Add SYS_CHROOT back into default capabilities

This commit is contained in:
Daniel J Walsh 2020-09-21 12:07:36 -04:00
parent 56eb416164
commit 2f59e70638
No known key found for this signature in database
GPG Key ID: A2DF901DABE2C028
2 changed files with 5 additions and 1 deletions

View File

@ -69,6 +69,7 @@ default_capabilities = [
"SETGID",
"SETPCAP",
"SETUID",
"SYS_CHROOT"
]
# A list of sysctls to be set in containers by default,

View File

@ -46,7 +46,7 @@ Epoch: 1
Epoch: 2
%endif
Version: 1.1.1
Release: 48.dev.git%{shortcommit0}%{?dist}
Release: 49.dev.git%{shortcommit0}%{?dist}
Summary: Inspect container images and repositories on registries
License: ASL 2.0
URL: %{git0}
@ -447,6 +447,9 @@ export GOPATH=%{buildroot}/%{gopath}:$(pwd)/vendor:%{gopath}
%{_datadir}/%{name}/test
%changelog
* Mon Sep 21 2020 Dan Walsh <dwalsh@fedoraproject.org> - 1:1.1.1-49.dev.git5d5756c
- Add SYS_CHROOT back into default capabilities
* Mon Sep 21 2020 Dan Walsh <dwalsh@fedoraproject.org> - 1:1.1.1-48.dev.git5d5756c
- Remove fchmodat2 from seccomp.json (This syscall does not exist yet)