zhongjiawei
a5844a0a7a
containerd: bugfix and add CGO security build option
...
(cherry picked from commit eb136438cf63fae5754c31920a6bf8afaeded135)
2022-09-22 19:38:37 +08:00
zhongjiawei
1cecbd1328
containerd: Limit the response size of ExecSync
...
fix CVE-2022-31030
Signed-off-by: zhongjiawei <zhongjiawei1@huawei.com>
(cherry picked from commit 0436d058b39572dfa0d0a267b0518fd8a793dc49)
2022-09-22 16:12:30 +08:00
zhangsong234
4e69ecc42c
containerd:put get pid lock after set process exited to avoid deadlock
...
Signed-off-by: zhangsong234 <zhangsong34@huawei.com>
(cherry picked from commit 5cff2144523054a3492c916f9acacc9a34b2a24f)
2022-07-04 16:26:03 +08:00
duyiwei
50373873fc
containerd:Use fs.RootPath when mounting volumes
2022-05-23 10:32:11 +08:00
Vanient
048f008c4f
containerd: update patches
...
0069-containerd-add-check-in-spec.patch
0070-containerd-kill-container-init-process-if-runc-start.patch
0071-containerd-fix-containerd-shim-residual-when-kill-co.patch
0072-containerd-fix-deadlock-on-commit-error.patch
0073-containerd-backport-upstream-patches.patch
0074-containerd-fix-exec-event-missing-due-to-pid-reuse.patch
0075-containerd-fix-dm-left-when-pause-contaienr-and-kill-shim.patch
0076-containerd-fix-start-container-failed-with-id-exists.patch
0077-containerd-drop-opt-package.patch
0078-containerd-bump-containerd-ttrpc-699c4e40d1.patch
0079-containerd-fix-race-access-for-mobySubcribed.patch
0080-containerd-improve-log-for-debugging.patch
0081-containerd-reduce-permissions-for-bundle-di.patch
0082-containerd-fix-publish-command-wait-block-for.patch
0083-containerd-optimize-cgo-compile-options.patch
Signed-off-by:songyanting <songyanting@huawei.com>
Signed-off-by: Vanient <xiadanni1@huawei.com>
(cherry picked from commit 9bf55eea9cc2c493286e993f49e1ff856f37b4ec)
2022-03-23 09:45:57 +08:00
xiadanni
9c4ff3a46f
containerd: compile option compliance
...
Signed-off-by: xiadanni <xiadanni1@huawei.com>
2021-03-18 10:42:53 +08:00
xiadanni
349a80d77f
sync patches
...
1. check task list to avoid unnecessary cleanup.
2. fix dead loop
3. cleanup dangling shim by brand new context
4. fix potential panic for task in unknown state
Signed-off-by: xiadanni <xiadanni1@huawei.com>
2021-03-18 10:20:49 +08:00
yangyanchao
056f26dd1e
containerd:all:add some symbol for riscv
2021-01-15 03:26:45 +00:00
xiadanni
dccab1cbca
containerd: update patches
...
0059-containerd-add-GO_GCFLAGS-to-containerd-shim-making.patch
0060-containerd-do-not-disable-cgo-in-containerd-shim-mak.patch
0061-containerd-check-if-bundle-exists-before-create-bund.patch
0062-containerd-use-path-based-socket-for-shims.patch
0063-containerd-kill-init-directly-if-runtime-kill-failed.patch
Signed-off-by: xiadanni <xiadanni1@huawei.com>
2020-11-25 11:08:13 +08:00
liuzekun
bada571c96
containerd: use git-commit to store commit ID
...
Signed-off-by: liuzekun <liuzekun@huawei.com>
2020-06-15 04:54:01 -04:00
Grooooot
3a981f1909
containerd:add patches
...
Signed-off-by: Grooooot <isula@huawei.com>
2020-03-05 15:54:34 +08:00
Grooooot
7b8aa4184d
first commit
2019-12-30 12:24:38 +08:00