Closed jogerj closed 2 weeks ago
@jogerj Thanks for the report! I tried to replicate your setup but it seems to be working on my machine :thinking: However I saw other reports of other Docker images that show the same problem, so you are not alone. I will check more details when I am more available. In any case, thanks!
@jogerj Have you tried running any other Docker image with no-new-priveleges : true
? If only the updater fails, I will have to dig into it further. If other images fail as well, then I would just change the documentation.
Indeed, changing the image with alpine
also fails when trying to exec /bin/sh
. I also isolated the problem to the single machine.
I'm also trying to replicate the issue on whatever machine I have on hand. I have three other machines that I tried the exact same setup with, works flawlessly: one is running Ubuntu 22.04 LTS aarch64 ( 6.5.0-1021-oracle), another one Ubuntu 24.04 LTS amd64 (6.8.0-41-generic), another one Ubuntu 24.04 LTS aarch64 (6.8.0-1011-oracle). They're compute instances in oci/aws
The only outliers here with the machine that has issues are:
@jogerj Thank you for your testing. I made a pull request #923 to update documentation and will merge it soon. You can preview the new README. (The link will stop working when the PR is merged.) The documentation was updated! Let me know if you want me to add anything to help your past self.
The README.md specifies that
security_opt
item is optional, but when it's set to[no-new-priveleges:true]
, the container would not start. Removing the line allows the container to start normally. If this option was working in the past, either something has changed or my setup does not support it for some reason.Running on Ubuntu 22.04.4 LTS (Jammy Jellyfish) inside proxmox (
pve-manager/8.2.4/faa83925c9641325 (running kernel: 6.8.8-4-pve)
)docker-compose.yml
:docker compose logs
:uname -a
:docker version
: