Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update to github.com/opencontainers/runc >= 1.1.2 #1655

Merged
merged 1 commit into from
May 31, 2022

Conversation

mtrmac
Copy link
Contributor

@mtrmac mtrmac commented May 26, 2022

... to silence Dependabot alerts about CVE-2022-29162 = GHSA-f3fp-gc8g-vw66.

Note that the vulnerable code is not actually included in Skopeo at all, this is purely to silence imprecise vulnerability checkers.

@mtrmac mtrmac force-pushed the runc-1.1.2 branch 2 times, most recently from b427817 to 3a408c4 Compare May 30, 2022 12:14
Copy link
Member

@vrothberg vrothberg left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

... to silence Dependabot alerts about CVE-2022-29162 = GHSA-f3fp-gc8g-vw66.

Note that the vulnerable code is not actually included in Skopeo at all,
this is purely to silence imprecise vulnerability checkers.

Signed-off-by: Miloslav Trmač <[email protected]>
@vrothberg vrothberg merged commit a5d4e66 into containers:main May 31, 2022
@mtrmac mtrmac deleted the runc-1.1.2 branch May 31, 2022 17:55
@github-actions github-actions bot locked as resolved and limited conversation to collaborators Sep 19, 2023
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants