Skip to content
Commit 96c23d1d authored by Christian Stewart's avatar Christian Stewart Committed by Yann E. MORIN
Browse files

package/runc: security bump to version 1.0.0-rc95



Fixes CVE-2021-30465: runc 1.0.0-rc94 and earlier are vulnerable to a symlink
exchange attack whereby an attacker can request a seemingly-innocuous container
configuration that actually results in the host filesystem being bind-mounted
into the container, allowing for a container escape.

Signed-off-by: default avatarChristian Stewart <christian@paral.in>
Signed-off-by: default avatarYann E. MORIN <yann.morin.1998@free.fr>
parent 48fd63e5
Loading
Loading
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment