File _patchinfo of Package patchinfo.18670
<patchinfo incident="18670">
<issue tracker="cve" id="2024-47533"/>
<issue tracker="bnc" id="1231332">VUL-0: CVE-2024-47533: cobbler: Authentication Exploit</issue>
<packager>PSuarezHernandez</packager>
<rating>critical</rating>
<category>security</category>
<summary>Security update for cobbler</summary>
<description>This update for cobbler fixes the following issues:
Update to 3.3.7
* Security: Fix issue that allowed anyone to connect to the API
as admin (CVE-2024-47533, boo#1231332)
* bind - Fix bug that prevents cname entries from being
generated successfully
* Fix build on RHEL9 based distributions (fence-agents-all split)
* Fix for Windows systems
* Docs: Add missing dependencies for source installation
* Fix issue that prevented systems from being synced when the
profile was edited
</description>
</patchinfo>