GitHub security advisory: https://github.com/ghostty-org/ghostty/security/advisories/GHSA-98wc-794w-gjx3 CVEs: None
Thanks for reporting. We use the version in the summary to indicated fixed version in the Gentoo repository, so I've removed it for now until a fixed version has been added.
Understood. The linked PR adds ghostty-1.1.0 which fixes the issue.
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=f4a5cb2887f16796d9a22be254fb17472c56b22f commit f4a5cb2887f16796d9a22be254fb17472c56b22f Author: sin-ack <sin-ack@protonmail.com> AuthorDate: 2025-01-30 23:53:50 +0000 Commit: Joonas Niilola <juippis@gentoo.org> CommitDate: 2025-02-01 08:31:12 +0000 x11-terms/ghostty: drop 1.0.1-r3 Bug: https://bugs.gentoo.org/949105 Signed-off-by: sin-ack <sin-ack@protonmail.com> Closes: https://github.com/gentoo/gentoo/pull/40393 Signed-off-by: Joonas Niilola <juippis@gentoo.org> x11-terms/ghostty/Manifest | 4 - .../files/ghostty-1.0.0-bzip2-dependency.patch | 13 --- ...t-gtk-move-most-version-checks-to-runtime.patch | 125 --------------------- ...stty-1.0.1-copy-terminfo-using-installdir.patch | 44 -------- x11-terms/ghostty/ghostty-1.0.1-r3.ebuild | 124 -------------------- 5 files changed, 310 deletions(-)
-> trivial since no stable version. Please reference the security bugs in the relevant commits when available. Thanks!