Format: 1.8 Date: Mon, 15 May 2023 13:18:52 +0200 Source: runc Binary: runc Built-For-Profiles: noudeb Architecture: s390x Version: 1.1.4-0ubuntu1~22.10.3 Distribution: kinetic Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: David Fernandez Gonzalez Description: runc - Open Container Project - runtime Changes: runc (1.1.4-0ubuntu1~22.10.3) kinetic-security; urgency=medium . * SECURITY UPDATE: Incorrect access control through /sys/fs/cgroup - debian/patches/CVE-2023-25809.patch: apply MS_RDONLY if /sys/fs/cgroup is bind-mounted or mask if bind source is unavailable in libcontainer/rootfs_linux.go. - CVE-2023-25809 * SECURITY UPDATE: Incorrect access control through /proc and /sys - debian/patches/CVE-2023-27561_2023-28642.patch: Prohibit /proc and /sys to be symlinks in libcontainer/rootfs_linux.go. - CVE-2023-27561 - CVE-2023-28642 Checksums-Sha1: b496b0c12b2f56cc02f360a47449ee99d27141ba 6397184 runc-dbgsym_1.1.4-0ubuntu1~22.10.3_s390x.ddeb 7a751ddfb5a3ce1fbb9c421c04d3be7f3cb329a7 6662 runc_1.1.4-0ubuntu1~22.10.3_s390x.buildinfo 46c32d1530af341adf267812d0945e3a17c1fd0f 4283812 runc_1.1.4-0ubuntu1~22.10.3_s390x.deb Checksums-Sha256: 097d6f72bbd5eb23abae0e0851d948925fb5a244a43500a0d90319a8720d05c8 6397184 runc-dbgsym_1.1.4-0ubuntu1~22.10.3_s390x.ddeb 7a2c60c10f09304ecc0148ea3a1dec0fb4188b5cdfd5058e76f3a5e15f20b636 6662 runc_1.1.4-0ubuntu1~22.10.3_s390x.buildinfo 901c51d0dc03e4a2a2e7e4e28760e29b791850e33973605488cc00f14e15cb13 4283812 runc_1.1.4-0ubuntu1~22.10.3_s390x.deb Files: 4f062e42ba1c83d51774f8ed874b1534 6397184 debug optional runc-dbgsym_1.1.4-0ubuntu1~22.10.3_s390x.ddeb 0fc5bf419b6b3298c2f7fe3208a5506f 6662 devel optional runc_1.1.4-0ubuntu1~22.10.3_s390x.buildinfo ff6b59a927748dfad5db3952a0a6746d 4283812 devel optional runc_1.1.4-0ubuntu1~22.10.3_s390x.deb Original-Maintainer: Debian Go Packaging Team