UbuntuUpdates.org

Package "containerd"

Name: containerd

Description:

daemon to control runC

Latest version: 1.5.9-0ubuntu1~20.04.4
Release: focal (20.04)
Level: updates
Repository: main
Homepage: https://containerd.io

Links


Download "containerd"


Other versions of "containerd" in Focal

Repository Area Version
base main 1.3.3-0ubuntu2
security main 1.5.9-0ubuntu1~20.04.4

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 1.5.9-0ubuntu1~20.04.4 2022-05-16 17:06:23 UTC

  containerd (1.5.9-0ubuntu1~20.04.4) focal-security; urgency=medium

  * SECURITY UPDATE: Insecure handling of image volumes
    - debian/patches/CVE-2022-23648.patch: Use fs.RootPath when mounting
    volumes. (LP: #1973054)
    - CVE-2022-23648

 -- Paulo Flabiano Smorigo <email address hidden> Thu, 12 May 2022 13:42:43 +0000

Source diff to previous version
1973054 containerd regression for CVE-2022-23648 in latest version 1.5.9-0ubuntu1~20.04.1
CVE-2022-23648 containerd is a container runtime available as a daemon for Linux and Windows. A bug was found in containerd prior to versions 1.6.1, 1.5.10, and 1.1

Version: 1.5.9-0ubuntu1~20.04.1 2022-04-27 05:06:21 UTC

  containerd (1.5.9-0ubuntu1~20.04.1) focal; urgency=medium

  * Backport version 1.5.9-0ubuntu1 from Jammy (LP: #1955413, #1960449).
    - d/rules: set GO111MODULE to off.

 -- Lucas Kanashiro <email address hidden> Wed, 09 Feb 2022 17:23:51 -0300

Source diff to previous version
1955413 Update to containerd 1.5.9

Version: 1.5.5-0ubuntu3~20.04.2 2022-03-02 22:07:17 UTC

  containerd (1.5.5-0ubuntu3~20.04.2) focal-security; urgency=medium

  * SECURITY UPDATE: Insecure handling of image volumes
    - debian/patches/CVE-2022-23648.patch: Use fs.RootPath when mounting
    volumes.
    - CVE-2022-23648

 -- Paulo Flabiano Smorigo <email address hidden> Fri, 25 Feb 2022 20:15:25 +0000

Source diff to previous version

Version: 1.5.5-0ubuntu3~20.04.1 2021-11-04 19:07:27 UTC

  containerd (1.5.5-0ubuntu3~20.04.1) focal; urgency=medium

  * Backport version 1.5.5-0ubuntu3 from Impish (LP: #1938908).
    - d/rules: set GO111MODULE to off, this avoid Internet connection during
      the build.

Source diff to previous version

Version: 1.5.2-0ubuntu1~20.04.3 2021-10-04 19:06:17 UTC

  containerd (1.5.2-0ubuntu1~20.04.3) focal-security; urgency=medium

  * SECURITY UPDATE: insufficiently restricted directory permissions
    - debian/patches/1.5-reduce-directory-permissions.patch: reduce
      permissions for bundle dir in runtime/v1/linux/bundle.go,
      runtime/v1/linux/bundle_test.go, runtime/v2/bundle.go,
      runtime/v2/bundle_default.go, runtime/v2/bundle_linux.go,
      runtime/v2/bundle_linux_test.go, runtime/v2/bundle_test.go,
      snapshots/btrfs/btrfs.go.
    - CVE-2021-41103

 -- Marc Deslauriers <email address hidden> Wed, 29 Sep 2021 06:48:46 -0400

CVE-2021-41103 RESERVED



About   -   Send Feedback to @ubuntu_updates