File _patchinfo of Package patchinfo
<patchinfo incident="8804"> <issue tracker="bnc" id="1100053">VUL-0: CVE-2018-10886: ant: arbitrary file write vulnerability / arbitrary code execution using a specially crafted zip file</issue> <issue tracker="cve" id="2018-10886"/> <category>security</category> <rating>moderate</rating> <packager>jsikes</packager> <description>This update for ant fixes the following issues: Security issue fixed: - CVE-2018-10886: Fixed a path traversal vulnerability in malformed zip file paths, which allowed arbitrary file writes and could potentially lead to code execution (bsc#1100053) This update was imported from the SUSE:SLE-15:Update update project.</description> <summary>Security update for ant</summary> </patchinfo>