Updated opencontainers-runc package fixes security vulnerability:
An attacker who controls the container image for two containers that
share a volume can race volume mounts during container initialization,
by adding a symlink to the rootfs that points to a directory on the
volume (CVE-2019-19921).
- https://bugs.mageia.org/show_bug.cgi?id=26173
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/2NWDTSREUDLT3UFYS5SBIVQBS4YRA35A/
- https://www.cve.org/CVERecord?id=CVE-2019-19921
- 7/core/opencontainers-runc-1.0.0-0.rc10.3.1.mga7
Get the latest Linux and open source security news straight to your inbox.