UbuntuUpdates.org

Package "flatpak"

Name: flatpak

Description:

Application deployment framework for desktop apps

Latest version: 1.14.6-1
Release: noble (24.04)
Level: base
Repository: universe
Homepage: https://flatpak.org/

Links


Download "flatpak"


Other versions of "flatpak" in Noble

No other version of this package is available in the Noble release.

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 1.14.6-1 2024-04-20 00:07:17 UTC

  flatpak (1.14.6-1) unstable; urgency=high

  * New upstream stable release 1.14.6
    - Don't allow an executable name to be misinterpreted as a command-line
      option for bwrap(1). This prevents a sandbox escape where a malicious
      or compromised app could ask xdg-desktop-portal to generate a .desktop
      file with access to files outside the sandbox. (CVE-2024-32462)
    - Don't parse `<developer><name/></developer>` as the application name
  * d/control: Drop alternative dependencies on transitional policykit-1.
    polkitd was released in Debian 12 and Ubuntu 22.04.

 -- Simon McVittie <email address hidden> Wed, 17 Apr 2024 19:34:28 +0100

CVE-2024-32462 Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. in versions before 1.10.9, 1.12.9, 1.14.6, and 1



About   -   Send Feedback to @ubuntu_updates