Bug#949976: p11-kit 0.23.19 breaks p11 certificate trust in Flatpak runtimes that have 0.23.18 or older

Vincent Bernat bernat at debian.org
Wed Jan 29 13:31:48 GMT 2020


 ❦ 29 janvier 2020 12:43 +00, Simon McVittie <smcv at debian.org>:

>> More specifically, it breaks certificate trust in libraries and
>> applications inside the runtime if they are linked to p11-kit older
>> than 0.23.19. In particular this affects anything that uses GNUTLS,
>> notably the GNOME stack.
>
> I've sent a similar explanation upstream, in an attempt to stop discussion
> getting fragmented between downstream and Flatpak issue trackers.

Thanks, that's quite helpful!
-- 
Have a place for everything and keep the thing somewhere else; this is not
advice, it is merely custom.
		-- Mark Twain
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 832 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-gnutls-maint/attachments/20200129/d40d4a16/attachment.sig>


More information about the Pkg-gnutls-maint mailing list