9 Commits

Author SHA1 Message Date
xiadanni
931445117a docker:update seccomp whitelist to Linux 5.10 syscall list
reason: update seccomp whitelist to Linux 5.10 syscall list to meet the
requirement that user uses image with new glibc version.

Signed-off-by: xiadanni <xiadanni1@huawei.com>
(cherry picked from commit ff5aa8ab6ec06b5101ef5787ca6f10e3f66c4a0f)
2021-10-12 14:49:09 +08:00
xiadanni
d2de75f5f0 docker:prevent an invalid image from crashing docker daemon
(CVE-2021-21285)

Change-Id: Ic43557af6156beb8b842e2dc9ba20eefa207abc0
Signed-off-by: xiadanni <xiadanni1@huawei.com>
(cherry picked from commit 2a49c58d90a1efd68e87b61a0a475d730875e844)
2021-03-18 15:12:04 +08:00
xiadanni
5fc83aff47 docker:Fix Access to remapped root allows privilege escalation to real root (CVE-2021-21284)
Change-Id: I483f23d368c047147932da22c80cf23c8944669b
Signed-off-by: xiadanni <xiadanni1@huawei.com>
2021-03-05 11:24:44 +08:00
xiadanni
9fba6cf9d7 docker: sync bugfix and bump version
Change-Id: I8fbbbe26d0279c9921416733ce36da9d57587240
Signed-off-by: xiadanni <xiadanni1@huawei.com>
2021-03-05 11:24:18 +08:00
jingrui
adcc59f71c docker: sync bugfix
Change-Id: Ida64f926d5d3a2a1f99c8718918737836e256897
Signed-off-by: jingrui <jingrui@huawei.com>
2021-01-18 21:44:33 +08:00
zvier
449e60b25a sync patches from internal
Signed-off-by: liuzekun <liuzekun@huawei.com>
2020-11-28 11:20:04 +08:00
Grooooot
e7de2c79b3 docker: add patches
Signed-off-by: Grooooot <isula@huawei.com>
2020-03-05 15:13:09 +08:00
dogsheng
be56a4fe89 Package init 2019-12-25 19:10:46 +08:00
overweight
6138d366d1 Package init 2019-09-30 10:37:25 -04:00