snapd 2.49-1+deb11u1 source package in Debian

Changelog

snapd (2.49-1+deb11u1) bullseye-security; urgency=high

  * SECURITY UPDATE: local privilege escalation
    - 0015-cve-2021-44730-44731-4120.patch: Add validations of the
      location of the snap-confine binary within snapd.
    - 0015-cve-2021-44730-44731-4120: Fix race condition in snap-confine
      when preparing a private mount namespace for a snap.
    - 0016-cve-2021-2021-44730-44731-4120-auto-remove.patch: automatic
      remove vulnerable inactive core/snapd snaps
    - CVE-2021-44730
    - CVE-2021-44731
  * SECURITY UPDATE: data injection from malicious snaps
    - 0015-cve-2021-44730-44731-4120: Add validations of snap content
      interface and layout paths in snapd
    - CVE-2021-4120
    - LP: #1949368

 -- Michael Vogt <email address hidden>  Wed, 16 Feb 2022 10:56:34 +0100

Upload details

Uploaded by:
Michael Hudson-Doyle
Uploaded to:
Bullseye
Original maintainer:
Michael Hudson-Doyle
Architectures:
any all
Section:
misc
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Downloads

File Size SHA-256 Checksum
snapd_2.49-1+deb11u1.dsc 3.5 KiB 4b58675af811b5296bcbc0f48c6dabc6503b762d430ed5dfab455cc728c11e22
snapd_2.49.orig.tar.gz 4.8 MiB 8da73f19017bc129d4ee444c90993445a1748e63d6a3cf5192aac1fa3ecac9f8
snapd_2.49-1+deb11u1.debian.tar.xz 118.8 KiB 781c2b949378f1c8cd807c275f1a8e76b8e865fbba99183821b3a7fcee889e44

No changes file available.

Binary packages built by this source