[ubuntu/focal-updates] docker.io 20.10.12-0ubuntu2~20.04.1 (Accepted)

Chris Halse Rogers raof at ubuntu.com
Wed Apr 27 01:50:43 UTC 2022

docker.io (20.10.12-0ubuntu2~20.04.1) focal; urgency=medium

  * Backport version 20.10.12-0ubuntu2 from Jammy (LP: #1960449).
    - d/control: b-d on golang-1.16-go instead of golang-any.
    - d/rules: build with Golang 1.16.

docker.io (20.10.12-0ubuntu2) jammy; urgency=medium

  * d/t/docker-in-lxd: Match "file:/" instead of "file:///" on
    The command "apt-get indextargets" returns a URI field with "file:/"
    as the prefix.  We've been trying to match "file:///", which is
    sometimes unsuccessful and leads to errors because the local apt cache
    is not copied over to the container.  We can use "file:/" instead,
    which will work on both scenarios.  It's also not a problem to just
    strip the "file:" prefix, because even paths like "///var/cache" are
    correctly resolved by the filesystem.

docker.io (20.10.12-0ubuntu1) jammy; urgency=medium

  * New upstream release.
  * Remove all patches, applied by upstream.
  * Build depend on default golang 1.17.
  * d/rules: set GO111MODULE to auto.

docker.io (20.10.7-0ubuntu7) jammy; urgency=medium

  * SECURITY UPDATE: docker cli information disclosure on misconfiguration
    - d/p/CVE-2021-41092.patch: Ensure that default authentication config
    has an address.
    - CVE-2021-41092

docker.io (20.10.7-0ubuntu6) devel; urgency=medium

  * d/t/control: Drop unused aufs-tools as a test dependency (LP: #1947004)

docker.io (20.10.7-0ubuntu5) impish; urgency=medium

  [ Sergio Durigan Junior ]
  * d/t/docker-in-lxd:
    Improve dep8 test.  Make it run a more complex test against an
    ubuntu:devel docker container, especially because glibc updates might
    break docker.io.  Improve test reliability when running autopkgtest

  [ Steve Beattie ]
  * SECURITY UPDATE: insufficiently restricted directory permissions
    - d/p/CVE-2021-41091.patch: Lock down docker root dir perms.
    - CVE-2021-41091
  * SECURITY UPDATE: permissions modifications outside of install directory
    - d/p/CVE-2021-41089.patch: chrootarchive: don't create parent dirs
      outside of chroot.
    - CVE-2021-41089

Date: 2022-02-10 21:42:07.320167+00:00
Changed-By: Lucas Kanashiro <kanashiro at ubuntu.com>
Signed-By: Chris Halse Rogers <raof at ubuntu.com>
