[ubuntu/noble-security] containerd-app 1.7.28-0ubuntu1~24.04.2 (Accepted)

Nishit Majithia nishit.majithia at canonical.com
Thu Jan 29 05:42:45 UTC 2026


containerd-app (1.7.28-0ubuntu1~24.04.2) noble-security; urgency=medium

  * SECURITY UPDATE: local priv escalation vulnerability
    - debian/patches/CVE-2024-25621.patch: Fix directory permissions
    - CVE-2024-25621
  * SECURITY UPDATE: denial of service
    - debian/patches/CVE-2025-64329.patch: fix goroutine leak of container
      attach
    - CVE-2025-64329

containerd-app (1.7.28-0ubuntu1~24.04.1) noble; urgency=medium

  * New upstream version 1.7.28 (LP: #2112523)
  * Build with Go 1.23.
    - d/control: b-d on golang-1.23-go instead of golang-1.22-go
    - d/rules: add Go 1.23 to $PATH

containerd-app (1.7.27-0ubuntu1~24.04.1) noble; urgency=medium

  * New upstream version 1.7.27. (LP: #2085187)
  * d/p/CVE-2024-40635.patch: drop patch applied upstream

Date: 2026-01-28 07:36:10.480394+00:00
Changed-By: Nishit Majithia <nishit.majithia at canonical.com>
https://launchpad.net/ubuntu/+source/containerd-app/1.7.28-0ubuntu1~24.04.2
-------------- next part --------------
Sorry, changesfile not available.


More information about the noble-changes mailing list