File _patchinfo of Package patchinfo.23021

<patchinfo incident="23021">
  <issue tracker="bnc" id="1196137">Partner-L3: tomcat depencency on log4j 1.x</issue>
  <issue tracker="bnc" id="1195255">VUL-0: CVE-2022-23181: tomcat: local privilege escalation vulnerability</issue>
  <issue tracker="cve" id="2022-23181"/>
  <packager>mbussolotto</packager>
  <rating>important</rating>
  <category>security</category>
  <summary>Security update for tomcat</summary>
  <description>This update for tomcat fixes the following issues:

Security issues fixed:

- CVE-2022-23181: Make calculation of session storage location more robust (bsc#1195255)
- Remove log4j (bsc#1196137) 
</description>
</patchinfo>
openSUSE Build Service is sponsored by