Opened 5 hours ago

Last modified 5 hours ago

#20430 assigned enhancement

xdg-desktop-portal-0.18.4 (currency)

Reported by: Xi Ruoyao Owned by: Douglas R. Reno
Priority: high Milestone: 12.3
Component: BOOK Version: git
Severity: normal Keywords:
Cc:

Description

New patch version, release in Apr.

Change History (1)

comment:1 by Douglas R. Reno, 5 hours ago

Owner: changed from blfs-book to Douglas R. Reno
Priority: normalhigh
Status: newassigned

There is an 8.4/10 CVE fixed in this release. It allows for a sandbox escape via the RequestBackground portal, and several proof of concept exploits exist out in the wild that use GNOME and KDE applications.

Note: See TracTickets for help on using tickets.