Commit Graph

10 Commits

Author SHA1 Message Date
Wolfgang Bumiller
44f421318a merge fix for 'getent' in lxc-attach
Signed-off-by: Wolfgang Bumiller <w.bumiller@proxmox.com>
2019-08-13 14:41:10 +02:00
Wolfgang Bumiller
4e7aceadeb merge new apparmor profile update
Signed-off-by: Wolfgang Bumiller <w.bumiller@proxmox.com>
2019-08-09 10:49:43 +02:00
Wolfgang Bumiller
5b9827461e update apparmor profile
Signed-off-by: Wolfgang Bumiller <w.bumiller@proxmox.com>
2019-08-07 10:39:57 +02:00
Wolfgang Bumiller
907c590de2 merge fix for CVE-2019-5736
Signed-off-by: Wolfgang Bumiller <w.bumiller@proxmox.com>
2019-02-12 08:07:07 +01:00
Wolfgang Bumiller
352dbb681f merge 2 fixups:
* Revert "conf: remove extra MS_BIND with sysfs:mixed"
    This should let privileged Ubuntu 14.04 containers boot
    again.

* conf: use SYSERROR on lxc_write_to_file errors
    Slightly more useful error output in a specific error
    case.

Signed-off-by: Wolfgang Bumiller <w.bumiller@proxmox.com>
2019-01-17 09:34:34 +01:00
Wolfgang Bumiller
834bb4d705 update to lxc-3.1.0
The default cgroup pattern was switched from lxc/%n to
lxc.payload/%n, so add a ./configure option to revert this
change as PVE expects containers in lxc/%n.

Signed-off-by: Wolfgang Bumiller <w.bumiller@proxmox.com>
2019-01-02 14:39:37 +01:00
Wolfgang Bumiller
71a3cc63d4 apparmor: allow various ro,remount,bind mounts
Required to enable new systemd sandboxing mechanisms.

Signed-off-by: Wolfgang Bumiller <w.bumiller@proxmox.com>
2018-11-15 12:21:57 +01:00
Wolfgang Bumiller
f46e8fbf9b bump version to 3.0.2+pve1-1
Signed-off-by: Wolfgang Bumiller <w.bumiller@proxmox.com>
2018-08-20 11:51:46 +02:00
Fabian Grünbichler
3aee60181b cherry-pick CVE-2018-6556 fix
from upstream's stable-3.0 branch
2018-08-07 11:39:50 +02:00
Wolfgang Bumiller
2d8021b3bf bump version to 3.0.1+pve1-1
Signed-off-by: Wolfgang Bumiller <w.bumiller@proxmox.com>
2018-07-26 14:46:33 +02:00