Gentoo Linux Security Advisory 202312-12 - Several vulnerabilities have been found in Flatpack, the worst of which lead to privilege escalation and sandbox escape. Versions greater than or equal to 1.14.4 are affected.
3018a3aaac2e8e504bce240edb2f33466f227c0b15ee1ce0adb6bbddcdceb2ca
Ubuntu Security Notice 4951-1 - Anton Lydike discovered that Flatpak did not properly handle special tokens in desktop files. An attacker could use this to specially craft a Flatpak application that could escape sandbox confinement.
0a23b56d1081ab2204a99d50c0d34c135491bf42cf34c1c9d5130145a1870e60
Red Hat Security Advisory 2021-1073-01 - Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux.
b20395adb87e56c72759aaaee0b90aed0baeb0ccd36031b5b38b98d100913b24
Red Hat Security Advisory 2021-1074-01 - Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux.
62e283b5d03e97d252f352960ede450fb10d5c8ae579653dea350ab9b7f28926
Red Hat Security Advisory 2021-1068-01 - Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux.
c79f54c2aaf572800a6888dd0c0daef83ef1af5667996579b0dee112621b0a29
Red Hat Security Advisory 2021-1002-01 - Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux.
a9bc93447ac26caa62d160ea83edfad431d223ed267ceca684f1ebc620b90622
Debian Linux Security Advisory 4868-1 - Anton Lydike discovered that sandbox restrictions in Flatpak, an application deployment framework for desktop apps, could by bypassed via a malicious .desktop file.
9246a129a35b9c6ff0025f10d7c8cbe9f8fc504b7cdf776c49781b28a60f4554