mirror of
https://github.com/moby/moby.git
synced 2022-11-09 12:21:53 -05:00
25cdae293f
Notable Updates - Fix an issue that non-existent parent directory in image layers is created with permission 0700. containerd#3017 - Fix an issue that snapshots of the base image can be deleted by mistake, when images built on top of it are deleted. containerd#3087 - Support for GC references to content from snapshot and container objects. containerd#3080 - cgroups updated to dbea6f2bd41658b84b00417ceefa416b97 to fix issues for systemd 420 and non-existent cgroups. containerd#3079 - runc updated to 2b18fe1d885ee5083ef9f0838fee39b62d653e30 to include the improved fix for CVE-2019-5736. containerd#3082 - cri: Fix a bug that pod can't get started when the same volume is defined differently in the image and the pod spec. cri#1059 - cri: Fix a bug that causes container start failure after in-place upgrade containerd to 1.2.4+ or 1.1.6+. cri#1082 - cri updated to a92c40017473cbe0239ce180125f12669757e44f. containerd#3084 Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
30 lines
1 KiB
Bash
Executable file
30 lines
1 KiB
Bash
Executable file
#!/bin/sh
|
|
|
|
# When updating RUNC_COMMIT, also update runc in vendor.conf accordingly
|
|
# The version of runc should match the version that is used by the containerd
|
|
# version that is used. If you need to update runc, open a pull request in
|
|
# the containerd project first, and update both after that is merged.
|
|
RUNC_COMMIT=2b18fe1d885ee5083ef9f0838fee39b62d653e30
|
|
|
|
install_runc() {
|
|
# If using RHEL7 kernels (3.10.0 el7), disable kmem accounting/limiting
|
|
if uname -r | grep -q '^3\.10\.0.*\.el7\.'; then
|
|
: ${RUNC_NOKMEM='nokmem'}
|
|
fi
|
|
|
|
# Do not build with ambient capabilities support
|
|
RUNC_BUILDTAGS="${RUNC_BUILDTAGS:-"seccomp apparmor selinux $RUNC_NOKMEM"}"
|
|
|
|
echo "Install runc version $RUNC_COMMIT (build tags: $RUNC_BUILDTAGS)"
|
|
git clone https://github.com/opencontainers/runc.git "$GOPATH/src/github.com/opencontainers/runc"
|
|
cd "$GOPATH/src/github.com/opencontainers/runc"
|
|
git checkout -q "$RUNC_COMMIT"
|
|
if [ -z "$1" ]; then
|
|
target=static
|
|
else
|
|
target="$1"
|
|
fi
|
|
make BUILDTAGS="$RUNC_BUILDTAGS" "$target"
|
|
mkdir -p "${PREFIX}"
|
|
cp runc "${PREFIX}/runc"
|
|
}
|