Debian Patches

Status for containerd/1.6.20~ds1-1+deb12u2

Patch Description Author Forwarded Bugs Origin Last update
0007-cri-fix-integration-test-on-cgroupsv2-system.patch cri: fix integration test on cgroupsv2 system Shengjing Zhu <zhsj@debian.org> yes 2022-02-27
0008-Add-Debian-specific-CNI-bin-dir-to-ctr-run-command.patch Add Debian specific CNI bin dir to ctr run command Shengjing Zhu <zhsj@debian.org> not-needed 2022-03-01
0011-allow-test-run-in-userns.patch Allow running tests with unshare(1)
===================================================================
Reinhard Tartler yes debian
0013-CVE-2024-40635.patch validate uid/gid
(cherry picked from commit 11504c3fc5f45634f2d93d57743a998194430b82)
Craig Ingram <Cjingram@google.com> no 2025-03-07
0001-disable-windows-support-in-ctr-metric.patch disable windows support in ctr metric Shengjing Zhu <zhsj@debian.org> not-needed 2020-09-16
0002-disable-runhcs-option-in-cri-config.patch disable runhcs option in cri config Shengjing Zhu <zhsj@debian.org> not-needed 2021-01-23
0003-Remove-depends-on-google.golang.org-protobuf-proto.patch Remove depends on google.golang.org/protobuf/proto Shengjing Zhu <zhsj@debian.org> not-needed 2022-12-16
0004-Disable-otelgrpc-telemetry.patch Disable opentelemetry
go.opentelemetry.io/contrib is not packaged.
Shengjing Zhu <zhsj@debian.org> not-needed 2022-02-21
0005-Revert-Use-insecure.NewCredentials-instead-of-grpc.W.patch Revert "Use insecure.NewCredentials instead of grpc.WithInsecure"
This reverts commit 2ee3ce510cf26d5eb400fac118aeeec5c20ed83f.

Need golang-google-grpc-dev v1.34.0
Shengjing Zhu <zhushengjing@cambricon.com> not-needed 2022-02-21
0006-Fix-build-with-gccgo.patch Fix build with gccgo Shengjing Zhu <zhsj@debian.org> no backport, https://github.com/containerd/containerd/commit/d28981d4 2022-02-22
0013-Fix-directory-permissions.patch Fix directory permissions
- Create /var/lib/containerd with 0o700 (was: 0o711).
- Create config.TempDir with 0o700 (was: 0o711).
- Create /run/containerd/io.containerd.grpc.v1.cri with 0o700 (was: 0o755).
- Create /run/containerd/io.containerd.sandbox.controller.v1.shim with 0o700 (was: 0o711).
- Leave /run/containerd and /run/containerd/io.containerd.runtime.v2.task created with 0o711,
as required by userns-remapped containers.
/run/containerd/io.containerd.runtime.v2.task/<NS>/<ID> is created with:
- 0o700 for non-userns-remapped containers
- 0o710 for userns-remapped containers with the remapped root group as the owner group.

(cherry picked from commit 51b0cf11dc5af7ed1919beba259e644138b28d96)
Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp> no 2025-10-27

All known versions for source package 'containerd'

Links