File _patchinfo of Package patchinfo.21413
<patchinfo incident="21413"> <issue tracker="bnc" id="1190265">VUL-0: CVE-2021-21996: salt: root exploit on minion when able to access a file source</issue> <issue tracker="cve" id="2021-21996"/> <packager>PSuarezHernandez</packager> <rating>moderate</rating> <category>security</category> <summary>Security update for salt</summary> <description>This update for salt fixes the following issues: - Support querying for JSON data in external sql pillar. - Exclude the full path of a download URL to prevent injection of malicious code. (bsc#1190265, CVE-2021-21996) </description> <zypp_restart_needed/> </patchinfo>