UbuntuUpdates.org

Package "runc"

Name: runc

Description:

Open Container Project - runtime

Latest version: 1.1.7-0ubuntu2.2
Release: mantic (23.10)
Level: updates
Repository: main
Homepage: https://github.com/opencontainers/runc

Links


Download "runc"


Other versions of "runc" in Mantic

Repository Area Version
base universe 1.1.7-0ubuntu2
base main 1.1.7-0ubuntu2
security main 1.1.7-0ubuntu2.2
security universe 1.1.7-0ubuntu2.2
updates universe 1.1.7-0ubuntu2.2
proposed universe 1.1.7-0ubuntu2.3

Changelog

Version: 1.1.7-0ubuntu2.2 2024-02-01 03:07:16 UTC

  runc (1.1.7-0ubuntu2.2) mantic-security; urgency=medium

  * SECURITY UPDATE: container escape vulnerability
    - d/p/0001-Fix-File-to-Close.patch: Fix File to Close
    - d/p/0002-init-verify-after-chdir-that-cwd-is-inside-the-conta.patch:
      init: verify after chdir that cwd is inside the container
    - d/p/0003-setns-init-do-explicit-lookup-of-execve-argument-ear.patch:
      setns init: do explicit lookup of execve argument early
    - d/p/0004-init-close-internal-fds-before-execve.patch: init: close
      internal fds before execve
    - d/p/0005-cgroup-plug-leaks-of-sys-fs-cgroup-handle.patch: cgroup:
      plug leaks of /sys/fs/cgroup handle
    - d/p/0006-libcontainer-mark-all-non-stdio-fds-O_CLOEXEC-before.patch:
      ibcontainer: mark all non-stdio fds O_CLOEXEC before spawning init
    - CVE-2024-21626

 -- Nishit Majithia <email address hidden> Wed, 24 Jan 2024 16:41:08 +0530

Source diff to previous version

Version: 1.1.7-0ubuntu2.1 2024-01-18 13:06:52 UTC

  runc (1.1.7-0ubuntu2.1) mantic-security; urgency=medium

  * No change rebuild due to golang-1.20, golang-1.21 updates

 -- Nishit Majithia <email address hidden> Thu, 18 Jan 2024 12:36:53 +0530




About   -   Send Feedback to @ubuntu_updates