[Git][security-tracker-team/security-tracker][master] Add CVE-2021-43860/flatpak

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jan 12 21:25:34 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4486918b by Salvatore Bonaccorso at 2022-01-12T22:25:03+01:00
Add CVE-2021-43860/flatpak

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -10050,8 +10050,10 @@ CVE-2021-43861 (Mermaid is a Javascript based diagramming and charting tool that
 	- node-mermaid 8.13.8+~cs10.4.16-1
 	NOTE: https://github.com/mermaid-js/mermaid/security/advisories/GHSA-p3rp-vmj9-gv6v
 	NOTE: https://github.com/mermaid-js/mermaid/commit/066b7a0d0bda274d94a2f2d21e4323dab5776d83
-CVE-2021-43860
+CVE-2021-43860 [Permissions granted to applications can be hidden from the user at install time]
 	RESERVED
+	- flatpak 1.12.3-1
+	NOTE: https://github.com/flatpak/flatpak/security/advisories/GHSA-qpjc-vq3c-572j
 CVE-2021-43859
 	RESERVED
 CVE-2021-43858 (MinIO is a Kubernetes native application for cloud storage. Prior to v ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4486918b9844e1082dd3fb731f1fafa853b11085

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4486918b9844e1082dd3fb731f1fafa853b11085
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220112/d5818cad/attachment.htm>


More information about the debian-security-tracker-commits mailing list