Accepting request 978576 from home:cyphar:docker

Fix CVE references.

OBS-URL: https://build.opensuse.org/request/show/978576
OBS-URL: https://build.opensuse.org/package/show/Virtualization:containers/runc?expand=0&rev=126
This commit is contained in:
Aleksa Sarai 2022-05-23 03:24:41 +00:00 committed by Git OBS Bridge
parent 5dd3f813f2
commit 2646e7a7bf

View File

@ -16,12 +16,12 @@ Wed May 11 22:43:51 UTC 2022 - Aleksa Sarai <asarai@suse.com>
- Update to runc v1.1.2. Upstream changelog is available from - Update to runc v1.1.2. Upstream changelog is available from
https://github.com/opencontainers/runc/releases/tag/v1.1.2. https://github.com/opencontainers/runc/releases/tag/v1.1.2.
CVE-2022-24769 CVE-2022-29162 bsc#1199460
* A bug was found in runc where runc exec --cap executed processes with * A bug was found in runc where runc exec --cap executed processes with
non-empty inheritable Linux process capabilities, creating an atypical Linux non-empty inheritable Linux process capabilities, creating an atypical Linux
environment. For more information, see [GHSA-f3fp-gc8g-vw66][] and environment. For more information, see [GHSA-f3fp-gc8g-vw66][] and
CVE-2022-29162. CVE-2022-29162. bsc#1199460
* `runc spec` no longer sets any inheritable capabilities in the created * `runc spec` no longer sets any inheritable capabilities in the created
example OCI spec (`config.json`) file. example OCI spec (`config.json`) file.