meta-virtualization/recipes-containers
Bruce Ashfield 51a891439b lxc: update to v5.0.2
We drop a patch that has been merged upsream, and also bump the
version to lxc-5.0.2, which comprises the following commits:

    d57173681 Release LXC 5.0.2
    17c85aac6 Fix build error on sparc64 caused by using the gold linker
    b7dfb1312 lxc-default-cgns apparmor profile: allow overlay mounts
    5cde898f4 lxc_user_nic: fix get_mtu() error handling
    80553b5b4 Patching an incoming CVE (CVE-2022-47952)
    1089f49c5 build: force linking against liblxc
    0d2a03118 checkconfig: Fix filesystem capability check
    e17429580 checkconfig: Tweak cgroup handling
    4ab76611d checkconfig: Tweak layout
    0bca9bb18 checkconfig: Hide version if no lxc-start
    957e0a5d9 checkconfig: Fix mixed tabs/spaces
    4916a16bd src/lxc/meson.build: fix build without apparmor
    a330126b4 build: use cc.get_define to detect FS_CONFIG_* symbols
    c89be8325 cgroups: fix cgroup layout detection in __initialize_cgroups
    7802f3647 state: additional check in lxc_wait to prevent OOB
    4b434bf52 cgroups: check snprintf retval in unpriv_systemd_create_scope
    0eca8d2ea cgroups: fix buffer out-of-bounds access in enable_controllers_delegation
    4ce8345d6 network: always initialize struct nl_handler
    28a1591cd apparmor: properly check lxc_strmmap ret value
    bd56c89ea github: fix coverity (add libpam-dev)
    a1ead0dcc github: fix coverity build
    9e35b3ecd conf: ensure mount tunnel is a dependent mount
    2ff447445 apparmor: allow shared mounts in start-container.in
    58e878209 conf: create separate peer group for container's root
    06b4612ee cgroups: only allocate user namespace if we have to
    2662959b8 cgroups: use userns_exec_full() during cgroup removal
    4dcc84c6b README: remove lgtm
    748720ceb tests: lxc-test-reboot: Fix build on ia64
    5749e2e20 Unroll IN_SET since the max usage is 2 elements check
    495b1bbf4 tests: lxc-test-checkpoint-restore: use trap to do cleanup
    77e08b887 tools: lxc-destroy: update help message for --force
    9165ff1ed lxc/attach: Detect EACCES from execvp and convert to 126 exit status
    011faff36 lxc-attach: Fix lost return codes of spawned processes that are killed
    931693945 Update README.md
    a6287882e conf: allow cross-device links
    8fa6d765a build(deps): bump actions/checkout from 2 to 3
    e08c1b740 Update cifuzz.yml
    0e9e64db8 fix error message when use tools with -? option
    f1a61a5f0 use sd_bus_call_method_async to replace the asyncv one
    ca863bd72 tree-wide: split open helpers into open_utils.h
    02900160c build: prevent the inclusion of linux/mount.h with a hack
    51b8763b0 mount_utils: remove conf.h include
    460243f40 mount: move mount utilities from syscall_wrappers.h into mount_utils.h
    d5d7e2036 tree-wide: minimize liburing.h inclusion
    e2b8776bb meson: fix docbook2x detection
    d1dfce9c5 tree-wide: use struct open_how directly
    c9bca3326 tree-wide: use struct clone_args directly
    497479ea3 tree-wide: wipe direct or indirect linux/mount.h inclusion
    02f4bd00f build: check for FS_CONFIG_* header symbol in sys/mount.h
    c222fb567 gitignore: Simplify
    22e8a7941 meson.build: strip newline for variable assignments
    d5600cf76 meson.build: strip newlines from git output
    7d6b53438 src/lxc/meson.build: fix the static library path
    1d5c7e771 build: drop build-time systemd dependency
    59f69162c build: only build init.lxc.static if libcap is statically linkable
    062c2d980 build: fix handling of dependancies to fix build on openSUSE
    2a9743bba cgroups: fix -Waddress warning
    e510d6bd8 build: detect sys/pidfd.h availability
    b7b269680 build: detect where struct mount_attr is declared
    5313e5048 meson.build: allow explicit distrosysconfdir
    0539095ac Release LXC 5.0.1
    a1329fefe README: update security mails
    315d4cec6 meson.build: fix build without stack-protector
    aba631cd4 meson.build: fix build with -Dcapabilities=false
    c2ee9b440 src/lxc/log.h: fix STRERROR_R_CHAR_P
    d441ee585 meson: add remaining still-in-use config checks
    00a79876b Store mount options in correct variable
    da0f35646 Fix off-by-one error constructing mount options
    31bff905a add check for statvfs
    242289b6b start: fix namespace sharing
    41f602361 conf: fix append_ttyname()
    ea4fd7f85 start: record inherited namespaces earlier to make it available for idmapped rootfs setup
    e74fd55bc start: don't overwrite file descriptors during namespace preservation
    dcfd75bb4 conf: log file descriptors on error during idmapped mount setup
    c3e648700 fix for issue 4026: set broadcast to 0.0.0.0 for /31 and /32
    cfcbdb75f use systemd dbus StartTransientUnit for unpriv cgroup2
    28726f215 Fix uninitialized read in parse_cap when libcap is not used
    d663495ee meson: Generate compile commands by iterating over an array

Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com>
2023-01-19 15:42:25 -05:00
..
buildah buildah: fix build with btrfs-tools 6.1 2023-01-10 13:58:07 -05:00
catatonit catatonit: Integrate version 0.1.7 2022-09-16 11:12:41 -04:00
cgroup-lite global: update licence values to SPDX values 2022-02-18 13:07:10 -05:00
conmon conmon: avoid host contamination by GOCACHE 2022-12-01 16:58:17 -05:00
containerd containerd: update to v1.6.9 2022-12-07 16:12:33 -05:00
cri-o cri-o: update to 1.25-tip 2022-08-25 22:55:48 -04:00
cri-tools cri-tools: update to v1.24.2 2022-08-25 22:55:48 -04:00
criu criu: avoid textrel QA Issue warning 2022-12-22 10:32:04 -05:00
crun crun: update to v1.7 2022-12-07 16:12:33 -05:00
docker docker/moby: use generic DOCKER_COMMIT in do_compile 2022-12-07 16:40:04 -05:00
docker-compose docker-compose2: introduce go version of docker-compose 2022-10-25 15:08:39 -04:00
docker-distribution docker-distribution: do not build for riscv64 2022-11-22 23:32:16 -05:00
go-digest global: convert github SRC_URIs to use https protocol 2021-11-03 09:37:00 -04:00
go-errors global: convert github SRC_URIs to use https protocol 2021-11-03 09:37:00 -04:00
go-spf13-cobra global: convert github SRC_URIs to use https protocol 2021-11-03 09:37:00 -04:00
go-spf13-pflag global: convert github SRC_URIs to use https protocol 2021-11-03 09:37:00 -04:00
k3s k3s: update to v1.24.7 2022-10-25 15:09:46 -04:00
kubernetes kubernetes: fixed typos 2022-09-20 08:47:28 -04:00
lxc lxc: update to v5.0.2 2023-01-19 15:42:25 -05:00
lxcfs global: update licence values to SPDX values 2022-02-18 13:07:10 -05:00
nerdctl nerdctl: renamed upstream branch master to main 2022-12-01 17:01:29 -05:00
oci-image-spec oci-image-spec: update to 1.0.2 2022-03-21 17:31:29 -04:00
oci-image-tools oci-image-tools: fix TMPDIR references 2022-09-14 22:01:22 -04:00
oci-runtime-spec oci-runtime-spec: update to 1.0.2-tip 2022-03-21 17:31:29 -04:00
oci-runtime-tools oci-runtime-tools: fix TMPDIR references 2022-09-14 20:34:11 -04:00
oci-systemd-hook global: update licence values to SPDX values 2022-02-18 13:07:10 -05:00
podman podman: update to 4.3 2022-12-01 17:01:44 -05:00
podman-compose podman-compose: switch 1.0.3 to stable branch 2022-06-01 12:41:54 -04:00
podman-tui podman-tui: fix build with btrfs-tools 6.1 2023-01-10 13:58:07 -05:00
riddler riddler: remove TMPDIR references 2022-09-15 09:01:55 -04:00
runc runc: update to 1.1.4-tip 2022-12-07 16:12:27 -05:00
singularity singularity: Drop explicit runtime dep glibc 2022-08-20 23:18:44 -04:00
skopeo skopeo: fix build with btrfs-progs 6.1 2023-01-10 13:58:07 -05:00
sloci-image global: convert github SRC_URIs to use https protocol 2021-11-02 09:57:03 -04:00
tini tini: fix function declaration without a prototype 2022-10-04 16:55:18 -04:00
umoci umoci: fix reproducibility 2022-09-13 15:28:14 -04:00