Improper access control in Flatpak - #VU141399
Published: August 11, 2026
Vulnerability details
The vulnerability allows a local user to bypass anti-downgrade checks and downgrade system apps or runtimes.
The vulnerability exists due to improper access control in the system helper RemoveLocalRef method when removing the remote ref of an app or runtime. A local user can remove the remote ref to bypass anti-downgrade checks and downgrade system apps or runtimes.
On a multi-user system, exploitation requires an active local login session and can expose other users of the same system to an older app version with unfixed vulnerabilities.