Boletines de Vulnerabilidades

DSA-3895 flatpak - security update


Información sobre el sistema

   
Software afectado Debian

Descripción

It was discovered that Flatpak, an application deployment framework fordesktop apps insufficiently restricted file permissinons in third-partyrepositories, which could result in privilege escalation.

More info:

https://www.debian.org/security/2017/dsa-3895

Identificadores estándar

Propiedad Valor
CVE CVE-2017-9780 and DSA-3895.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2017-06-23

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT