Go to file
Aleksa Sarai 1eaf2f6f5b Accepting request 935874 from home:cyphar:docker
- Update to runc v1.0.3. Upstream changelog is available from
  https://github.com/opencontainers/runc/releases/tag/v1.0.3. CVE-2021-43784

  * A potential vulnerability was discovered in runc (related to an internal
    usage of netlink), however upon further investigation we discovered that
    while this bug was exploitable on the master branch of runc, no released
    version of runc could be exploited using this bug. The exploit required
    being able to create a netlink attribute with a length that would overflow a
    uint16 but this was not possible in any released version of runc. For more
    information see GHSA-v95c-p5hm-xq8f and CVE-2021-43784.

    Due to an abundance of caution we decided to do an emergency release with
    this fix, but to reiterate we do not believe this vulnerability was
    possible to exploit. Thanks to Felix Wilhelm from Google Project Zero for
    discovering and reporting this vulnerability so quickly.
  * Fixed inability to start a container with read-write bind mount of a
    read-only fuse host mount.
  * Fixed inability to start when read-only /dev in set in spec.
  * Fixed not removing sub-cgroups upon container delete, when rootless cgroup
    v2 is used with older systemd.
  * Fixed returning error from GetStats when hugetlb is unsupported (which
    causes excessive logging for kubernetes).

OBS-URL: https://build.opensuse.org/request/show/935874
OBS-URL: https://build.opensuse.org/package/show/Virtualization:containers/runc?expand=0&rev=118
2021-12-06 04:44:55 +00:00
.gitattributes * initial import of runC 0.0.9 2016-03-21 08:36:29 +00:00
runc-1.0.3.tar.xz Accepting request 935874 from home:cyphar:docker 2021-12-06 04:44:55 +00:00
runc-1.0.3.tar.xz.asc Accepting request 935874 from home:cyphar:docker 2021-12-06 04:44:55 +00:00
runc-rpmlintrc Accepting request 733478 from home:cyphar:containers:maint 2019-09-26 15:15:16 +00:00
runc.changes Accepting request 935874 from home:cyphar:docker 2021-12-06 04:44:55 +00:00
runc.keyring Accepting request 517286 from home:cyphar:containers:runc_use_signed_archive 2017-08-19 13:24:20 +00:00
runc.spec Accepting request 935874 from home:cyphar:docker 2021-12-06 04:44:55 +00:00