[Pkg-utopia-maintainers] Bug#1132943: marked as pending in flatpak

Simon McVittie noreply at salsa.debian.org
Wed Apr 8 00:20:28 BST 2026


Control: tag -1 pending

Hello,

Bug #1132943 in flatpak reported by you has been fixed in the
Git repository and is awaiting an upload. You can see the commit
message below and you can check the diff of the fix at:

https://salsa.debian.org/debian/flatpak/-/commit/800936ca25ce8199395031efa745135093adb4b9

------------------------------------------------------------------------
d/patches: Resolve CVE-2026-34078

Fix a sandbox escape involving symlinks passed to flatpak-portal.
A malicious or compromised Flatpak app could exploit this to achieve
arbitrary code execution on the host.

CVE-2026-34078, GHSA-cc2q-qc34-jprg
Closes: #1132943
------------------------------------------------------------------------

(this message was generated automatically)
-- 
Greetings

https://bugs.debian.org/1132943



More information about the Pkg-utopia-maintainers mailing list