File _patchinfo of Package patchinfo.8229
<patchinfo incident="8229"> <issue tracker="bnc" id="1085970">VUL-0: CVE-2018-8088: slf4j: Deserialisation vulnerability in EventData constructor can allow for arbitrary code execution</issue> <issue tracker="cve" id="2018-8088"/> <category>security</category> <rating>important</rating> <packager>AndreasStieger</packager> <description>This update for slf4j fixes the following security issue: - CVE-2018-8088: Remote attackers could have bypassed intended access restrictions via crafted data. Disallow EventData deserialization by default from now on (bsc#1085970). </description> <summary>Security update for slf4j</summary> </patchinfo>