Bug 2221792

Summary: Update flatpak to 1.12.8
Product: Red Hat Enterprise Linux 9 Reporter: Debarshi Ray <debarshir>
Component: flatpakAssignee: Debarshi Ray <debarshir>
Status: CLOSED ERRATA QA Contact: Petr Schindler <pschindl>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: 9.3CC: desktop-qa-list, tpelka
Target Milestone: rcKeywords: Rebase, Triaged
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: flatpak-1.12.8-1.el9 Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2023-11-07 08:36:11 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 2180312    

Description Debarshi Ray 2023-07-10 18:50:22 UTC
A new bug-fix update for the 1.12.x branch came out, specifically targeted for RHEL 9:
https://github.com/flatpak/flatpak/releases/tag/1.12.8

Most interestingly, it includes some security fixes (bug 2180312) and addresses several SELinux denials encountered in Fedora (bug 2053634, bug 2070350, bug 2070741, bug 2071215, bug 2071217).

We are currently carrying flatpak-1.12.7 in RHEL 9.  flatpak-1.12.8 was already built for Fedora 36 in March 2023 before it went EOL, so it has had some testing.

Comment 1 Debarshi Ray 2023-07-11 10:20:44 UTC
Merge request: https://gitlab.com/redhat/centos-stream/rpms/flatpak/-/merge_requests/16

Comment 2 Debarshi Ray 2023-07-11 10:54:53 UTC
Built flatpak-1.12.8-1.el9:
https://kojihub.stream.rdu2.redhat.com/koji/taskinfo?taskID=2465422

Comment 6 errata-xmlrpc 2023-11-07 08:36:11 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (Moderate: flatpak security, bug fix, and enhancement update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2023:6518