containerd 1.6.12-0ubuntu1~22.10.2 source package in Ubuntu

Changelog

containerd (1.6.12-0ubuntu1~22.10.2) kinetic-security; urgency=medium

  * SECURITY UPDATE: Denial of service through image processing
    - debian/patches/CVE-2023-25153.patch: limit the amount of
      bytes read to 20Mb in images/archive/importer.go.
    - CVE-2023-25153
  * SECURITY UPDATE: Incorrect supplementary group access control
    - debian/patches/CVE-2023-25173.patch: ensure that primary GID
      is included in the list of additionals GIDs in oci/spec_opts.go.
    - CVE-2023-25173
  * d/p/skip-test-setting-OOM-score-to-negative-number-in-unprivileged-mode.patch:
    fix a FTBFS in Ubuntu builders only.

 -- David Fernandez Gonzalez <email address hidden>  Wed, 05 Jul 2023 09:04:25 +0200

Upload details

Uploaded by:
David Fernandez Gonzalez
Uploaded to:
Kinetic
Original maintainer:
Ubuntu Developers
Architectures:
linux-any all
Section:
admin
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
containerd_1.6.12.orig.tar.gz 8.3 MiB b86e5c42f58b8348422c972513ff49783c0d505ed84e498d0d0245c5992e4320
containerd_1.6.12-0ubuntu1~22.10.2.debian.tar.xz 27.2 KiB 2fd1388f5b63e5a5c9ac9a92b5e59982a77d8ff9963c2ad0c579e6991fb240d1
containerd_1.6.12-0ubuntu1~22.10.2.dsc 2.4 KiB dba26e36c22aea56602ae1f8d78bf9c9746c2e461a954a4f0a26af0530fecf4a

View changes file

Binary packages built by this source

containerd: No summary available for containerd in ubuntu kinetic.

No description available for containerd in ubuntu kinetic.

containerd-dbgsym: No summary available for containerd-dbgsym in ubuntu kinetic.

No description available for containerd-dbgsym in ubuntu kinetic.

golang-github-containerd-containerd-dev: No summary available for golang-github-containerd-containerd-dev in ubuntu kinetic.

No description available for golang-github-containerd-containerd-dev in ubuntu kinetic.