Accepting request 1075227 from home:cyphar:docker

Add bsc references for CVEs.
   - CVE-2023-25809 bsc#1209884
   - CVE-2023-27561 bsc#1208962
   - CVE-2023-28642 bsc#1209888

OBS-URL: https://build.opensuse.org/request/show/1075227
OBS-URL: https://build.opensuse.org/package/show/Virtualization:containers/runc?expand=0&rev=138
This commit is contained in:
Aleksa Sarai 2023-03-29 13:06:28 +00:00 committed by Git OBS Bridge
parent 861dacb77e
commit e6cfba71b6

View File

@ -3,7 +3,11 @@ Wed Mar 29 07:05:52 UTC 2023 - Aleksa Sarai <asarai@suse.com>
- Update to runc v1.1.5. Upstream changelog is available from
<https://github.com/opencontainers/runc/releases/tag/v1.1.5>.
CVE-2023-25809 CVE-2023-27561 CVE-2023-28642
Includes fixes for the following CVEs:
- CVE-2023-25809 bsc#1209884
- CVE-2023-27561 bsc#1208962
- CVE-2023-28642 bsc#1209888
* Fix the inability to use `/dev/null` when inside a container.
* Fix changing the ownership of host's `/dev/null` caused by fd redirection