vmware-archive / dependency-labeler

Dependency Labeler adds metadata about a container image's dependencies as a label to the container image. Formerly maintained by the NavCon team, currently maintained by the Source Insight Tooling team
Other
10 stars 5 forks source link

Bump containerd/containerd and opencontainers/runc to fix CVE's #49

Closed xtreme-jason-smith closed 2 years ago

xtreme-jason-smith commented 2 years ago

Bumping containerd/containerd from v1.5.8 to v.1.59 to fix CVE-2021-43816 Bumping opencontainers/runc from v1.0.2 to v1.1.0 to fix CVE-2021-43784

Component bumping also incldues bumping of their dependencies

cf-gitbot commented 2 years ago

We have created an issue in Pivotal Tracker to manage this. Unfortunately, the Pivotal Tracker project is private so you may be unable to view the contents of the story.

The labels on this github issue will be updated when the story is started.