[Pkg-utopia-maintainers] Bug#1132943: marked as pending in flatpak
Simon McVittie
noreply at salsa.debian.org
Wed Apr 8 00:20:28 BST 2026
Control: tag -1 pending
Hello,
Bug #1132943 in flatpak reported by you has been fixed in the
Git repository and is awaiting an upload. You can see the commit
message below and you can check the diff of the fix at:
https://salsa.debian.org/debian/flatpak/-/commit/800936ca25ce8199395031efa745135093adb4b9
------------------------------------------------------------------------
d/patches: Resolve CVE-2026-34078
Fix a sandbox escape involving symlinks passed to flatpak-portal.
A malicious or compromised Flatpak app could exploit this to achieve
arbitrary code execution on the host.
CVE-2026-34078, GHSA-cc2q-qc34-jprg
Closes: #1132943
------------------------------------------------------------------------
(this message was generated automatically)
--
Greetings
https://bugs.debian.org/1132943
More information about the Pkg-utopia-maintainers
mailing list