This update for SuSEfirewall2 fixes the following issues:
CVE-2017-15638: Fixed a security issue with too open implicit portmapper rules
(bsc#1064127): A source net restriction for rpc services
was not taken into account for the implicitly added rules for port 111,
making the portmap service accessible to everyone in the affected zone.