Bug 2102361
Summary: | Mostly-confined containers which create their own user and mount namespaces can't mount overlay filesystems | |||
---|---|---|---|---|
Product: | Red Hat Enterprise Linux 8 | Reporter: | Nalin Dahyabhai <nalin> | |
Component: | container-selinux | Assignee: | Jindrich Novy <jnovy> | |
Status: | CLOSED ERRATA | QA Contact: | Edward Shen <weshen> | |
Severity: | medium | Docs Contact: | ||
Priority: | unspecified | |||
Version: | 8.6 | CC: | dornelas, dwalsh, jnovy, tsweeney, ypu | |
Target Milestone: | rc | |||
Target Release: | --- | |||
Hardware: | All | |||
OS: | Linux | |||
Whiteboard: | ||||
Fixed In Version: | container-selinux-2.188.0-1.el8 | Doc Type: | If docs needed, set a value | |
Doc Text: | Story Points: | --- | ||
Clone Of: | ||||
: | 2105071 (view as bug list) | Environment: | ||
Last Closed: | 2022-11-08 09:16:27 UTC | Type: | Bug | |
Regression: | --- | Mount Type: | --- | |
Documentation: | --- | CRM: | ||
Verified Versions: | Category: | --- | ||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | ||
Cloudforms Team: | --- | Target Upstream Version: | ||
Embargoed: |
Description
Nalin Dahyabhai
2022-06-29 19:06:18 UTC
Before moving, I'd like Dan to weigh in. @dornelas do you have other thoughts for a proper home for this? This is a container-selinux bugzilla, but OpenShift basically needs to update to the latest container-selinux package in RHEL8.6. OK, container-selinux is now updated to: rhaos-4.11-rhel-8 container-selinux 2:2.188.0-1.rhaos4.11 rhaos-4.12-rhel-8 container-selinux 2:2.188.0-1.rhaos4.12 stream-container-tools-rhel8-rhel-8.6.1 container-selinux 2:2.188.0-1 The stream-container-tools-rhel8-rhel-8.6.1 is dedicated to 8.6.0.2. We could clone this to OCP Containers, but Jindrich has already done the dist-git work and doesn't need the BZ for the commit(s). The main advantage of having the OCP clone(s) would be that the fix would be explicitly tested by QE. Is this important enough that we want to test and verify the fix for, say, 4.11.z? I cloned this as BZ 2105071 for OCP 4.12. Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (Moderate: container-tools:rhel8 security, bug fix, and enhancement update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHSA-2022:7457 |