gvfs is a userspace virtual filesystem where mounts run as separate
processes which you talk to via D-Bus. It also contains a gio module
that seamlessly adds gvfs support to all applications using the gio
API. It also supports exposing the gvfs mounts to non-gio applications
using fuse.
This package contains the gvfs-fuse server that exports gvfs mounts to
all applications using FUSE.


Install Howto

  1. Update the package index:
    # sudo apt-get update
  2. Install gvfs-fuse deb package:
    # sudo apt-get install gvfs-fuse




2019-06-11 - Simon McVittie <smcv@debian.org>
gvfs (1.38.1-5) unstable; urgency=high
* Team upload
* d/p/gvfsdaemon-Check-that-the-connecting-client-is-the-same-u.patch:
Add missing authentication, preventing a local attacker from connecting
to an abstract socket address learned from netstat(8) and issuing
arbitrary D-Bus method calls
* d/p/gvfsdaemon-Only-accept-EXTERNAL-authentication.patch:
Harden private D-Bus connection by rejecting the more complicated
DBUS_COOKIE_SHA1 authentication mechanism and only accepting EXTERNAL.
2019-06-05 - Simon McVittie <smcv@debian.org>
gvfs (1.38.1-4) unstable; urgency=high
* Team upload
* Update from upstream gnome-3-30 branch to fix the admin backend
(Closes: #929755)
- Implement query_info_on_read/write to fix some race conditions
- Ensure that created files get the correct ownership (CVE-2019-12247)
- Ensure that copied files get the correct ownership (CVE-2019-12449)
* Remove obsolete version number from fuse dependency.
gvfs needs fuse (>= 2.8.4), but that version is older than oldstable,
so we can safely simplify to "Depends: fuse".
The versioned dependency is not satisfied by fuse3's unversioned
"Provides: fuse", but the unversioned dependency is. (Closes: #927221)
2019-02-09 - Simon McVittie <smcv@debian.org>
gvfs (1.38.1-3) unstable; urgency=high
* Team upload
* d/p/admin-Prevent-access-if-any-authentication-agent-isn-t-av.patch:
Add patch from upstream to prevent members of the sudo group from
bypassing the intended password check for privileged access to files
via the admin: backend if no polkit authentication agents are
available (CVE-2019-3827, Closes: #921816)
* d/p/*: Update to upstream gnome-3-30 branch, commit 1.38.1-9-gd4dab113
- admin: Fix CVE-2019-3827 (see above)
- autorun: Don't crash if an autorun file is not valid UTF-8
- mtp: Don't busy-loop retrying reading an event after failure
- udisks2: Reinstate support for deprecated comment=x-gvfs-show fstab
option syntax (but please use x-gvfs-show instead)
- tests: Use the right SMB port if running in the sandbox
- Update translations: eu, sk, sr
* d/gbp.conf: Configure for debian/buster and upstream/1.38.x branches
* d/control: Use debian/buster branch in Vcs-Git
2018-12-27 - Jeremy Bicha <jbicha@debian.org>
gvfs (1.38.1-2) unstable; urgency=medium
* Add -Wl,-O1 to our LDFLAGS
* debian/rules: Use dh_auto_build instead of make
* Bump Standards-Version to 4.3.0
2018-11-13 - Sebastien Bacher <seb128@ubuntu.com>
gvfs (1.38.1-1) unstable; urgency=medium
* New upstream release
2018-09-11 - Iain Lane <laney@debian.org>
gvfs (1.38.0-2) unstable; urgency=medium
* Install manpages into gvfs-common, as they were previously
2018-09-11 - Iain Lane <laney@debian.org>
gvfs (1.38.0-1) unstable; urgency=medium
* New upstream translation release
* Update gbp.conf to pkg-gnome's common file
* Bump Standards-Version to 4.2.1 (no changes required)
* Revert "d/watch: Watch for development versions"
* Build manpages for the deprecated commands too

