Aleksa Sarai
|
2f40aa19ad
|
Accepting request 976494 from home:cyphar:docker
- Update to runc v1.1.2. Upstream changelog is available from
https://github.com/opencontainers/runc/releases/tag/v1.1.2.
CVE-2022-24769
* A bug was found in runc where runc exec --cap executed processes with
non-empty inheritable Linux process capabilities, creating an atypical Linux
environment. For more information, see [GHSA-f3fp-gc8g-vw66][] and
CVE-2022-29162.
* `runc spec` no longer sets any inheritable capabilities in the created
example OCI spec (`config.json`) file.
OBS-URL: https://build.opensuse.org/request/show/976494
OBS-URL: https://build.opensuse.org/package/show/Virtualization:containers/runc?expand=0&rev=123
|
2022-05-11 23:03:17 +00:00 |
|