github cloudfoundry/garden-runc-release v1.1.1
GRR v1.1.1

latest releases: v1.20.9, v1.20.8, v1.20.7...
7 years ago

Patches runC to address a security vulnerability (CVE-2016-9962). Garden never runs user processes as pid 1 (which the mentioned exploit relies on) and enables apparmor (which prevents ptrace), but the patch also works around a kernel mis-ordering of operations that could very briefly expose an fd in a container.

Don't miss a new garden-runc-release release

NewReleases is sending notifications on new releases.