Количество 15
Количество 15
BDU:2026-05831
Уязвимость инструмента для управления приложениями и средами Flatpak, связанная с отслеживанием символьных ссылок UNIX, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации и выполнить произвольный код
CVE-2026-34078
Flatpak is a Linux application sandboxing and distribution framework. Prior to 1.16.4, the Flatpak portal accepts paths in the sandbox-expose options which can be app-controlled symlinks pointing at arbitrary paths. Flatpak run mounts the resolved host path in the sandbox. This gives apps access to all host files and can be used as a primitive to gain code execution in the host context. This vulnerability is fixed in 1.16.4.
CVE-2026-34078
Flatpak is a Linux application sandboxing and distribution framework. Prior to 1.16.4, the Flatpak portal accepts paths in the sandbox-expose options which can be app-controlled symlinks pointing at arbitrary paths. Flatpak run mounts the resolved host path in the sandbox. This gives apps access to all host files and can be used as a primitive to gain code execution in the host context. This vulnerability is fixed in 1.16.4.
CVE-2026-34078
Flatpak is a Linux application sandboxing and distribution framework. Prior to 1.16.4, the Flatpak portal accepts paths in the sandbox-expose options which can be app-controlled symlinks pointing at arbitrary paths. Flatpak run mounts the resolved host path in the sandbox. This gives apps access to all host files and can be used as a primitive to gain code execution in the host context. This vulnerability is fixed in 1.16.4.
CVE-2026-34078
Flatpak is a Linux application sandboxing and distribution framework. ...
SUSE-SU-2026:1713-1
Security update for flatpak
SUSE-SU-2026:1600-1
Security update for flatpak
SUSE-SU-2026:1541-1
Security update for flatpak
SUSE-SU-2026:1511-1
Security update for flatpak
RLSA-2026:21757
Important: flatpak security update
RLSA-2026:21756
Important: flatpak security update
RLSA-2026:21755
Important: flatpak security update
ELSA-2026-21757
ELSA-2026-21757: flatpak security update (IMPORTANT)
ELSA-2026-21756
ELSA-2026-21756: flatpak security update (IMPORTANT)
ELSA-2026-21755
ELSA-2026-21755: flatpak security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2026-05831 Уязвимость инструмента для управления приложениями и средами Flatpak, связанная с отслеживанием символьных ссылок UNIX, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации и выполнить произвольный код | CVSS3: 10 | 2% Низкий | 4 месяца назад | |
CVE-2026-34078 Flatpak is a Linux application sandboxing and distribution framework. Prior to 1.16.4, the Flatpak portal accepts paths in the sandbox-expose options which can be app-controlled symlinks pointing at arbitrary paths. Flatpak run mounts the resolved host path in the sandbox. This gives apps access to all host files and can be used as a primitive to gain code execution in the host context. This vulnerability is fixed in 1.16.4. | CVSS3: 10 | 2% Низкий | 4 месяца назад | |
CVE-2026-34078 Flatpak is a Linux application sandboxing and distribution framework. Prior to 1.16.4, the Flatpak portal accepts paths in the sandbox-expose options which can be app-controlled symlinks pointing at arbitrary paths. Flatpak run mounts the resolved host path in the sandbox. This gives apps access to all host files and can be used as a primitive to gain code execution in the host context. This vulnerability is fixed in 1.16.4. | CVSS3: 9 | 2% Низкий | 4 месяца назад | |
CVE-2026-34078 Flatpak is a Linux application sandboxing and distribution framework. Prior to 1.16.4, the Flatpak portal accepts paths in the sandbox-expose options which can be app-controlled symlinks pointing at arbitrary paths. Flatpak run mounts the resolved host path in the sandbox. This gives apps access to all host files and can be used as a primitive to gain code execution in the host context. This vulnerability is fixed in 1.16.4. | CVSS3: 10 | 2% Низкий | 4 месяца назад | |
CVE-2026-34078 Flatpak is a Linux application sandboxing and distribution framework. ... | CVSS3: 10 | 2% Низкий | 4 месяца назад | |
SUSE-SU-2026:1713-1 Security update for flatpak | 3 месяца назад | |||
SUSE-SU-2026:1600-1 Security update for flatpak | 3 месяца назад | |||
SUSE-SU-2026:1541-1 Security update for flatpak | 3 месяца назад | |||
SUSE-SU-2026:1511-1 Security update for flatpak | 3 месяца назад | |||
RLSA-2026:21757 Important: flatpak security update | около 2 месяцев назад | |||
RLSA-2026:21756 Important: flatpak security update | 2 месяца назад | |||
RLSA-2026:21755 Important: flatpak security update | около 2 месяцев назад | |||
ELSA-2026-21757 ELSA-2026-21757: flatpak security update (IMPORTANT) | 17 дней назад | |||
ELSA-2026-21756 ELSA-2026-21756: flatpak security update (IMPORTANT) | 2 месяца назад | |||
ELSA-2026-21755 ELSA-2026-21755: flatpak security update (IMPORTANT) | около 1 месяца назад |
Уязвимостей на страницу