Format: 1.8 Date: Mon, 15 May 2023 13:18:52 +0200 Source: runc Binary: runc Built-For-Profiles: noudeb Architecture: ppc64el Version: 1.1.4-0ubuntu1~22.10.3 Distribution: kinetic Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: David Fernandez Gonzalez Description: runc - Open Container Project - runtime Changes: runc (1.1.4-0ubuntu1~22.10.3) kinetic-security; urgency=medium . * SECURITY UPDATE: Incorrect access control through /sys/fs/cgroup - debian/patches/CVE-2023-25809.patch: apply MS_RDONLY if /sys/fs/cgroup is bind-mounted or mask if bind source is unavailable in libcontainer/rootfs_linux.go. - CVE-2023-25809 * SECURITY UPDATE: Incorrect access control through /proc and /sys - debian/patches/CVE-2023-27561_2023-28642.patch: Prohibit /proc and /sys to be symlinks in libcontainer/rootfs_linux.go. - CVE-2023-27561 - CVE-2023-28642 Checksums-Sha1: 77bafa220070a105d49ea13ad4fbdafaa9d2d933 6213384 runc-dbgsym_1.1.4-0ubuntu1~22.10.3_ppc64el.ddeb 04f31b11d7a3f2c34e901d5b51f4adf0aecc8a40 6781 runc_1.1.4-0ubuntu1~22.10.3_ppc64el.buildinfo dd479b1e0f24573a239f088a1476ae46e3adb719 3947232 runc_1.1.4-0ubuntu1~22.10.3_ppc64el.deb Checksums-Sha256: 52aa478422a49ca2a8cbe2a464f51a7c8007eda86b5bf9413d9d7ff5f5576a6a 6213384 runc-dbgsym_1.1.4-0ubuntu1~22.10.3_ppc64el.ddeb c47dcbbcd720505727d58f436696b345206e339fd7e2d2c41011b7a44983f6ad 6781 runc_1.1.4-0ubuntu1~22.10.3_ppc64el.buildinfo 4d326510653e7e2a450d0f432bee25b56d867b91b77fd03bebc7f646e6a2523b 3947232 runc_1.1.4-0ubuntu1~22.10.3_ppc64el.deb Files: fcad0762dc3f273c22cebd517365d3b0 6213384 debug optional runc-dbgsym_1.1.4-0ubuntu1~22.10.3_ppc64el.ddeb d56c90ed8bbe62e09d0975bb1203b8dd 6781 devel optional runc_1.1.4-0ubuntu1~22.10.3_ppc64el.buildinfo ac0ec38772b037a5a809ea61b2f1aa36 3947232 devel optional runc_1.1.4-0ubuntu1~22.10.3_ppc64el.deb Original-Maintainer: Debian Go Packaging Team