-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 16 Mar 2023 13:22:36 +0000 Source: flatpak Architecture: source Version: 1.14.4-1~bpo11+1 Distribution: bullseye-backports Urgency: high Maintainer: Utopia Maintenance Team <pkg-utopia-maintainers@lists.alioth.debian.org> Changed-By: Simon McVittie <smcv@debian.org> Changes: flatpak (1.14.4-1~bpo11+1) bullseye-backports; urgency=high . * Rebuild for bullseye-backports. - d/control: Relax libseccomp build-dependency to 2.5.0 - d/control, d/gbp.conf: Adjust git branch for bullseye-backports . flatpak (1.14.4-1) unstable; urgency=high . * New upstream security fix release - Escape special characters when displaying permissions and metadata, preventing malicious apps from manipulating the appearance of the permissions list using crafted metadata (CVE-2023-28101) - If a Flatpak app is run on a Linux virtual console (tty1, etc.), don't allow copy/paste via the TIOCLINUX ioctl (CVE-2023-28100). Note that this is specific to virtual consoles: Flatpak is not vulnerable to this if run from a graphical terminal emulator such as xterm, gnome-terminal or Konsole. - Translation update: pl Checksums-Sha1: 279d5df826eb5992ce1080a61e078c4461484bbd 3716 flatpak_1.14.4-1~bpo11+1.dsc 8ca5554b2bf082866c537bdf46db9f2a8c6e10c3 34920 flatpak_1.14.4-1~bpo11+1.debian.tar.xz 4dba252ec5c7d07f91170db8c00d34ac2fecd4fb 12294 flatpak_1.14.4-1~bpo11+1_source.buildinfo ce72230b06014ff8848904ada2caca8b423c8995 1637484 flatpak_1.14.4.orig.tar.xz Checksums-Sha256: 0c35c2b9f5c6fe87b835c16c9ea2e396b16ffc5395f8210f531e92d6ad62eb51 3716 flatpak_1.14.4-1~bpo11+1.dsc 719d03b8bea03d810c9106e372759e653d65b5e954f1c77aa8a7075285b6900f 34920 flatpak_1.14.4-1~bpo11+1.debian.tar.xz 53bf3d9b79fe867633ea54e43d4467cd68bfddca9a3654a2354bb5c0bbb93043 12294 flatpak_1.14.4-1~bpo11+1_source.buildinfo 8a34dbd0b67c434e7598b98ec690953d046f0db26e480aeafb46d72aec716799 1637484 flatpak_1.14.4.orig.tar.xz Files: 41cd2734f1b58cd94fee2d6b2d8ad7ee 3716 admin optional flatpak_1.14.4-1~bpo11+1.dsc 1e0645aca6441aebdbe423c44641ea64 34920 admin optional flatpak_1.14.4-1~bpo11+1.debian.tar.xz f3235277e26cfe868703a088eff7e840 12294 admin optional flatpak_1.14.4-1~bpo11+1_source.buildinfo de04545ae7d547fdb65db93601591531 1637484 admin optional flatpak_1.14.4.orig.tar.xz -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEENuxaZEik9e95vv6Y4FrhR4+BTE8FAmQTMAIACgkQ4FrhR4+B TE+VXg//RC+k8J+dBAdRWL2MoycM6OdlwKpBxcAaKObp5OIo4i+sr8e0HUCpulF5 dZrO8wAfDXAlAx+qY++NHIxBnkNk06bYj7P5o8xwR4Jg1c/fD1pUuas270fncCsj Tl+BYN6FVjKSsjVJswZlec88WHCBXJ5KeObpCxncAmm6UPmpJxlbCsvzZdf0NFLn NnagAvUfebWpAvw5306LT+8juGrXlEQ2NBjAqLIXO2k0W0M99ppm3yR3mIkM4nif Ihoalss3XiICTvMR+Cj4J2zE0BUcJl/e1JVy0EiklyIgCR6hQhd7cParogqGbT8r tAmD+2WR6zAiuepIZTNaeweI3+/Wvktt5yqHCc07aMOXZCh/o8D703/Ito8jykgf sPMNBJ3ndPtOwZSRPdfDLpjde45I/UkQ6hDJNpgmNiYa2ZbAu4z2HDijEdt6C76A EkTh+9toJt0tcvv7TVG39EvSvPMoLuAKxMulLirsCbrRm2+8derd8y/Mjaj3jorM yz3eM35+qmxpEYFvgegrlL602hLwm0VNdyjKzlyBRD1zFAJVtZRAboY6iw7psB1r ulQt3+kFe2S7RUVsLDNf7N3sUewSjZ6rhfB0n6ef8IkhSCjtZ02bMIvRPo6qDTT+ xYbi6I4av1z78R1tORqoI40TgcIoiuVVWTqUIn4YGrQ7VfDHBc4= =e9/U -----END PGP SIGNATURE-----