{"id":"openSUSE-SU-2019:2477-1","summary":"Recommended update for bcm20702a1-firmware","details":"This update for bcm20702a1-firmware fixes the following issues:\n\nChanges in bcm20702a1-firmware:\n\n- Use https to fetch the archive to avoid person-in-the-middle attacks (boo#1154083)\n- Fetch & install another variant firmware (0a5c:21e8) (boo#1087996)\n","modified":"2019-11-10T05:19:56Z","published":"2019-11-10T05:19:56Z","references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/D6UZOS3SGLCHEJRVMAIL5XZQV7GGFFQE/#D6UZOS3SGLCHEJRVMAIL5XZQV7GGFFQE"},{"type":"REPORT","url":"https://bugzilla.suse.com/1087996"},{"type":"REPORT","url":"https://bugzilla.suse.com/1154083"}],"affected":[{"package":{"name":"bcm20702a1-firmware","ecosystem":"openSUSE:Leap 15.0","purl":"pkg:rpm/opensuse/bcm20702a1-firmware&distro=openSUSE%20Leap%2015.0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1201650-lp151.3.3.1"}]}],"ecosystem_specific":{"binaries":[{"bcm20702a1-firmware":"1201650-lp151.3.3.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2019:2477-1.json"}},{"package":{"name":"bcm20702a1-firmware","ecosystem":"openSUSE:Leap 15.1","purl":"pkg:rpm/opensuse/bcm20702a1-firmware&distro=openSUSE%20Leap%2015.1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1201650-lp151.3.3.1"}]}],"ecosystem_specific":{"binaries":[{"bcm20702a1-firmware":"1201650-lp151.3.3.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2019:2477-1.json"}}],"schema_version":"1.7.3"}