Oval Definition:oval:org.opensuse.security:def:101767
Revision Date:2022-03-04Version:1
Title:Security update for flatpak (Important)
Description:

This update for flatpak fixes the following issues:

Update to flatpak 1.10.7:

- CVE-2022-21682: Introduce new option --nofilesystem=host:reset to support flatpak-builder 1.2.2 (bsc#1194611). - CVE-2021-43860: A malicious repository could hav sent invalid application metadata in a way that hides some of the app permissions displayed during installation (bsc#1194610).
Family:unixClass:patch
Status:Reference(s):1065600
1136666
1152148
1155798
1156395
1170232
1171000
1171073
1171558
1172419
1172873
1173060
1173267
1174029
1174110
1174111
1174484
1174486
1175263
1175667
1175787
1175952
1175996
1175997
1175998
1175999
1176000
1176001
1176022
1176063
1176069
1194610
1194611
CVE-2020-14386
CVE-2021-43860
CVE-2022-21682
SUSE-SU-2022:0712-1
Platform(s):SUSE Linux Enterprise Desktop 15 SP3
SUSE Linux Enterprise High Performance Computing 15 SP3
SUSE Linux Enterprise Module for Desktop Applications 15 SP3
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2
SUSE Linux Enterprise Server 15 SP3
SUSE Linux Enterprise Server for SAP Applications 15 SP3
SUSE Linux Enterprise Storage 7.1
SUSE Manager Proxy 4.2
SUSE Manager Retail Branch Server 4.2
SUSE Manager Server 4.2
Product(s):
Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 15 SP3 is installed
  • OR SUSE Linux Enterprise High Performance Computing 15 SP3 is installed
  • OR SUSE Linux Enterprise Module for Desktop Applications 15 SP3 is installed
  • OR SUSE Linux Enterprise Server 15 SP3 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP3 is installed
  • OR SUSE Linux Enterprise Storage 7.1 is installed
  • OR SUSE Manager Proxy 4.2 is installed
  • OR SUSE Manager Retail Branch Server 4.2 is installed
  • OR SUSE Manager Server 4.2 is installed
  • AND Package Information
  • flatpak-1.10.7-4.12.1 is installed
  • OR flatpak-devel-1.10.7-4.12.1 is installed
  • OR flatpak-zsh-completion-1.10.7-4.12.1 is installed
  • OR libflatpak0-1.10.7-4.12.1 is installed
  • OR system-user-flatpak-1.10.7-4.12.1 is installed
  • OR typelib-1_0-Flatpak-1_0-1.10.7-4.12.1 is installed
  • BACK