Format: 1.8 Date: Mon, 15 May 2023 13:18:52 +0200 Source: runc Binary: runc Built-For-Profiles: noudeb Architecture: armhf Version: 1.1.4-0ubuntu1~22.10.3 Distribution: kinetic Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: David Fernandez Gonzalez Description: runc - Open Container Project - runtime Changes: runc (1.1.4-0ubuntu1~22.10.3) kinetic-security; urgency=medium . * SECURITY UPDATE: Incorrect access control through /sys/fs/cgroup - debian/patches/CVE-2023-25809.patch: apply MS_RDONLY if /sys/fs/cgroup is bind-mounted or mask if bind source is unavailable in libcontainer/rootfs_linux.go. - CVE-2023-25809 * SECURITY UPDATE: Incorrect access control through /proc and /sys - debian/patches/CVE-2023-27561_2023-28642.patch: Prohibit /proc and /sys to be symlinks in libcontainer/rootfs_linux.go. - CVE-2023-27561 - CVE-2023-28642 Checksums-Sha1: 7fbb2a6b75d635143be412ea1828872fe1166a52 6084346 runc-dbgsym_1.1.4-0ubuntu1~22.10.3_armhf.ddeb 3a99c5410cd4bd693561fee9078cf28c20e8e69f 6636 runc_1.1.4-0ubuntu1~22.10.3_armhf.buildinfo fcbfbf64db6f8bbe52b2257b883eef44dfc22c2c 4052130 runc_1.1.4-0ubuntu1~22.10.3_armhf.deb Checksums-Sha256: 968fc5db573aec409bdd3a93bb27e900b41f935ab6a7428ec902abc0d91756fd 6084346 runc-dbgsym_1.1.4-0ubuntu1~22.10.3_armhf.ddeb eb70774eec74a9fd5e382c62bf33b8c0e77659c86451b61fe2c8bc92d00325db 6636 runc_1.1.4-0ubuntu1~22.10.3_armhf.buildinfo 44b947479b88a796b1722a387bf18aca8343dfbdf9126557e9340b5a2e22c91e 4052130 runc_1.1.4-0ubuntu1~22.10.3_armhf.deb Files: b2e5f96ae0c8f3d08906be26357007c6 6084346 debug optional runc-dbgsym_1.1.4-0ubuntu1~22.10.3_armhf.ddeb 476f9620f868e0c9fd893958ea58b424 6636 devel optional runc_1.1.4-0ubuntu1~22.10.3_armhf.buildinfo 0f1a02a5d0c2922c7faedf5b59cfcd5a 4052130 devel optional runc_1.1.4-0ubuntu1~22.10.3_armhf.deb Original-Maintainer: Debian Go Packaging Team