Security Bugfix Announcement: Distribution maintainers please update your packages!
Today Simon McVittie released updates fixing security issues on the supported Flatpak stable branches 1.14.4, 1.12.8, and 1.10.8.
One issue (CVE-2023-28101) involves maliciously crafted metadata hiding permissions using special characters and the other (CVE-2023-28100) involves an ioctl system call allowing copy/paste on virtual terminals (tty1, tty2, etc.)
https://github.com/flatpak/flatpak/releases/tag/1.14.4
16.3.2023 19:23Security Bugfix Announcement: Distribution maintainers please update your packages!Today Simon McVittie released updates fixing security...Episode 501 of the Linux Unplugged podcast features an insightful interview with @ramcq on Flatpak and the exciting plans for Flathub in 2023! Check it out on your podcast app.
14.3.2023 16:14Episode 501 of the Linux Unplugged podcast features an insightful interview with @ramcq on Flatpak and the exciting plans for Flathub in...Here are some of the @matrixdotorg channels you can join for Flatpak discussion:
- Flatpak: https://matrix.to/#/#flatpak:matrix.org
- Portals: https://matrix.to/#/#xdg-desktop-portal:matrix.org
- Flathub: https://matrix.to/#/#flathub:matrix.org
- Freedesktop-sdk: https://matrix.to/#/#freedesktop-sdk:matrix.org
It's a great day for folks who love the Meson build system since Simon McVittie just released Flatpak 1.15.0 (an unstable development release) with support for building Flatpak using Meson!
24.10.2022 19:43It's a great day for folks who love the Meson build system since Simon McVittie just released Flatpak 1.15.0 (an unstable development...The culmination of several months of work by dozens of people, Flatpak 1.14.0 is now out! Check out the release notes here:
https://github.com/flatpak/flatpak/releases/tag/1.14.0
There will be a Flatpak BoF session tomorrow at noon CDT (UTC-5) in Guadalajara, Mexico and online as part of GUADEC! Please join if you'd like to collaborate on Flatpak, Flathub, or portals. See https://guadec.org for how to join
22.7.2022 18:39There will be a Flatpak BoF session tomorrow at noon CDT (UTC-5) in Guadalajara, Mexico and online as part of GUADEC! Please join if...The "--unused" option of the "flatpak uninstall" command is also worth checking out if you want to reclaim disk space, at the cost of potentially having to re-download runtimes later if they become needed again.
3.7.2022 16:46The "--unused" option of the "flatpak uninstall" command is also worth checking out if you want to reclaim disk space,...You can also remove your user data (and reclaim some disk space) during an app uninstall by including "--delete-data" on your "flatpak uninstall $APP" command line.
3.7.2022 16:46You can also remove your user data (and reclaim some disk space) during an app uninstall by including "--delete-data" on your...A little-known (and destructive!) feature of Flatpak: you can remove the data leftover from all apps that have been uninstalled with the command "flatpak uninstall --delete-data". By default, your user data is left untouched when you uninstall an app.
Specifically this removes data stored by the app in ~/.var/app/$APP_ID (the default writable location for per-app data) and also resets any overridden permissions.
3.7.2022 16:46A little-known (and destructive!) feature of Flatpak: you can remove the data leftover from all apps that have been uninstalled with the..."How many Flathub apps reuse other package formats?" by
Will Thompson
https://blogs.gnome.org/wjjt/2022/06/14/how-many-flathub-apps-reuse-other-package-formats/
30.6.2022 18:14"How many Flathub apps reuse other package formats?" by Will...If you write a blog post or give a presentation on something Flatpak related, and it seems fit for http://flatpak.org, please submit a PR to add it to one of these pages:
- https://flatpak.org/blog-posts/
- https://flatpak.org/presentations/
Here's the relevant repo on GitHub:
https://github.com/flatpak/flatpak.github.io
Shout-out to @jimmac for designing snazzy new branding for Flatpak!
15.6.2022 17:43Shout-out to @jimmac for designing snazzy new branding for Flatpak!There are two Flathub talks to look forward to on Friday at LAS: "Flathub: now and next" by Jorge Castro and Rob McQueen, and "Status of Flathub payments/donations support" by Daniel Silverstone
Linux App Summit can be attended either remotely or in Italy; check out https://linuxappsummit.org/
27.4.2022 16:22There are two Flathub talks to look forward to on Friday at LAS: "Flathub: now and next" by Jorge Castro and Rob McQueen, and...There will be two BoF sessions at LAS this weekend that are Flatpak related: one for Flatpak and one for XDG Portals. Please join and bring constructive ideas!
A BoF is a space where people with a common interest can collaborate, it stands for Birds of a Feather.
See https://linuxappsummit.org/
27.4.2022 16:14There will be two BoF sessions at LAS this weekend that are Flatpak related: one for Flatpak and one for XDG Portals. Please join and bring...Stable releases of Flatpak 1.12.3 and 1.10.6 were just released, and they fix important security issues including a CVE as well as a number of other bugs, so please update as soon as your distribution provides them!
12.1.2022 20:11Stable releases of Flatpak 1.12.3 and 1.10.6 were just released, and they fix important security issues including a CVE as well as a number...The GNOME Foundation is seeking contractors to work on improving Flathub! Details here: https://discourse.flathub.org/t/seeking-contractors-for-work-on-flathub/1889
23.11.2021 18:55The GNOME Foundation is seeking contractors to work on improving Flathub! Details here:...