runc 1.1.4-0ubuntu1~22.10.3 source package in Ubuntu

Changelog

runc (1.1.4-0ubuntu1~22.10.3) kinetic-security; urgency=medium

  * SECURITY UPDATE: Incorrect access control through /sys/fs/cgroup
    - debian/patches/CVE-2023-25809.patch: apply MS_RDONLY if
      /sys/fs/cgroup is bind-mounted or mask if bind source is unavailable
      in libcontainer/rootfs_linux.go.
    - CVE-2023-25809
  * SECURITY UPDATE: Incorrect access control through /proc and /sys
    - debian/patches/CVE-2023-27561_2023-28642.patch: Prohibit /proc and
      /sys to be symlinks in libcontainer/rootfs_linux.go.
    - CVE-2023-27561
    - CVE-2023-28642

 -- David Fernandez Gonzalez <email address hidden>  Mon, 15 May 2023 13:18:52 +0200

Upload details

Uploaded by:
David Fernandez Gonzalez
Uploaded to:
Kinetic
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
devel
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
runc_1.1.4.orig.tar.xz 1.3 MiB 9f5972715dffb0b2371e4d678c1206cc8c4ec5eb80f2d48755d150bac49be35b
runc_1.1.4-0ubuntu1~22.10.3.debian.tar.xz 12.9 KiB 2e6fa498d12379b9a6be7eb104299112c69eedd2c33fd74c181fcc8ded7da147
runc_1.1.4-0ubuntu1~22.10.3.dsc 2.4 KiB 20b5222673b0e99045f5f11bbb5a2643e8c3c7ffcf58beef1d915b473d3d71d1

View changes file

Binary packages built by this source

golang-github-opencontainers-runc-dev: No summary available for golang-github-opencontainers-runc-dev in ubuntu kinetic.

No description available for golang-github-opencontainers-runc-dev in ubuntu kinetic.

runc: No summary available for runc in ubuntu kinetic.

No description available for runc in ubuntu kinetic.

runc-dbgsym: No summary available for runc-dbgsym in ubuntu kinetic.

No description available for runc-dbgsym in ubuntu kinetic.