This update for SuSEfirewall2 fixes the following issues:
CVE-2017-15638: Fixed security issue with too open implicit portmapper rules
(bsc#1064127): A source net restriction for rpc services
was not taken into account for the implicitly added rules for port 111,
making the portmap service accessible to everyone in the affected zone when
the 'rpc' matching was used.