package/docker-containerd: security bump to 1.4.4
authorChristian Stewart <christian@paral.in>
Fri, 12 Mar 2021 22:48:31 +0000 (14:48 -0800)
committerYann E. MORIN <yann.morin.1998@free.fr>
Sun, 14 Mar 2021 15:49:20 +0000 (16:49 +0100)
commit43a766e92d3b147c2118b9eb1ae008026d94f995
tree7b66a631f46473bade076b704d424a5d0161d1e7
parent46e54492ba2b9e9e8aa9cb8c362666e2fcca66f9
package/docker-containerd: security bump to 1.4.4

Security fix for CVE-2021-21334:

https://github.com/containerd/containerd/security/advisories/GHSA-6g2q-w5j3-fwh4

Other changes:

 - Fix container create in CRI to prevent possible environment variable leak between containers
 - Update shim server to return grpc NotFound error
 - Add bounds on max oom_score_adj value for shim's AdjustOOMScore
 - Update task manager to use fresh context when calling shim shutdown
 - Update Docker resolver to avoid possible concurrent map access panic
 - Update shim's log file open flags to avoid containerd hang on syscall open
 - Fix incorrect usage calculation

Signed-off-by: Christian Stewart <christian@paral.in>
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
package/docker-containerd/docker-containerd.hash
package/docker-containerd/docker-containerd.mk