There's a merged pull request on the void-packages repository Update tracker and libcue for CVE-2023-43641. https://github.com/void-linux/void-packages/pull/46540 Description: #### Testing the changes - I tested the changes in this PR: **briefly** See here for more details: https://github.blog/2023-10-09-coordinated-disclosure-1-click-rce-on-gnome-cve-2023-43641/ The public example file only tests libcue, so that was all I could test, but the tracker update should also fix the sandbox escape issue.