[ubuntu/hirsute-proposed] containerd 1.5.5-0ubuntu3~21.04.1 (Accepted)
Lucas Kanashiro
kanashiro at ubuntu.com
Tue Oct 19 23:01:08 UTC 2021
containerd (1.5.5-0ubuntu3~21.04.1) hirsute; urgency=medium
* Backport version 1.5.5-0ubuntu3 from Impish (LP: #1938908).
containerd (1.5.5-0ubuntu3) impish; urgency=medium
* SECURITY UPDATE: insufficiently restricted directory permissions
- debian/patches/1.5-reduce-directory-permissions.patch: reduce
permissions for bundle dir in runtime/v1/linux/bundle.go,
runtime/v1/linux/bundle_test.go, runtime/v2/bundle.go,
runtime/v2/bundle_default.go, runtime/v2/bundle_linux.go,
runtime/v2/bundle_linux_test.go, runtime/v2/bundle_test.go,
snapshots/btrfs/btrfs.go.
- CVE-2021-41103
containerd (1.5.5-0ubuntu2) impish; urgency=medium
* d/p/seccomp-support-clone3-syscall.patch: clone3 is explicitly requested
to give ENOSYS instead of the default EPERM, when CAP_SYS_ADMIN is unset.
(LP: #1943049).
Date: Fri, 08 Oct 2021 11:37:00 -0300
Changed-By: Lucas Kanashiro <kanashiro at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Lucas Kanashiro <kanashiro at riseup.net>
https://launchpad.net/ubuntu/+source/containerd/1.5.5-0ubuntu3~21.04.1
-------------- next part --------------
Format: 1.8
Date: Fri, 08 Oct 2021 11:37:00 -0300
Source: containerd
Binary: containerd golang-github-containerd-containerd-dev
Built-For-Profiles: noudeb
Architecture: source
Version: 1.5.5-0ubuntu3~21.04.1
Distribution: hirsute
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Lucas Kanashiro <kanashiro at ubuntu.com>
Description:
containerd - daemon to control runC
golang-github-containerd-containerd-dev - runC develpoment files
Launchpad-Bugs-Fixed: 1938908 1943049
Changes:
containerd (1.5.5-0ubuntu3~21.04.1) hirsute; urgency=medium
.
* Backport version 1.5.5-0ubuntu3 from Impish (LP: #1938908).
.
containerd (1.5.5-0ubuntu3) impish; urgency=medium
.
* SECURITY UPDATE: insufficiently restricted directory permissions
- debian/patches/1.5-reduce-directory-permissions.patch: reduce
permissions for bundle dir in runtime/v1/linux/bundle.go,
runtime/v1/linux/bundle_test.go, runtime/v2/bundle.go,
runtime/v2/bundle_default.go, runtime/v2/bundle_linux.go,
runtime/v2/bundle_linux_test.go, runtime/v2/bundle_test.go,
snapshots/btrfs/btrfs.go.
- CVE-2021-41103
.
containerd (1.5.5-0ubuntu2) impish; urgency=medium
.
* d/p/seccomp-support-clone3-syscall.patch: clone3 is explicitly requested
to give ENOSYS instead of the default EPERM, when CAP_SYS_ADMIN is unset.
(LP: #1943049).
Checksums-Sha1:
b4010aa91c83dee65038a1d068224da23a6520a0 2439 containerd_1.5.5-0ubuntu3~21.04.1.dsc
4262d033aa6e14d99fa94140679ccab981f61e5f 23392 containerd_1.5.5-0ubuntu3~21.04.1.debian.tar.xz
Checksums-Sha256:
699f21c51901ecdbf71a79d9ddb9de8d650e6dfb9d7b4f7d1151810bae4d5971 2439 containerd_1.5.5-0ubuntu3~21.04.1.dsc
ff1881be973487a853f1b226c14b756305771ea724436eaaab0e52729f3d203a 23392 containerd_1.5.5-0ubuntu3~21.04.1.debian.tar.xz
Files:
b155728649d7cbb6bed3386d7fb4e67a 2439 admin optional containerd_1.5.5-0ubuntu3~21.04.1.dsc
a7bf874308c18e11402409a3434296ba 23392 admin optional containerd_1.5.5-0ubuntu3~21.04.1.debian.tar.xz
Original-Maintainer: Debian Go Packaging Team <pkg-go-maintainers at lists.alioth.debian.org>
More information about the Hirsute-changes
mailing list