File _patchinfo of Package patchinfo
<patchinfo incident="8352"> <issue tracker="bnc" id="1098369"></issue> <issue tracker="cve" id="2018-3760"/> <category>security</category> <rating>important</rating> <packager>jordimassaguerpla</packager> <description>This update for rubygem-sprockets fixes the following issues: The following security vulnerability was addressed: - CVE-2018-3760: Fixed a directory traversal issue in sprockets/server.rb:forbidden_request?(), which allowed remote attackers to read arbitrary files via specially crafted requests. (boo#1098369) </description> <summary>Security update for rubygem-sprockets</summary> </patchinfo>