File _patchinfo of Package patchinfo.19619

<patchinfo incident="19619">
  <issue tracker="bnc" id="1185281">VUL-0: CVE-2021-31607: salt: Command injection in the snapper module</issue>
  <issue tracker="bnc" id="1186674">Package installation fails on Ubuntu 20.04 SSH minion because dpkgnotify is not found</issue>
  <issue tracker="cve" id="2021-31607"/>
  <issue tracker="jsc" id="ECO-3212"/>
  <issue tracker="jsc" id="SLE-18028"/>
  <issue tracker="jsc" id="SLE-18033"/>
  <packager>PSuarezHernandez</packager>
  <rating>important</rating>
  <category>security</category>
  <summary>Security update for salt</summary>
  <description>This update for salt fixes the following issues:

- Check if dpkgnotify is executable (bsc#1186674)
- Update to Salt release version 3002.2 (jsc#ECO-3212, jsc#SLE-18033, jsc#SLE-18028)
- Drop support for Python2. Obsoletes `python2-salt` package (jsc#SLE-18028)
- Fix issue parsing errors in ansiblegate state module
- Prevent command injection in the snapper module (bsc#1185281, CVE-2021-31607)
- transactional_update: detect recursion in the executor
- Add subpackage `salt-transactional-update` (jsc#SLE-18033)
- Remove duplicate directories
</description>
<zypp_restart_needed/>
</patchinfo>
openSUSE Build Service is sponsored by