-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 30 Apr 2024 16:50:10 +0100 Source: flatpak Binary: flatpak flatpak-dbgsym flatpak-tests flatpak-tests-dbgsym gir1.2-flatpak-1.0 libflatpak-dev libflatpak0 libflatpak0-dbgsym Architecture: i386 Version: 1.14.8-1~deb12u1 Distribution: bookworm Urgency: medium Maintainer: i386 Build Daemon (x86-grnet-01) Changed-By: Simon McVittie Description: flatpak - Application deployment framework for desktop apps flatpak-tests - Application deployment framework for desktop apps (tests) gir1.2-flatpak-1.0 - Application deployment framework for desktop apps (introspection) libflatpak-dev - Application deployment framework for desktop apps (development) libflatpak0 - Application deployment framework for desktop apps (library) Changes: flatpak (1.14.8-1~deb12u1) bookworm; urgency=medium . * Backport upstream stable release for Debian 12 * Changes relative to 1.14.4-1+deb12u1 in bookworm-security: - New upstream stable release 1.14.6 + Don't parse `` as though it was the application name + Install a tmpfiles.d snippet to clean up /var/tmp/flatpak-cache-* during boot + Stop http transfers if a download in progress becomes very slow + Silence warnings when using GLib 2.77.0 or later + Bypass page cache for backend requests in revokefs, fixing installation errors with libostree 2023.4 or later + Show AppStream metadata in `flatpak remote-info` as intended, fixing a regression in 1.9.1 + Don't let Flatpak apps inherit $VK_DRIVER_FILES or $VK_ICD_FILENAMES from the host system, which would be wrong in the sandbox + Fix forward-compatibility with libappstream 0.17.x and 1.0 + Fix a memory leak + Fix some compiler warnings + Make the test failure produce a clearer message if a required tool is missing + Don't force `GIO_USE_VFS=local` for programs launched via flatpak-spawn + Documentation improvements - New upstream stable release 1.14.7 + Automatically reload D-Bus session bus configuration when apps are installed or upgraded, ensuring that any new .service files get picked up + Allow apps to be run if the D-Bus system bus is missing or non-functional + Add several more environment variables to the list not inherited into the sandbox: * $LD_AUDIT, $LD_PRELOAD for ld.so * $__EGL_VENDOR_LIBRARY_DIRS, etc. for EGL * $VK_ADD_DRIVER_FILES, etc. for Vulkan * $container, when running Flatpak inside a container manager + Use xdg-desktop-portal-gnome, if installed, to detect whether apps are running in the background + If an app's data is migrated to a new name and then deleted, don't try to migrate it again, avoiding a recursive symlink loop + Don't leak temporary variable $new_dirs from /etc/profile.d/flatpak.sh into user shell sessions + Avoid an out-of-bounds left-shift (which is technically undefined behaviour) when hashing object names + Fix critical warnings "GFileInfo created without standard::is-symlink" when using /var/lib/flatpak/extension with testing/unstable glib2.0 + Fix validation of documentation against Docbook DTD + Fix a misleading comment in the test for CVE-2024-32462 + Fix a double-free in the test suite + Skip more tests if bubblewrap works but FUSE doesn't - New upstream stable release 1.14.8 + Respin of 1.14.7 reverting unintended submodule changes - d/control: Move dbus-system-bus from Depends to Recommends. `flatpak run` no longer has a working system bus as a hard requirement (verified in `podman run --privileged --rm -it debian:sid-slim`) - Drop CVE-2024-32462 patches, included in the upstream stable release - debian/test.sh: Disable http proxy if used, to ensure we can reach a HTTP server on localhost during automated tests * Changes relative to 1.14.8-1 in unstable: - Revert polkitd dependencies to polkitd | policykit-1 as previously used in bookworm - Revert pkgconf dependencies to pkg-config as previously used in bookworm - Revert location of systemd unit to /lib/systemd/system as previously used in bookworm, dropping versioned dependency on debhelper 13.11.6~ - Revert changes related to Debian 13 GIR XML packaging policy Checksums-Sha1: cd322563dad22d05c879a90d0f4513f722cebe6c 5471760 flatpak-dbgsym_1.14.8-1~deb12u1_i386.deb 438d519b93b3f9679fb86ff2fa1eb2e42395c591 8552808 flatpak-tests-dbgsym_1.14.8-1~deb12u1_i386.deb ef5f60c71e00a784030448631395a109714f861d 1196680 flatpak-tests_1.14.8-1~deb12u1_i386.deb c1c63b21a0e414754729546f935630d00f5cff02 14366 flatpak_1.14.8-1~deb12u1_i386-buildd.buildinfo 926c22a086cffeb85b63561a85fb67fa5a735bf7 1441004 flatpak_1.14.8-1~deb12u1_i386.deb 64072ebeec1c4b0455321cd4a70f5e47b83be022 24956 gir1.2-flatpak-1.0_1.14.8-1~deb12u1_i386.deb 881b7194ee52604ef3ec6ee63cd168310b8e0611 68372 libflatpak-dev_1.14.8-1~deb12u1_i386.deb 62e722d7432af8f47706430e49587d584f2cf8f2 1289320 libflatpak0-dbgsym_1.14.8-1~deb12u1_i386.deb d604cec0e1a5ff7d1d5f30defe9c6c0fd093faf9 392888 libflatpak0_1.14.8-1~deb12u1_i386.deb Checksums-Sha256: c3cbec65d8ad1fccb8f024b21b006d48b0623aca7d0553bde1ae6fe349560d69 5471760 flatpak-dbgsym_1.14.8-1~deb12u1_i386.deb 988661185302b079d9bca873d927a1fee1343cdaef65aa219697a12e77459892 8552808 flatpak-tests-dbgsym_1.14.8-1~deb12u1_i386.deb 951a5cd428d2d869c1e3309cb715081d48b0a56894a153a1c926a377a59e66f9 1196680 flatpak-tests_1.14.8-1~deb12u1_i386.deb 2b9cd4dbfa3aa7c0633b030b6ed63bb3b36e5adbe2d6c7dd61adcd3386af6428 14366 flatpak_1.14.8-1~deb12u1_i386-buildd.buildinfo 35d0a6cd66054bff6501b8bf1999a0c1104f306fddae6c122bc80aa8b03b14bb 1441004 flatpak_1.14.8-1~deb12u1_i386.deb c82c60d7e36b609d63470ef648c3d46a5c92f42567992d5d1596023d3163b2d0 24956 gir1.2-flatpak-1.0_1.14.8-1~deb12u1_i386.deb acd0225f2bc19f301ed4ebcaadb4e64d4210faa3db333e0a178b5bd6393c7b7d 68372 libflatpak-dev_1.14.8-1~deb12u1_i386.deb e24ed1f105d65b6022c9d40a600eb69b5eed1d5735364c831c0813666a5f61e0 1289320 libflatpak0-dbgsym_1.14.8-1~deb12u1_i386.deb 87fac10541c61a6234b6108bb6a346df3ff1ccfb58f175dbf189faf1e5fad89a 392888 libflatpak0_1.14.8-1~deb12u1_i386.deb Files: 14b364edf736e0a944e4ec0303584cfe 5471760 debug optional flatpak-dbgsym_1.14.8-1~deb12u1_i386.deb 7753e6666b5423ede7f57263407fb215 8552808 debug optional flatpak-tests-dbgsym_1.14.8-1~deb12u1_i386.deb 1101317c7bf66b95997400833c8e9c2b 1196680 misc optional flatpak-tests_1.14.8-1~deb12u1_i386.deb 3b272ef4df6aa659756568cca6eae437 14366 admin optional flatpak_1.14.8-1~deb12u1_i386-buildd.buildinfo c69f7929a71c024bb5c269ac9ed84f4b 1441004 admin optional flatpak_1.14.8-1~deb12u1_i386.deb f3a2e6e02bacd127d416cf44a2bf6f75 24956 introspection optional gir1.2-flatpak-1.0_1.14.8-1~deb12u1_i386.deb fe321b6a33e92e653963c17048298669 68372 libdevel optional libflatpak-dev_1.14.8-1~deb12u1_i386.deb fc8feae3d9a18578fda38ffff99894f7 1289320 debug optional libflatpak0-dbgsym_1.14.8-1~deb12u1_i386.deb 995b5368cad3de873199832e662c8e51 392888 libs optional libflatpak0_1.14.8-1~deb12u1_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEyTfXx8sBpQ0Lh3cUU9a0/LcaTpMFAmZuCmQACgkQU9a0/Lca TpMcXQ//VTQEeQEGLHukvQYEwpCM5BEARmhI9192SjGfNPE3+gFywepNNYesaZ9I 3LF/lOxqNcqvUP1AmWnwOTmkY6a/azGjSXIAFEzPhLyt2QuoubZ3287kvafGJqy1 1tf2RSWBWZ5EK/eDuiA/uT55zbG67ScaaijB2rbMaiYEQGjlsqEm+hNYVEhl+vZq FXXwZ5cwQD6cp7z+/sqoad3lBFYxa/MvamdMtYuht3m8wMt2GtMP8tOXPBKjdHsd RgEQdI4Dxw+fqN9IwO+u6NzAyZYxXq8DvneceozwM8Vg4k5YhMa+J9Q4oT/qGxMO uzEY+P2TO+JnmuXC8wZK/T33baVW3YF9+jjuUmHBRKE8dGuEyYZ4jxMHo338KQkJ G3sbO49pvJcxhqQPNlkNuIw/tqLKST02Eu81BllCux+iHqW1iLYi38XNN2SGBedz ePnFkkCxJWVvSW1wfHYeB1bI+Fm0aM84liPQ9JfdVZ1RxW5aCZJyXnl4ovlFphkC Yg6MWyboVotds4132mjvuLfXLQdM4TIdhehlh7N0VdLXTmAsi+N+Ki/AGtVAkoFZ ZpKJclnr1J6usw/bsI8Be/elnk+Zo6mVsKwQOxGTwZ8v2nxkmuKtgRmF1ZB4IQsI W86ti9OCEcjzp8kqdPnlCMluMoq99sLJISOoWs33aO44jWKBVgk= =IIjB -----END PGP SIGNATURE-----