vulnerability
Red Hat: CVE-2019-8308: Important: flatpak security update (RHSA-2019:0375)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
7 | (AV:L/AC:M/Au:S/C:C/I:C/A:C) | 2019-02-12 | 2019-02-20 | 2025-01-28 |
Severity
7
CVSS
(AV:L/AC:M/Au:S/C:C/I:C/A:C)
Published
2019-02-12
Added
2019-02-20
Modified
2025-01-28
Description
Flatpak before 1.0.7, and 1.1.x and 1.2.x before 1.2.3, exposes /proc in the apply_extra script sandbox, which allows attackers to modify a host-side executable file.
Solution(s)
redhat-upgrade-flatpakredhat-upgrade-flatpak-builderredhat-upgrade-flatpak-debuginforedhat-upgrade-flatpak-develredhat-upgrade-flatpak-libs
References

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.