Rozšírené hľadanie
Piatok 19. Apríl 2024 |
meniny má Jela
Mageia 2023-0115: flatpak security update

LinuxSecurity.com 24.03.2023 16:00 If a malicious Flatpak app is run on a Linux virtual console such as /dev/tty1, it can copy text from the virtual console and paste it back into the virtual console's input buffer, from which the command might be run by the user's shell after the Flatpak app has exited. This is similar to CVE-2017-5226, but using the TIOCLINUX ioctl command instead