Accepting request 892389 from home:cyphar:docker
- Update to runc v1.0.0~rc94. Upstream changelog is available from https://github.com/opencontainers/runc/releases/tag/v1.0.0-rc94 Breaking Changes: * cgroupv1: kernel memory limits are now always ignored, as kmemcg has been effectively deprecated by the kernel. Users should make use of regular memory cgroup controls. Regression Fixes: * seccomp: fix 32-bit compilation errors * runc init: fix a hang caused by deadlock in seccomp/ebpf loading code * runc start: fix "chdir to cwd: permission denied" for some setups - Remove upstreamed patches: - 0001-cloned_binary-switch-from-error-to-warning-for-SYS_m.patch OBS-URL: https://build.opensuse.org/request/show/892389 OBS-URL: https://build.opensuse.org/package/show/Virtualization:containers/runc?expand=0&rev=109
This commit is contained in:
18
runc.changes
18
runc.changes
@@ -1,3 +1,19 @@
|
||||
-------------------------------------------------------------------
|
||||
Wed May 12 08:03:58 UTC 2021 - Aleksa Sarai <asarai@suse.com>
|
||||
|
||||
- Update to runc v1.0.0~rc94. Upstream changelog is available from
|
||||
https://github.com/opencontainers/runc/releases/tag/v1.0.0-rc94
|
||||
Breaking Changes:
|
||||
* cgroupv1: kernel memory limits are now always ignored, as kmemcg has
|
||||
been effectively deprecated by the kernel. Users should make use of regular
|
||||
memory cgroup controls.
|
||||
Regression Fixes:
|
||||
* seccomp: fix 32-bit compilation errors
|
||||
* runc init: fix a hang caused by deadlock in seccomp/ebpf loading code
|
||||
* runc start: fix "chdir to cwd: permission denied" for some setups
|
||||
- Remove upstreamed patches:
|
||||
- 0001-cloned_binary-switch-from-error-to-warning-for-SYS_m.patch
|
||||
|
||||
-------------------------------------------------------------------
|
||||
Mon Apr 26 07:54:54 UTC 2021 - Aleksa Sarai <asarai@suse.com>
|
||||
|
||||
@@ -14,7 +30,7 @@ Wed Feb 3 04:09:17 UTC 2021 - Aleksa Sarai <asarai@suse.com>
|
||||
* Cgroupv2 support is no longer considered experimental.
|
||||
* Mountinfo parsing code has been reworked significantly.
|
||||
* Special ENOSYS handling for seccomp profiles to avoid making new
|
||||
syscalls unusable for glibc.
|
||||
syscalls unusable for glibc.
|
||||
* Various rootless containers improvements.
|
||||
* The "selinux" and "apparmor" buildtags have been removed, and now all runc
|
||||
builds will have SELinux and AppArmor support enabled.
|
||||
|
Reference in New Issue
Block a user