Flatpak: Sandbox Escape A vulnerability has been discovered in Flatpak, which can lead to a sandbox escape. flatpak 2024-06-22 2024-06-22 930202 local 1.14.6 1.14.6

Flatpak is a Linux application sandboxing and distribution framework.

A vulnerability has been discovered in Flatpak. Please review the CVE identifier referenced below for details.

A malicious or compromised Flatpak app could execute arbitrary code outside its sandbox in conjunction with xdg-desktop-portal.

There is no known workaround at this time.

All Flatpak users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=sys-apps/flatpak-1.14.6"
CVE-2024-32462 graaff graaff