19
0
anag_factory 249efb2a41 Accepting request 1363798 from games:tools
- Apply security patches for embedded dependencies:
  * Add extract-zip-cve-2026-56876.patch to fix path traversal via
    malicious symlinks (bsc#1269757, CVE-2026-56876).
  * Add inline sed patches in %build to mitigate electron-updater
    credential leak (bsc#1269970, CVE-2026-54673).
  * Add inline sed patches in %build to mitigate app-builder-lib
    LD_LIBRARY_PATH hijack (bsc#1269968, CVE-2026-54672).
  * Note: The electron-updater and AppImage vulnerabilities do not
    affect the native RPM build at runtime, but the embedded code
    is sanitized to comply with automated security scanners.

OBS-URL: https://build.opensuse.org/request/show/1363798
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/heroic-games-launcher?expand=0&rev=16
2026-07-07 19:00:39 +00:00
S
Description
No description provided
418 KiB
Languages
Shell 100%