{"id":"SUSE-SU-2016:1946-1","summary":"Security update for hawk2","details":"This update for hawk2 fixes one security issue and one bug.\n\nThe following security change is included:\n\n-  To prevent Clickjacking attacks, set Content-Security-Policy to frame-ancestors 'self' (bsc#984619)\n\nThe following non-security issue was fixed:\n\n-  In the Wizards UI, prevent text display issues due to internationalization with certain strings (bsc#987696)\n","modified":"2016-08-03T13:26:11Z","published":"2016-08-03T13:26:11Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2016/suse-su-20161946-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/984619"},{"type":"REPORT","url":"https://bugzilla.suse.com/987696"}],"affected":[{"package":{"name":"hawk2","ecosystem":"SUSE:Linux Enterprise High Availability Extension 12 SP1","purl":"pkg:rpm/suse/hawk2&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2012%20SP1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.0.1+git.1456406635.49e230d-12.1"}]}],"ecosystem_specific":{"binaries":[{"hawk2":"1.0.1+git.1456406635.49e230d-12.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2016:1946-1.json"}}],"schema_version":"1.7.3"}