-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 19 Jan 2022 22:46:37 +0000 Source: flatpak Architecture: source Version: 1.12.4-1~bpo11+1 Distribution: bullseye-backports Urgency: medium Maintainer: Utopia Maintenance Team <pkg-utopia-maintainers@lists.alioth.debian.org> Changed-By: Simon McVittie <smcv@debian.org> Changes: flatpak (1.12.4-1~bpo11+1) bullseye-backports; urgency=medium . * Rebuild for bullseye-backports. . flatpak (1.12.4-1) unstable; urgency=medium . * New upstream stable release * Alter the solution to CVE-2022-21682 to avoid regressions: - Revert semantics of --nofilesystem=host to be the same as 1.12.2 - Revert semantics of --nofilesystem=home to be the same as 1.12.2 - Add --nofilesystem=host:reset which means the same thing that --nofilesystem=host did in 1.12.3 - Users of flatpak-builder should update it to 1.2.2 to resolve CVE-2022-21682 * Other bug fixes: - Clarify documentation related to CVE-2022-21682 - Improve test coverage related to CVE-2022-21682 - Restore compatibility with older appstream-glib versions, for backports * Set high urgency to resolve regressions in 1.12.3 Checksums-Sha1: e9d238d957dde0cb1d9f79edc574d426ee81db59 3673 flatpak_1.12.4-1~bpo11+1.dsc 019ad5850d459fa78e4b09cae16fdebc2f50eafb 33272 flatpak_1.12.4-1~bpo11+1.debian.tar.xz 0c7b1ce5b5a66d0217b7b5c0c2154af7fffc99b9 11708 flatpak_1.12.4-1~bpo11+1_source.buildinfo Checksums-Sha256: 67aa8fcff3bd06d01a9a6909d0c81e7a368dee23ee6d789f942f6d9346cc8bf5 3673 flatpak_1.12.4-1~bpo11+1.dsc 7ad363032f9abdced676ca2d09e55c77c7d6f7d19c8d0839e338cb36d7857903 33272 flatpak_1.12.4-1~bpo11+1.debian.tar.xz 0b376f051830e577f1e8d9e9af1ab35a673c4a087b6cf9350c4b7f2c8f9de2f3 11708 flatpak_1.12.4-1~bpo11+1_source.buildinfo Files: 38c4b0a5128341c75690a1ae0659403f 3673 admin optional flatpak_1.12.4-1~bpo11+1.dsc 4c8ff8623fb76bfc49ddfe150f5cb06f 33272 admin optional flatpak_1.12.4-1~bpo11+1.debian.tar.xz abf9b1a6767e8bd803596990ac855284 11708 admin optional flatpak_1.12.4-1~bpo11+1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEENuxaZEik9e95vv6Y4FrhR4+BTE8FAmHuc1kACgkQ4FrhR4+B TE9aqA/9G00dSF4QP8C0etqY8Bbpkb0CKWzf5fyxHV7jggNt06+jW6gq7iUoLoXX ggG+rS3Ss3IOSTc9vB6OWrTfQ3+8bVCCFGD7/V0W2aKYJMYmEacR2zBiYdUAUvrN 5P24TRvVLaBsxGKXM2TdzWHA86wQxOFbOci1fidXow28ySn42Q0KI4HK5AwrZonJ cIY3PoIW1+DLAC9zPxvpJ1VRgpDmd8XCroyzuQreNTLB+Erd+8nbeKfA8TLPrLPR kbKQAEBmPWtdyWpq+cBL8SHw5CRDgcFMMdsA9+7i3yw6wRJLUR5zeeOC+LdmgPro bVcS9pGRx3AbTaujZVefFKjJQBOS8Tf5XwOOZj6U3sVQB/rqWWpRdVzD4gAXIYfL p5Fr7ioeenb0lyE+iOW5bPKfHFmO/SW1BNJhQw26rE9FF/7fpdpj8fH9exAXZoL/ gDOghSPs2ZhB+mv+X5cDwVOY4npiAAQQeNqmeLhJUl7pkJPLJ3PRjKHXtwiHJWGN hh330FkF4a74sqlSHRtvVp0P2qg4mz8f5/yzY7Vu9B+fb0hynpuBa7Dwh8HvtyY2 Red0WBENFXfyOiDLErVhsk9YbGUI0+80y/mPbF/bMLwNtLqPNMEXZQusyIgLKUz9 +SfZX2eEJAMIrPQHfOGtGMJSUbrA+Nw5Pp2CdqJi8XcLNRJn3dg= =LBHK -----END PGP SIGNATURE-----