[ubuntu/focal-proposed] containerd 1.5.5-0ubuntu3~20.04.1 (Accepted)

Lucas Kanashiro kanashiro at ubuntu.com
Tue Oct 19 23:01:08 UTC 2021


containerd (1.5.5-0ubuntu3~20.04.1) focal; urgency=medium

  * Backport version 1.5.5-0ubuntu3 from Impish (LP: #1938908).
    - d/rules: set GO111MODULE to off, this avoid Internet connection during
      the build.

containerd (1.5.5-0ubuntu3) impish; urgency=medium

  * SECURITY UPDATE: insufficiently restricted directory permissions
    - debian/patches/1.5-reduce-directory-permissions.patch: reduce
      permissions for bundle dir in runtime/v1/linux/bundle.go,
      runtime/v1/linux/bundle_test.go, runtime/v2/bundle.go,
      runtime/v2/bundle_default.go, runtime/v2/bundle_linux.go,
      runtime/v2/bundle_linux_test.go, runtime/v2/bundle_test.go,
      snapshots/btrfs/btrfs.go.
    - CVE-2021-41103

containerd (1.5.5-0ubuntu2) impish; urgency=medium

  * d/p/seccomp-support-clone3-syscall.patch: clone3 is explicitly requested
    to give ENOSYS instead of the default EPERM, when CAP_SYS_ADMIN is unset.
    (LP: #1943049).

Date: Fri, 08 Oct 2021 11:45:38 -0300
Changed-By: Lucas Kanashiro <kanashiro at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Lucas Kanashiro <kanashiro at riseup.net>
https://launchpad.net/ubuntu/+source/containerd/1.5.5-0ubuntu3~20.04.1
-------------- next part --------------
Format: 1.8
Date: Fri, 08 Oct 2021 11:45:38 -0300
Source: containerd
Binary: containerd golang-github-containerd-containerd-dev
Architecture: source
Version: 1.5.5-0ubuntu3~20.04.1
Distribution: focal
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Lucas Kanashiro <kanashiro at ubuntu.com>
Description:
 containerd - daemon to control runC
 golang-github-containerd-containerd-dev - runC develpoment files
Launchpad-Bugs-Fixed: 1938908 1943049
Changes:
 containerd (1.5.5-0ubuntu3~20.04.1) focal; urgency=medium
 .
   * Backport version 1.5.5-0ubuntu3 from Impish (LP: #1938908).
     - d/rules: set GO111MODULE to off, this avoid Internet connection during
       the build.
 .
 containerd (1.5.5-0ubuntu3) impish; urgency=medium
 .
   * SECURITY UPDATE: insufficiently restricted directory permissions
     - debian/patches/1.5-reduce-directory-permissions.patch: reduce
       permissions for bundle dir in runtime/v1/linux/bundle.go,
       runtime/v1/linux/bundle_test.go, runtime/v2/bundle.go,
       runtime/v2/bundle_default.go, runtime/v2/bundle_linux.go,
       runtime/v2/bundle_linux_test.go, runtime/v2/bundle_test.go,
       snapshots/btrfs/btrfs.go.
     - CVE-2021-41103
 .
 containerd (1.5.5-0ubuntu2) impish; urgency=medium
 .
   * d/p/seccomp-support-clone3-syscall.patch: clone3 is explicitly requested
     to give ENOSYS instead of the default EPERM, when CAP_SYS_ADMIN is unset.
     (LP: #1943049).
Checksums-Sha1:
 2d6d7c485a030e286f10fe48006098b43200af9b 2439 containerd_1.5.5-0ubuntu3~20.04.1.dsc
 9f4fcd263a48898d84f442066c18792b30362905 23404 containerd_1.5.5-0ubuntu3~20.04.1.debian.tar.xz
Checksums-Sha256:
 432df35397b9aa9b1d38b4ab2dc244db19dfa57f729efedebd0f9a8ab7362791 2439 containerd_1.5.5-0ubuntu3~20.04.1.dsc
 bfcccaf2a29ce4a24b34a8d23996c23513330c10dd538d4f310181ab1dd755b6 23404 containerd_1.5.5-0ubuntu3~20.04.1.debian.tar.xz
Files:
 1f6af6b98901764455ea4ec7c101d6a1 2439 admin optional containerd_1.5.5-0ubuntu3~20.04.1.dsc
 281d1a79255dffcd01a70d22fb10768d 23404 admin optional containerd_1.5.5-0ubuntu3~20.04.1.debian.tar.xz
Original-Maintainer: Debian Go Packaging Team <pkg-go-maintainers at lists.alioth.debian.org>


More information about the Focal-changes mailing list