github youki-dev/youki v0.5.7

2 days ago

Security Notice

This release addresses two CVEs. An update is recommended.

  • CVE-2025-62161
    container escape via "masked path" abuse due to mount race conditions
  • CVE-2025-62596
    The write-target validation for /proc AppArmor label writes (e.g., /proc/self/attr/apparmor/exec) was insufficient, and combined with path substitution during pathname resolution (via shared-mount races) could allow writes to unintended /proc files.

What's Changed

๐Ÿ’ช Improvements

๐Ÿ› Bug Fixes

๐Ÿงช Test improvements and Misc Fixes

Other Changes

  • (auto merged) chore(deps): bump flate2 from 1.1.4 to 1.1.5 in the patch group by @dependabot[bot] in #3281
  • Release for v0.5.7 by @github-actions[bot] in #3282

New Contributors

Full Changelog: v0.5.6...v0.5.7

Don't miss a new youki release

NewReleases is sending notifications on new releases.