Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package crun for openSUSE:Factory checked in at 2025-02-11 21:20:16 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/crun (Old) and /work/SRC/openSUSE:Factory/.crun.new.19470 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "crun" Tue Feb 11 21:20:16 2025 rev:29 rq:1245101 version:1.20 Changes: -------- --- /work/SRC/openSUSE:Factory/crun/crun.changes 2025-01-16 18:30:59.822187373 +0100 +++ /work/SRC/openSUSE:Factory/.crun.new.19470/crun.changes 2025-02-11 21:20:25.951860527 +0100 @@ -1,0 +2,14 @@ +Tue Feb 11 08:59:46 UTC 2025 - Madhankumar Chellamuthu <[email protected]> + +- Update to 1.20 + * krun: fix CVE-2025-24965. The .krun_config.json file could be created outside of the container rootfs. + * cgroup: reverted the removal of tun/tap from the default allow list, this was done in crun-1.5. The tun/tap device is now added by default again. + * CRIU: do not set network_lock unless explicitly specified. + * status: disallow container names containing slashes in their name. + * linux: Improved error message when failing to set the net.ipv4.ping_group_range sysctl. + * scheduler: Ignore ENOSYS errors when resetting the CPU affinity mask. + * linux: return a better error message when pidfd_open fails with EINVAL. + * cgroup: display the absolute path to cgroup.controllers when a controller is unavailable. + * exec: always call setsid. Now processes created through exec get the correct process group id. + +------------------------------------------------------------------- Old: ---- crun-1.19.1.tar.gz crun-1.19.1.tar.gz.asc New: ---- crun-1.20.tar.gz crun-1.20.tar.gz.asc ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ crun.spec ++++++ --- /var/tmp/diff_new_pack.rYLaLy/_old 2025-02-11 21:20:27.091907555 +0100 +++ /var/tmp/diff_new_pack.rYLaLy/_new 2025-02-11 21:20:27.091907555 +0100 @@ -27,7 +27,7 @@ %endif Name: crun -Version: 1.19.1 +Version: 1.20 Release: 0 Summary: OCI runtime written in C License: GPL-2.0-or-later ++++++ crun-1.19.1.tar.gz -> crun-1.20.tar.gz ++++++ ++++ 2098 lines of diff (skipped)
