UbuntuUpdates.org

Package "ubuntu-core-launcher"

Name: ubuntu-core-launcher

Description:

Transitional package for snapd

Latest version: 2.67.1+24.04
Release: noble (24.04)
Level: updates
Repository: universe
Head package: snapd
Homepage: https://github.com/snapcore/snapd

Links


Download "ubuntu-core-launcher"


Other versions of "ubuntu-core-launcher" in Noble

Repository Area Version
base universe 2.62+24.04build1
security universe 2.63+24.04ubuntu0.1
proposed universe 2.67.1+24.04

Changelog

Version: 2.67.1+24.04 2025-03-10 23:07:05 UTC

  snapd (2.67.1+24.04) noble; urgency=medium

  * New upstream release, LP: #2089691
    - Fix apparmor permissions to allow snaps access to kernel modules
      and firmware on UC24, which also fixes the kernel-modules-control
      interface on UC24
    - AppArmor prompting (experimental): disallow /./ and /../ in path
      patterns
    - LP: #2090938 Fix 'snap run' getent based user lookup in case of bad PATH
    - Fix snapd using the incorrect AppArmor version during undo of an
      refresh for regenerating snap profiles
    - Add new syscalls to base templates
    - hardware-observe interface: allow riscv_hwprobe syscall
    - mount-observe interface: allow listmount and statmount syscalls

Source diff to previous version
2089691 [SRU] 2.67.1
2090938 $SNAP_USER_COMMON empty when getent cannot be found in $PATH

Version: 2.66.1+24.04 2024-11-26 17:07:04 UTC

  snapd (2.66.1+24.04) noble; urgency=medium

  * New upstream release, LP: #2083490
    - AppArmor prompting (experimental): Fix kernel prompting support
      check
    - Allow kernel snaps to have content slots
    - Fix ignoring snaps in try mode when amending

Source diff to previous version
2083490 [SRU] 2.66.1

Version: 2.65.3+24.04 2024-10-15 21:07:23 UTC

  snapd (2.65.3+24.04) noble; urgency=medium

  * New upstream release, LP: #2077473
    - Fix missing aux info from store on snap setup

Source diff to previous version
2077473 [SRU] 2.65.1

Version: 2.63.1+24.04 2024-08-22 15:07:07 UTC

  snapd (2.63.1+24.04) noble; urgency=medium

  * New upstream release, LP: #2061179
    - Improve snap-confine compatibility with nvidia drivers
    - steam-support interface: remove all AppArmor and seccomp
      restrictions to improve user experience
    - opengl interface: improve compatibility with nvidia drivers

 -- Ernest Lotter <email address hidden> Wed, 21 Aug 2024 00:39:59 +0200

Source diff to previous version
2061179 [SRU] 2.63

Version: 2.63+24.04ubuntu0.1 2024-08-01 10:07:17 UTC

  snapd (2.63+24.04ubuntu0.1) noble-security; urgency=medium

  * SECURITY UPDATE: sandbox escape via $HOME/bin
    - interfaces/builtin/home: explicitly deny writing to @{HOME}/bin
    - CVE-2024-1724
  * SECURITY UPDATE: denial-of-service via crafted files in squashfs image
    - snap, snapdir, squashfs: improve validation of target file
      mode/types
    - CVE-2024-29068
  * SECURITY UPDATE: information disclosure via crafted symlinks in
    squashfs image
    - snap, snapdir, squashfs: improve external symlink validation
    - CVE-2024-29069

 -- Alex Murray <email address hidden> Fri, 26 Jul 2024 12:02:26 +0930

CVE-2024-1724 In snapd versions prior to 2.62, when using AppArmor for enforcement of sandbox permissions, snapd failed to restrict writes to the $HOME/bin path.
CVE-2024-29068 In snapd versions prior to 2.62, snapd failed to properly check the file type when extracting a snap. The snap format is a squashfs file-system image
CVE-2024-29069 In snapd versions prior to 2.62, snapd failed to properly check the destination of symbolic links when extracting a snap. The snap format is a squas



About   -   Send Feedback to @ubuntu_updates