Don't allow containers to talk to contianer runtime sockets

This commit is contained in:
Daniel J Walsh 2019-01-22 14:54:38 +01:00
parent d4eda46462
commit a562ce586f
No known key found for this signature in database
GPG Key ID: A2DF901DABE2C028

View File

@ -2,7 +2,7 @@
# container-selinux
%global git0 https://github.com/projectatomic/container-selinux
%global commit0 6f01752858c0ee79dddf0e4c1bf845fb35d9eaf6
%global commit0 1b655d9aae4ec9859101b87d693566531b3dc4ff
%global shortcommit0 %(c=%{commit0}; echo ${c:0:7})
# container-selinux stuff (prefix with ds_ for version/release etc.)
@ -26,7 +26,7 @@ Name: container-selinux
%if 0%{?fedora}
Epoch: 2
%endif
Version: 2.79
Version: 2.80
Release: 1.git%{shortcommit0}%{?dist}
License: GPLv2
URL: %{git0}
@ -109,6 +109,9 @@ fi
%{_datadir}/selinux/*
%changelog
* Fri Jan 22 2019 Dan Walsh <dwalsh@fedoraproject.org> - 2.80-1
- Don't allow containers to talk to contianer runtime sockets
* Fri Jan 11 2019 Dan Walsh <dwalsh@fedoraproject.org> - 2.79-1
- Fix labeling on /var/lib/registries