Jump to content
Compatible Support Forums
Sign in to follow this  
news

[gentoo-announce] [ GLSA 201706-22 ] libksba: Denial of Service and information disclosure

Recommended Posts

-----BEGIN PGP SIGNED MESSAGE-----

Hash: SHA256

 

- -------------------------------------------------------------------------

Debian Security Advisory DSA-3895-1 security ( -at -) debian.org

https://www.debian.org/security/ Moritz Muehlenhoff

June 22, 2017 https://www.debian.org/security/faq

- -------------------------------------------------------------------------

 

Package : flatpak

CVE ID : CVE-2017-9780

 

It was discovered that Flatpak, an application deployment framework for

desktop apps insufficiently restricted file permissinons in third-party

repositories, which could result in privilege escalation.

 

For the stable distribution (stretch), this problem has been fixed in

version 0.8.5-2+deb9u1.

 

For the unstable distribution (sid), this problem has been fixed in

version 0.8.7-1.

 

We recommend that you upgrade your flatpak packages.

 

Further information about Debian Security Advisories, how to apply

these updates to your system and frequently asked questions can be

found at: https://www.debian.org/security/

 

 

 

Share this post


Link to post

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now
Sign in to follow this  

×