Accepted flatpak 0.8.3-1~bpo8+1 (all source) into jessie-backports->backports-policy, jessie-backports

Format: 1.8
Date: Mon, 27 Feb 2017 11:07:00 +0000
Source: flatpak
Binary: flatpak flatpak-builder flatpak-tests gir1.2-flatpak-1.0 libflatpak-dev libflatpak-doc libflatpak0
Architecture: all source
Version: 0.8.3-1~bpo8+1
Distribution: jessie-backports
Urgency: medium
Maintainer: Utopia Maintenance Team <pkg-utopia-maintainers@lists.alioth.debian.org>
Changed-By: Simon McVittie <smcv@debian.org>
Closes: 846338 855129
 flatpak    - Application deployment framework for desktop apps
 flatpak-builder - Flatpak application building helper
 flatpak-tests - Application deployment framework for desktop apps (tests)
 gir1.2-flatpak-1.0 - Application deployment framework for desktop apps (introspection)
 libflatpak0 - Application deployment framework for desktop apps (library)
 libflatpak-dev - Application deployment framework for desktop apps (development)
 libflatpak-doc - Application deployment framework for desktop apps (documentation)
 flatpak (0.8.3-1~bpo8+1) jessie-backports; urgency=medium
   * Backport to jessie
     - debian/gbp.conf: adjust for this branch
     - debian/control: (build-)depend on libgtk-3-bin, not
     - d/p/debian/Try-gtk-3.0-version-of-the-icon-cache-utility-first.patch:
       try to use gtk-update-icon-cache-3.0 before gtk-update-icon-cache
     - d/p/flatpak-dir-Adapt-to-old-GLib-APIs.patch:
       avoid relying on newer GLib GFileEnumerator API
     - d/p/flatpak-json-Backport-G_DECLARE_FINAL_TYPE-G_DECLARE_DERI.patch:
       backport convenience macros from GLib 2.44, which are slightly too
       new for jessie
 flatpak (0.8.3-1) unstable; urgency=medium
   * New upstream bugfix release
     - fixes portals' ability to identify confined apps
       (Closes: #855129)
     - better support for third-party (proprietary) OpenGL drivers
     - better handling of errors for extra-data
     - handle extra-data properly for runtimes (as well as apps)
     - respect required version for runtimes (as well as apps)
     - flatpak list: Don't break if some local ref is not deployed
     - builder: Look for appstream data in /app/share/metadata also
     - builder: Fix buildsystem=cmake builds
     - Add progress reporting to extra-data download
     - Fix uid/gid for directories in document portal
   * Duplicate the profile.d snippet in /etc/X11/Xsession.d so it
     applies to X11 sessions, not just login shells. This matches the
     upstream intention: X11 sessions have traditionally run in a login
     shell on Red Hat derivatives, but not in Debian derivatives.
     (Closes: #846338)
 flatpak (0.8.2-1) unstable; urgency=medium
   * New upstream bugfix release
     - drop remaining patch, applied upstream
     - security fix: prevent writing to per-user-installed fonts
       and Flatpak extensions (typically locales)
   * d/control: flatpak-tests Recommends python, which is needed for
     one test (silencing a lintian warning)
 flatpak (0.8.1-1) unstable; urgency=medium
   * New upstream release, very similar to 0.8.0-2
     - drop all patches
   * d/p/flatpak-system-helper-remove-dangling-reference-to-EXTERN.patch:
     do not search /export/share, which seems to have been unintended
 flatpak (0.8.0-2) unstable; urgency=medium
   * d/p/Use-seccomp-to-filter-out-TIOCSTI-ioctl.patch:
     Add patch from upstream to prevent contained apps from using
     TIOCSTI ioctl. This would let the app inject commands into the
     terminal from which it was invoked (CVE-2017-5226). This was
     initially fixed in bubblewrap by calling setsid(), but that
     breaks the ability to use Ctrl+Z or Ctrl+C on a flatpak-confined
     process, so it is being made optional; prevent the attack here
     instead, in a way that doesn't break shells.
   * d/p/Fix-update-of-standalone-bundle.patch:
     Add patch from upstream to fix updating an existing app with
     "flatpak install --bundle foo.flatpak"
   * d/p/Make-sure-var-tmp-is-not-on-tmpfs.patch:
     Add patch from upstream to mount ~/.var/APP/cache/tmp at /var/tmp
     inside the sandbox, so apps can rely on /var/tmp being on disk
   * d/p/Document-the-DefaultBranch-key.patch,
     Add patches from upstream to fill in some missing documentation
   * d/p/testlibrary-ensure-that-contents_array-is-NULL-terminated.patch,
     Fix some bugs in the tests
   * debian/tests/: split out builder-python into a separate autopkgtest,
     it too has more dependencies
 flatpak (0.8.0-1) unstable; urgency=medium
   * New upstream stable release
     - Bump bubblewrap dependencies to 0.1.5 following configure.ac
     - Bump ostree dependency to 2016.15 following upstream release notes
       (the minimal dependency is 2016.14, but 2016.15 is recommended)
     - debian/libflatpak0.symbols: add new ABIs
     - d/p/pull-Exit-early-on-error-without-aborting-transaction.patch:
       drop patch, applied upstream
   * debian/gbp.conf: switch upstream branch to debian/0.8.x to follow
     the first upstream stable-branch
   * debian/watch: only follow stable-branches
   * debian/org.freedesktop.Flatpak.pkla: configure polkit 0.105 to
     allow sudoers to uninstall apps and runtimes without re-authenticating,
     following upstream changes to the org.freedesktop.Flatpak.rules used in
     newer polkit versions
   * d/p/Update-Polish-translation.patch: update translated strings from
     upstream git
   * d/p/flatpak-builder-1-fix-typo.patch: fix a typo in the man page
