{"id":"openSUSE-SU-2019:1246-1","summary":"Security update for blueman","details":"This update for blueman fixes the following issues:\n\nThe following security issue was addressed:\n\n- Fixed the polkit authorization checks in blueman, which previously allowed\n  any user with access to the D-Bus system bus to trigger certain network\n  configuration logic in blueman without authentication (boo#1083066).\n\nThis update was imported from the openSUSE:Leap:15.0:Update update project.","modified":"2019-04-19T12:06:01Z","published":"2019-04-19T12:06:01Z","references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/5NMNIOA2NQTPRQPUOLVBCN4HRQF4Z57I/#5NMNIOA2NQTPRQPUOLVBCN4HRQF4Z57I"},{"type":"REPORT","url":"https://bugzilla.suse.com/1083066"}],"affected":[{"package":{"name":"blueman","ecosystem":"SUSE:Package Hub 15","purl":"pkg:rpm/suse/blueman&distro=SUSE%20Package%20Hub%2015"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.0.6-bp150.2.6.1"}]}],"ecosystem_specific":{"binaries":[{"blueman-lang":"2.0.6-bp150.2.6.1","blueman":"2.0.6-bp150.2.6.1","thunar-sendto-blueman":"2.0.6-bp150.2.6.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2019:1246-1.json"}}],"schema_version":"1.7.3"}