license files as licence instead of documentation (bsc#1082318) This update was imported from the SUSE:SLE-15:Update update project.</description> </patchinfo>