package/docker-engine: security bump to version 19.03.11
authorChristian Stewart <christian@paral.in>
Sat, 6 Jun 2020 21:09:52 +0000 (14:09 -0700)
committerPeter Korsgaard <peter@korsgaard.com>
Sun, 7 Jun 2020 09:12:29 +0000 (11:12 +0200)
Fixes the following security issues:

- CVE-2020-13401: Disable IPv6 Router Advertisements to prevent address
  spoofing
  An attacker in a container, with the CAP_NET_RAW capability, can craft
  IPv6 router advertisements, and consequently spoof external IPv6 hosts,
  obtain sensitive information, or cause a denial of service.

In addition, 19.03.9..11 fixes a number of issues. For details, see:

https://docs.docker.com/engine/release-notes/

Signed-off-by: Christian Stewart <christian@paral.in>
[Peter: mention security impact, extend commit message]
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/docker-engine/docker-engine.hash
package/docker-engine/docker-engine.mk

index c23eea90a8796672d3fd77825c18a00f85e2b380..99159f9376ed43c96c446291dc140fbf46ad6df4 100644 (file)
@@ -1,3 +1,3 @@
 # Locally calculated
-sha256 13ec45ad45091111bd566aca9d81989b3f05e0625dab68d33c3ad81ff924172f  docker-engine-19.03.8.tar.gz
+sha256 5ff62d7b3638a275b2c459e53a4d1a7a8fb03dde8305defcd55e05e059e5618d  docker-engine-19.03.11.tar.gz
 sha256 7c87873291f289713ac5df48b1f2010eb6963752bbd6b530416ab99fc37914a8  LICENSE
index 78f6c1261c0bebef14fa09c1190ea84f85f42e47..2f622014ba436b23c8f5b36cb4b81bf412907feb 100644 (file)
@@ -4,7 +4,7 @@
 #
 ################################################################################
 
-DOCKER_ENGINE_VERSION = 19.03.8
+DOCKER_ENGINE_VERSION = 19.03.11
 DOCKER_ENGINE_SITE = $(call github,docker,engine,v$(DOCKER_ENGINE_VERSION))
 
 DOCKER_ENGINE_LICENSE = Apache-2.0