containerd 1.6.12-0ubuntu1~20.04.3 source package in Ubuntu

Changelog

containerd (1.6.12-0ubuntu1~20.04.3) focal-security; urgency=medium

  * SECURITY UPDATE: Denial of service through image processing
    - debian/patches/CVE-2023-25153.patch: limit the amount of
      bytes read to 20Mb in images/archive/importer.go.
    - CVE-2023-25153
  * SECURITY UPDATE: Incorrect supplementary group access control
    - debian/patches/CVE-2023-25173.patch: ensure that primary GID
      is included in the list of additionals GIDs in oci/spec_opts.go.
    - CVE-2023-25173
  * d/p/skip-test-setting-OOM-score-to-negative-number-in-unprivileged-mode.patch:
    fix a FTBFS in Ubuntu builders only.

 -- David Fernandez Gonzalez <email address hidden>  Mon, 03 Jul 2023 16:20:54 +0200

Upload details

Uploaded by:
David Fernandez Gonzalez
Uploaded to:
Focal
Original maintainer:
Ubuntu Developers
Architectures:
linux-any all
Section:
admin
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
containerd_1.6.12.orig.tar.gz 8.3 MiB b86e5c42f58b8348422c972513ff49783c0d505ed84e498d0d0245c5992e4320
containerd_1.6.12-0ubuntu1~20.04.3.debian.tar.xz 27.5 KiB 5aa3da1770f63c9e3f14a174d6f81ea1820842635beffd7ff62e41d820498dcc
containerd_1.6.12-0ubuntu1~20.04.3.dsc 2.4 KiB ddfb2b2db1c87328fe92595715363fd0a9b862953195eae36a826067bb6f8a60

Available diffs

View changes file

Binary packages built by this source

containerd: daemon to control runC

 Containerd is a daemon to control runC, built for performance and density.
 Containerd leverages runC's advanced features such as seccomp and user
 namespace support as well as checkpoint and restore for cloning and live
 migration of containers.
 .
 This package contains the binaries.

containerd-dbgsym: debug symbols for containerd
golang-github-containerd-containerd-dev: runC develpoment files

 Containerd is a daemon to control runC, built for performance and density.
 Containerd leverages runC's advanced features such as seccomp and user
 namespace support as well as checkpoint and restore for cloning and live
 migration of containers.
 .
 This package provides development files.