meta-virtualization/recipes-containers
Bruce Ashfield 299c418144 crun: update to latest
Bumping crun to version 0.20.1-7-g7ef74c9, which comprises the following commits:

    b07c389 criu: fix error check
    09401bb linux: fix unitialized variable
    b222968 cgroup: fix a memory leak
    1182975 cgroup: honor memory swappiness set to 0
    38271d1 NEWS: tag 0.20.1
    923447b container: ignore resetting keyring SELinux label
    b26493f Dockerfile: install required python3-jinja2 package
    0d42f11 NEWS: tag 0.20
    9042ac5 seccomp: drop SECCOMP_FILTER_FLAG_LOG by default
    0f4156f cgroup: Refactor libcrun-cgroup-destory to support picking subsystems dynamically and clean custom controllers.
    d6be344 cgroup: ignore devices errors in a userns
    6e187fb cgroup: do not join empty controller
    badb23d seccomp: report correct action in error message
    5201956 container: apply SELinux label to keyring
    4b664e9 linux: attempt to open existing dev file first
    dd1c419 libocispec: sync from upstream
    5f74e2a Makefile.am: make sure libocispec uses main branch
    f0c76e1 utils: close_range fallbacks to close on EPERM
    1596ab1 Update crun manual with recently added flags
    1d84d62 Fix type for LinuxDeviceCgroup.linux.resources.devices.allow in default Spec
    62d251d container: call prestart hooks before rootfs is RO
    48bc33d Exec: Add --process-label and --apparmor to allow modifying selinux_label and apparmor_profile
    0e53e87 Exec: Add --no-new-privs to and adhere if noNewPriviledges is false in basespec config
    2de8b43 Fix SIGSEGV for rootless container caused by case when def->linux is defined but def->linux->cgroups_path is NULL
    54e77c2 Add support for spec --bundle
    ae11886 cgroup: fix regression in mode detection
    194b72d kill: fix race condition with pidfd_open
    2910d9b cgroup: add custom annotation run.oci.delegate-cgroup
    407eef9 cgroup: drop argument from function
    0485de6 cgroup: report error if the cgroup path was set
    bf5020a cgroup: improve error message
    a131715 cgroup: fix recursive cleanup
    6e95060 cgroup: kill procs in cgroup on EBUSY
    0274d6f tests: disable go modules
    1272eaf tests: skip podman create --pull
    04f1a6a container: read the error from the init process
    29afcd6 Update README.md
    9863a8e Update README.md
    55f5ed5 utils: use /proc/self/fd to open unix socket
    fa40930 contrib: fix warning from the rust compiler
    1535fed NEWS: tag 0.19.1
    227e0be spec: add cgroup ns if on cgroup v2
    3fbe777 libcrun: add const to spec_file
    eb34661 libcrun: annotate cgroup_mode < 0 checks
    92bcc81 tests: add fuzzing tests
    af3509d cgroup: support array of strings
    9effaeb On exec, honor additional_gids from the process spec, not the container definition

Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com>
2021-06-21 08:52:18 -04:00
..
cgroup-lite cgroup-lite: support usrmerge 2019-09-03 15:59:40 -04:00
conmon conmon: update to v2.0.28 2021-06-04 08:43:13 -04:00
containerd containerd-opencontainers: update to 1.5.2 2021-06-04 08:43:02 -04:00
cri-o cri-o: update to 1.22 release 2021-06-04 08:43:05 -04:00
cri-tools cri-tools: update to 1.21 release 2021-06-04 08:43:06 -04:00
criu criu: update to 3.14 2021-04-16 11:53:37 -04:00
crun crun: update to latest 2021-06-21 08:52:18 -04:00
docker docker-ce: upate to latest 20.10.x 2021-06-04 08:42:58 -04:00
docker-compose docker-compose: update to 1.29.1 2021-04-15 10:40:01 -04:00
docker-distribution docker-distribution: update to 2.7.x latest 2021-05-11 08:52:11 -04:00
go-digest oci: introduce oci-image-tools (and dependencies) 2017-02-15 14:57:35 -05:00
go-errors oci: introduce oci-image-tools (and dependencies) 2017-02-15 14:57:35 -05:00
go-spf13-cobra oci: introduce oci-image-tools (and dependencies) 2017-02-15 14:57:35 -05:00
go-spf13-pflag oci: introduce oci-image-tools (and dependencies) 2017-02-15 14:57:35 -05:00
k3s k3s: update to 1.21 latest 2021-06-14 13:53:52 -04:00
kubernetes k8s: bump to v1.22-alpha 2021-06-04 08:42:53 -04:00
lxc lxc: add upstream-status to patch 2021-04-18 22:29:57 -04:00
lxcfs lxcfs: update to 4.0.7 2021-02-07 08:20:30 -05:00
oci-image-spec oci-image-spec: uprev to v1.0.1 2019-07-12 14:50:34 +00:00
oci-image-tools oci-image-tools: export GO111MODULE=off 2021-03-01 15:52:39 -05:00
oci-runtime-spec containers/runtime-spec: update to v1.01 2019-07-12 14:50:34 +00:00
oci-runtime-tools oci-runtime-tools: export GO111MODULE=off 2021-03-01 15:57:20 -05:00
oci-systemd-hook oci-systemd-hook: fixup patch context 2019-09-18 13:53:24 -04:00
podman podman: update to 3.2.1 2021-06-15 08:15:57 -04:00
podman-compose podman-compse: update to latet 0.15 hash 2021-02-06 13:02:10 -05:00
riddler riddler: export GO111MODULE=off 2021-03-04 08:33:46 -05:00
runc runc-docker: update to rc95 2021-06-14 22:23:19 -04:00
singularity singularity: fix build with python3 2020-05-21 22:10:19 -04:00
skopeo skope: update to 1.3.x 2021-06-04 08:43:08 -04:00
sloci-image sloci-image: allow target and nativesdk variants 2021-05-18 22:42:27 -04:00
tini tini: update to 0.19.0 2021-02-06 14:00:31 -05:00
umoci umoci: create -native do_compile and make it static 2021-05-07 11:52:05 -04:00