- snapd (2.49-1+rpi1) bullseye-staging; urgency=medium
++snapd (2.49-1+rpi1+deb11u1) bullseye-staging; urgency=medium
+
+ [changes brought forward from 2.27.2-2+rpi1 by Peter Michael Green <plugwash@raspbian.org> at Thu, 24 Aug 2017 17:53:18 +0000]
+ * Treat unknown derivatives the same as Debian.
+ * Disable testsuite.
+ * Fix clean target.
+
- -- Raspbian forward porter <root@raspbian.org> Sat, 06 Mar 2021 20:36:56 +0000
++ -- Raspbian forward porter <root@raspbian.org> Mon, 21 Feb 2022 09:05:51 +0000
++
+ snapd (2.49-1+deb11u1) bullseye-security; urgency=high
+
+ * SECURITY UPDATE: local privilege escalation
+ - 0015-cve-2021-44730-44731-4120.patch: Add validations of the
+ location of the snap-confine binary within snapd.
+ - 0015-cve-2021-44730-44731-4120: Fix race condition in snap-confine
+ when preparing a private mount namespace for a snap.
+ - 0016-cve-2021-2021-44730-44731-4120-auto-remove.patch: automatic
+ remove vulnerable inactive core/snapd snaps
+ - CVE-2021-44730
+ - CVE-2021-44731
+ * SECURITY UPDATE: data injection from malicious snaps
+ - 0015-cve-2021-44730-44731-4120: Add validations of snap content
+ interface and layout paths in snapd
+ - CVE-2021-4120
+ - LP: #1949368
+
+ -- Michael Vogt <mvo@debian.org> Wed, 16 Feb 2022 10:56:34 +0100
snapd (2.49-1) unstable; urgency=high