Bug 2062417 - Rebase flatpak to 1.10.x
Summary: Rebase flatpak to 1.10.x
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat Enterprise Linux 8
Classification: Red Hat
Component: flatpak
Version: 8.7
Hardware: Unspecified
OS: Unspecified
unspecified
unspecified
Target Milestone: rc
: ---
Assignee: Debarshi Ray
QA Contact: Desktop QE
URL:
Whiteboard:
: 1888399 (view as bug list)
Depends On:
Blocks: 2062423 2062430 2062432 2068332
TreeView+ depends on / blocked
 
Reported: 2022-03-09 18:15 UTC by Debarshi Ray
Modified: 2022-11-08 09:35 UTC (History)
2 users (show)

Fixed In Version: flatpak-1.10.7-1.el8
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2022-11-08 09:16:54 UTC
Type: Bug
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Issue Tracker RHELPLAN-115069 0 None None None 2022-03-09 18:24:35 UTC
Red Hat Product Errata RHBA-2022:7459 0 None None None 2022-11-08 09:16:58 UTC

Description Debarshi Ray 2022-03-09 18:15:33 UTC
We are currently shipping the flatpak-1.8.x series in RHEL 8.6, which is no longer actively maintained upstream.

Meanwhile upstream has moved forward quite a bit.  eg., there's the flatpak-1.10.x series (in Fedora 34 and RHEL 9 Beta) and the flatpak-1.12.x series (in Fedora >= 35 and RHEL 9).  Later this year, around September, another new stable series will come out, which we will have in Fedora 37.

I propose that we update the Flatpak stack in RHEL 8 by at least one step.  Such as, rebasing flatpak to the 1.10.x series, which is still actively maintained upstream.

There are some practical benefits to this:

(a) It's a lot easier to backport patches to a newer branch.

(b) We will get a lot of bug-fixes and improvements for free, including the fixes for moderate CVEs.  (Important CVEs will still have to be backported all the way to RHEL 7.9z, so this won't reduce the work for those.)

Comment 1 Debarshi Ray 2022-03-09 18:16:09 UTC
Scratch build: https://brewweb.engineering.redhat.com/brew/taskinfo?taskID=43690739

Comment 2 Debarshi Ray 2022-03-10 10:36:07 UTC
Built flatpak-1.10.7-1.el8:
https://brewweb.engineering.redhat.com/brew/taskinfo?taskID=43709087

Comment 3 Debarshi Ray 2022-03-10 21:17:52 UTC
*** Bug 1888399 has been marked as a duplicate of this bug. ***

Comment 10 errata-xmlrpc 2022-11-08 09:16:54 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (flatpak bug fix and enhancement update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHBA-2022:7459


Note You need to log in before you can comment on or make changes to this bug.