Skip to content
flatpak 1.12.9

Security fixes:

 * Don't allow an executable name to be misinterpreted as a command-line
   option for bwrap(1). This prevents a sandbox escape where a malicious
   or compromised app could ask xdg-desktop-portal to generate a .desktop
   file with access to files outside the sandbox. (CVE-2024-32462)

Git-EVTag-v0-SHA512: 0b0f2a0e4e95cbc38df39312b5928b4aaf5275111673265a024f742d65583c87fa8cdc5176194c6b17435ec47dfe64bb7a338d774a307eb3a8d620dbd1fffc3a