Skip to content

update runc binary to 1.1.14#10665

Merged
estesp merged 1 commit intocontainerd:mainfrom
akhilerm:update-runc-1.1.14
Sep 3, 2024
Merged

update runc binary to 1.1.14#10665
estesp merged 1 commit intocontainerd:mainfrom
akhilerm:update-runc-1.1.14

Conversation

@akhilerm
Copy link
Copy Markdown
Member

@akhilerm akhilerm commented Sep 3, 2024

diff: opencontainers/runc@v1.1.13...v1.1.14

Release Notes:

  • Fix CVE-2024-45310, a low-severity attack that allowed maliciously configured containers to create empty files and directories on the host.
  • Add support for Go 1.23.
  • Revert "allow overriding VERSION value in Makefile" and add EXTRA_VERSION.
  • rootfs: consolidate mountpoint creation logic.

diff: opencontainers/runc@v1.1.13...v1.1.14

Release Notes:

- Fix CVE-2024-45310, a low-severity attack that allowed
  maliciously configured containers to create empty files and directories on
  the host.
- Add support for Go 1.23.
- Revert "allow overriding VERSION value in Makefile" and add EXTRA_VERSION.
- rootfs: consolidate mountpoint creation logic.

Signed-off-by: Akhil Mohan <[email protected]>
@dosubot dosubot Bot added the area/runtime Runtime label Sep 3, 2024
@akhilerm akhilerm added cherry-pick/1.6.x cherry-pick/1.7.x Change to be cherry picked to release/1.7 branch and removed area/runtime Runtime labels Sep 3, 2024
Copy link
Copy Markdown
Member

@dims dims left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@estesp estesp added this pull request to the merge queue Sep 3, 2024
Merged via the queue into containerd:main with commit e90b022 Sep 3, 2024
@akhilerm akhilerm added cherry-picked/1.6.x PR commits are cherry-picked into release/1.6 branch cherry-picked/1.7.x PR commits are cherry-picked into release/1.7 branch and removed cherry-pick/1.6.x cherry-pick/1.7.x Change to be cherry picked to release/1.7 branch labels Sep 3, 2024
@akhilerm akhilerm deleted the update-runc-1.1.14 branch September 3, 2024 14:02
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

cherry-picked/1.6.x PR commits are cherry-picked into release/1.6 branch cherry-picked/1.7.x PR commits are cherry-picked into release/1.7 branch size/XS

Projects

None yet

Development

Successfully merging this pull request may close these issues.

6 participants