41554f0a6c
- Add a backport of https://github.com/moby/moby/pull/35424, which fixes a security issue where a maliciously crafted image could be used to crash a Docker daemon. bsc#1066210 CVE-2017-14992 + bsc1066210-0001-vendor-update-to-github.com-vbatts-tar-split-v0.10.2.patch - Add a backport of https://github.com/moby/moby/pull/35399, which fixes a security issue where a Docker container (with a disabled AppArmor profile) could write to /proc/scsi/... and subsequently DoS the host. bsc#1066801 CVE-2017-16539 + bsc1066801-0001-oci-add-proc-scsi-to-masked-paths.patch - Fix bsc#1059011 The systemd service helper script used a timeout of 60 seconds to start the daemon, which is insufficient in cases where the daemon takes longer to start. Instead, set the service type from 'simple' to 'notify' and remove the now superfluous helper script. - fix bsc#1057743: Add a Requires: fix_bsc_1057743 which is provided by the newer version of docker-libnetwork. This is necessary because of a versioning bug we found in bsc#1057743. OBS-URL: https://build.opensuse.org/request/show/540195 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/docker?expand=0&rev=63 |
||
---|---|---|
_service | ||
.gitattributes | ||
.gitignore | ||
80-docker.rules | ||
bsc1045628-0001-devicemapper-remove-container-rootfs-mountPath-after.patch | ||
bsc1055676-0001-daemon-oci-obey-CL_UNPRIVILEGED-for-user-namespaced-.patch | ||
bsc1064781-0001-Allow-to-override-build-date.patch | ||
bsc1066210-0001-vendor-update-to-github.com-vbatts-tar-split-v0.10.2.patch | ||
bsc1066801-0001-oci-add-proc-scsi-to-masked-paths.patch | ||
docker-17.07.0_ce.tar.xz | ||
docker-audit.rules | ||
docker-plugin-message.txt | ||
docker-rpmlintrc | ||
docker-update-message.txt | ||
docker.changes | ||
docker.service | ||
docker.spec | ||
README_SUSE.md | ||
secrets-0001-daemon-allow-directory-creation-in-run-secrets.patch | ||
secrets-0002-SUSE-implement-SUSE-container-secrets.patch | ||
sysconfig.docker | ||
tests.sh |