26 Commits

Author SHA1 Message Date
chenjiankun
f8ffee8d73 close channel in write side to avoid panic in docker stats
fix #I5ATMV

(cherry picked from commit e30932844aeb7d94b6ec1491e63acb0d1a9a2b1a)
2022-06-28 19:30:18 +08:00
chenjiankun
95a9037aa0 fix status inconsistent after restart container
fix #I5AIPF
fix #I5AD5N

(cherry picked from commit e72fc4bf764a9bca988612213a205c9534ca3c6f)
2022-06-28 19:30:18 +08:00
openeuler-ci-bot
96b7377c44
!92 [sync] PR-85: docker: sync from sp1
From: @jackchan8 
Reviewed-by: @zhangsong234, @duguhaotian 
Signed-off-by: @duguhaotian
2022-06-28 08:39:50 +00:00
chenjiankun
cf8962ea99 docker: sync from sp1
(cherry picked from commit 660a50e8357f7dae94ab3cda8f42dda3bddf134b)
2022-06-28 15:54:39 +08:00
openeuler-ci-bot
45884c0a9b
!90 docker:【sync from master】fix-CVE-2022-24769
From: @duyiwei7w 
Reviewed-by: @yangzhao_kl 
Signed-off-by: @yangzhao_kl
2022-06-16 02:57:45 +00:00
duyiwei
fbc718add8 fix CVE-2022-24769 2022-06-16 10:05:51 +08:00
openeuler-ci-bot
e4c0fb82df !64 [sync] PR-62: docker:update seccomp whitelist to Linux 5.10 syscall list
From: @openeuler-sync-bot
Reviewed-by: @duguhaotian
Signed-off-by: @duguhaotian
2021-10-12 07:15:33 +00:00
xiadanni
931445117a docker:update seccomp whitelist to Linux 5.10 syscall list
reason: update seccomp whitelist to Linux 5.10 syscall list to meet the
requirement that user uses image with new glibc version.

Signed-off-by: xiadanni <xiadanni1@huawei.com>
(cherry picked from commit ff5aa8ab6ec06b5101ef5787ca6f10e3f66c4a0f)
2021-10-12 14:49:09 +08:00
xiadanni
4fe3a150f4 docker:bump version again for runc fix systemd cgroup
Signed-off-by: xiadanni <xiadanni1@huawei.com>
(cherry picked from commit b7bc05d288539788c36340ccefddbc2fc7c743f1)
2021-10-12 14:49:09 +08:00
openeuler-ci-bot
07ce8e59e8 !52 [sync] PR-49: docker: bump version for runc fix systemd cgroup after memory type changed
From: @openeuler-sync-bot
Reviewed-by: @yangzhao_kl
Signed-off-by: @yangzhao_kl
2021-08-12 02:32:08 +00:00
xiadanni
cb64af2f86 docker: bump version for runc fix systemd cgroup after memory type changed
Signed-off-by: xiadanni <xiadanni1@huawei.com>
(cherry picked from commit 65f671460fa1b4faf0c31407b283bf55355784d5)
2021-08-11 09:31:39 +08:00
openeuler-ci-bot
c72b2da141 !47 [sync] PR-45: docker:remove go-md2man build require
From: @openeuler-sync-bot
Reviewed-by: @caihaomin
Signed-off-by: @caihaomin
2021-08-10 07:25:19 +00:00
chenjiankun
7fd3c11f8c docker:remove go-md2man build require
(cherry picked from commit 547bf388089cb8f0a8c90e8c25faa08e09b1e99b)
2021-05-06 19:36:05 +08:00
openeuler-ci-bot
94d0954ade !36 [sync] PR-35: docker:prevent an invalid image from crashing docker daemon(CVE-2021-21285)
From: @openeuler-sync-bot
Reviewed-by: @jing-rui,@caihaomin
Signed-off-by: @caihaomin
2021-03-19 11:17:34 +08:00
xiadanni
d2de75f5f0 docker:prevent an invalid image from crashing docker daemon
(CVE-2021-21285)

Change-Id: Ic43557af6156beb8b842e2dc9ba20eefa207abc0
Signed-off-by: xiadanni <xiadanni1@huawei.com>
(cherry picked from commit 2a49c58d90a1efd68e87b61a0a475d730875e844)
2021-03-18 15:12:04 +08:00
openeuler-ci-bot
66e001b711 !34 docker:Fix Access to remapped root allows privilege escalation to real root (CVE-2021-21284)
From: @Vanient
Reviewed-by: @jing-rui,@caihaomin
Signed-off-by: @caihaomin
2021-03-05 14:16:36 +08:00
xiadanni
5fc83aff47 docker:Fix Access to remapped root allows privilege escalation to real root (CVE-2021-21284)
Change-Id: I483f23d368c047147932da22c80cf23c8944669b
Signed-off-by: xiadanni <xiadanni1@huawei.com>
2021-03-05 11:24:44 +08:00
xiadanni
9fba6cf9d7 docker: sync bugfix and bump version
Change-Id: I8fbbbe26d0279c9921416733ce36da9d57587240
Signed-off-by: xiadanni <xiadanni1@huawei.com>
2021-03-05 11:24:18 +08:00
openeuler-ci-bot
ae8c0ce502 !22 sync bugfix
From: @jing-rui
Reviewed-by: @flyflyflypeng
Signed-off-by: @flyflyflypeng
2021-01-19 09:59:31 +08:00
jingrui
adcc59f71c docker: sync bugfix
Change-Id: Ida64f926d5d3a2a1f99c8718918737836e256897
Signed-off-by: jingrui <jingrui@huawei.com>
2021-01-18 21:44:33 +08:00
openeuler-ci-bot
a387d4f07c !13 sync patches from internal
From: @zvier
Reviewed-by: @jing-rui
Signed-off-by: @jing-rui
2020-11-28 14:06:46 +08:00
zvier
449e60b25a sync patches from internal
Signed-off-by: liuzekun <liuzekun@huawei.com>
2020-11-28 11:20:04 +08:00
openeuler-ci-bot
62eb84806e !2 docker: add patches
Merge pull request !2 from Grooooot/master
2020-03-05 19:16:01 +08:00
Grooooot
e7de2c79b3 docker: add patches
Signed-off-by: Grooooot <isula@huawei.com>
2020-03-05 15:13:09 +08:00
dogsheng
be56a4fe89 Package init 2019-12-25 19:10:46 +08:00
overweight
6138d366d1 Package init 2019-09-30 10:37:25 -04:00