guix-devel/gnu
Leo Famulari e2760d1a8b
gnu: Flatpak: Update to 1.2.3 [security fixes].
From 'NEWS' in the source distribution:

The CVE-2019-5736 runc vulnerability is about using /proc/self/exe
to modify the host side binary from the sandbox. This mostly does not
affect flatpak since the flatpak sandbox is not run with root permissions.
However, there is one case (running the apply_extra script for system
installs) where this happens, so this release contains a fix for that.

 * Don't expose /proc in apply_extra script sandbox.

* gnu/packages/package-management.scm (flatpak): Update to 1.2.3.
2019-02-12 17:14:09 -05:00
..
bootloader
build
installer
packages gnu: Flatpak: Update to 1.2.3 [security fixes]. 2019-02-12 17:14:09 -05:00
services services: docker: Make shepherd service also require "dbus-system", 2019-02-11 18:29:01 +01:00
system pack, vm: Fix incorrect use of 'package-transitive-propagated-inputs'. 2019-02-11 23:23:28 +01:00
tests
artwork.scm artwork: Update snapshot to e951905. 2019-02-10 23:25:01 +01:00
bootloader.scm
ci.scm
installer.scm gnu: Move most packages from guile.scm to new module. 2019-01-28 14:57:10 +01:00
local.mk gnu: runc: Update to 1.0.0-rc6 [fixes CVE-2019-5736]. 2019-02-12 12:53:12 -05:00
packages.scm
services.scm
system.scm
tests.scm