Public bug reported:

After the CVE-2025-52881 security patches in runc 1.3.3, tmpfs mounts
were incorrectly configured and was subsequently fixed in runc 1.3.4

Link:https://github.com/opencontainers/runc/releases

Requesting a release of runc 1.3.4 in ubuntu.

** Affects: runc (Ubuntu)
     Importance: Undecided
         Status: New

** Description changed:

- When configuring a tmpfs mount, only set the mode= argument if the
- target path already existed. This fixes a regression introduced in our
- CVE-2025-52881 mitigation patches. (#4971, #4976)
+ After the CVE-2025-52881 security patches in runc 1.3.3, tmpfs mounts
+ were incorrectly configured and was subsequently fixed in runc 1.3.4
  
  Link:https://github.com/opencontainers/runc/releases
  
  Requesting a release of runc 1.3.4 in ubuntu.

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2142236

Title:
  In Runc 1.3.3 when configuring a tmpfs mount, only set the mode=
  argument if the target path already existed. This fixes a regression
  introduced in our CVE-2025-52881 mitigation patches.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/runc/+bug/2142236/+subscriptions


-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to