File _patchinfo of Package patchinfo.17112
<patchinfo incident="17112"> <issue tracker="bnc" id="1190265">VUL-0: CVE-2021-21996: salt: root exploit on minion when able to access a file source</issue> <issue tracker="cve" id="2021-21996"/> <packager>PSuarezHernandez</packager> <rating>moderate</rating> <category>security</category> <summary>Security update for salt</summary> <description>This update for salt fixes the following issues: - Support querying for JSON data in external sql pillar. - Exclude the full path of a download URL to prevent injection of malicious code. (bsc#1190265, CVE-2021-21996) This update was imported from the SUSE:SLE-15-SP2:Update update project.</description> <zypp_restart_needed/> </patchinfo>