5732 Commits

Author SHA1 Message Date
David Michael
fad562fd17 app-emulation/docker-runc: Fix CVE-2019-5736 for Docker 17.03 2019-02-11 15:58:34 +00:00
David Michael
e3d4c6f38d app-emulation/runc: Fix CVE-2019-5736 for Docker 1.12 2019-02-11 15:58:34 +00:00
David Michael
bf4b6208a0 Revert "profiles: Revert the last util-linux upgrade"
This might not have had the intended effect, so undo it until it is
investigated further to avoid version changing noise in releases.

This reverts commit 1103abffb781708e4822957186c3ba3e08917fa8.
2019-02-10 02:52:56 +00:00
David Michael
0d123dabc4 dev-db/etcdctl: Bump 3.3.11 to 3.3.12 2019-02-08 15:23:52 +00:00
David Michael
aace2f6e27 app-admin/etcd-wrapper: Bump 3.3.11 to 3.3.12 2019-02-08 15:23:18 +00:00
David Michael
a8c3f3371f sys-kernel/coreos-sources: Bump 4.19.19 to 4.19.20 2019-02-06 18:58:59 +00:00
David Michael
79f8026cfd coreos-base/coreos-init: Bump to get the new image subkey 2019-02-05 16:39:44 +00:00
David Michael
309ef1ed54 Merge pull request #3556 from dm0-/revert
profiles: Revert the last util-linux upgrade
2019-02-04 17:51:06 -05:00
David Michael
8668c7c4c6 sys-apps/baselayout: Bump to pick up the rbd modprobe file 2019-02-04 16:59:18 +00:00
David Michael
3615cb3642 profiles: Revert the last util-linux upgrade
Repeated OS builds started failing from partitioned loop devices
never being removed after the 2.33 update.
2019-02-04 16:17:32 +00:00
David Michael
3e92a63e38 sys-kernel/coreos-sources: Bump 4.19.18 to 4.19.19 2019-01-31 16:31:16 +00:00
David Michael
03a0a9a8c4 app-admin/flannel-wrapper: Bump 0.10.0 to 0.11.0 2019-01-29 15:04:12 +00:00
David Michael
165d6db77d sys-kernel/coreos-sources: Bump 4.19.17 to 4.19.18 2019-01-26 17:17:31 +00:00
David Michael
3c85dd5bba profiles: Fix the XFS Python unit path
This was using the unit path in the SDK, which misses the files in
production images.
2019-01-25 23:33:47 +00:00
David Michael
097499ca2e profiles: Disable zstd in btrfs-progs
Nothing else uses zstd, so disable it here to avoid adding it to
prod images until the functionality is needed by something.
2019-01-25 01:31:00 +00:00
David Michael
afd79df70f profiles: Exclude new XFS Python script in prod images 2019-01-25 01:31:00 +00:00
David Michael
f39b6ef53c profiles: Enable -fPIC for open-vm-tools
Override the upstream hardened profile to set this flag, since the
package won't compile without it.
2019-01-25 01:31:00 +00:00
David Michael
6b6707c100 profiles: Update the inherited hardened profile
The existing upstream version will be removed in the future, so
switch to the current stable hardened profile.
2019-01-25 01:31:00 +00:00
David Michael
372de0ca41 sys-libs/glibc: Apply CoreOS changes
Drop pkg_pretend since it breaks build_image if cross-compilers are
not installed yet (e.g. in Jenkins jobs).

Drop the host /dev/pts checks since the SDK doesn't control it.

Apply our gshadow segfault patch, and steal Fedora's C UTF-8 locale
patch for 2.27 (which hasn't changed since 2.26).

Install nscd.conf in /usr and set up tmpfiles to link it in /etc.

Wipe out /etc files (except for an environment file that is still
needed in the SDK).
2019-01-25 01:31:00 +00:00
David Michael
2dd091f751 sys-libs/glibc: Sync with Gentoo's latest stable, 2.27 2019-01-25 01:31:00 +00:00
David Michael
dd7cf0cfa3 chore(metadata): Regenerate cache 2019-01-25 01:28:06 +00:00
David Michael
0cdc68ec28 dev-lang/go: Bump Go 1.11.4 to 1.11.5 2019-01-24 15:37:24 +00:00
David Michael
283ec59a81 dev-lang/go: Bump Go 1.10.7 to 1.10.8 2019-01-24 15:36:52 +00:00
David Michael
b40dc91c58 sys-kernel/coreos-sources: Bump 4.19.16 to 4.19.17 2019-01-23 18:35:29 +00:00
David Michael
552fe03560 profiles: Build rustfmt in the SDK
No scripts depend on this (yet); it's just for manual checking.
2019-01-18 16:23:38 +00:00
David Michael
04fad0a3a8 sys-kernel/coreos-sources: Bump 4.19.15 to 4.19.16 2019-01-16 21:47:21 +00:00
David Michael
b1ae6b30aa sys-kernel/coreos-sources: Bump 4.19.14 to 4.19.15 2019-01-13 15:33:17 +00:00
David Michael
a8ae4d1f84 app-admin/etcd-wrapper: Bump 3.3.10 to 3.3.11 2019-01-12 21:23:13 +00:00
David Michael
2bc68500ce dev-db/etcdctl: Bump 3.3.10 to 3.3.11 2019-01-12 21:22:40 +00:00
David Michael
3180dd3873 sys-apps/systemd: Bump for "System Down" fixes 2019-01-11 21:05:43 +00:00
David Michael
33399c881a sys-kernel/coreos-sources: Bump 4.19.13 to 4.19.14 2019-01-09 17:36:55 +00:00
David Michael
2bf0291815 sys-kernel/coreos-modules: Enable the ip_vs_mh module 2019-01-09 14:03:26 +00:00
David Michael
bce51ac786 net-misc/ntp: Apply CoreOS changes
We make the following changes on top of Gentoo's files:

  - Check out our previous ntp.conf and service units
  - Disable USE=threads
  - Add USE=perl, disabled to skip the scripts subdir
  - Do the /etc -> /usr/share + tmpfiles dance for ntp.conf
  - Drop unused init scripts and pkg_postinst
2019-01-08 20:52:39 +00:00
David Michael
215d42a086 net-misc/ntp: Sync with current Gentoo 2019-01-08 20:52:39 +00:00
David Michael
1bdc378bc2 profiles: Skip SSSD in the GCE OEM ACI
It requires more space than the OEM partition has to offer.
2019-01-08 10:21:17 -05:00
David Michael
cff025bd5c app-admin/sudo: Apply CoreOS changes
This just drops the Perl dependency and LDAP schema files.
2019-01-07 17:10:43 +00:00
David Michael
8fa32174f7 app-admin/sudo: Sync with the latest stable version from Gentoo
This switches from /var/run to /run to silence tmpfiles warnings.
2019-01-07 17:06:08 +00:00
David Michael
6648ac67f0 sys-kernel/coreos-sources: Bump 4.19.9 to 4.19.13 2019-01-07 13:45:16 +00:00
David Michael
d8de887d63 chore(metadata): Regenerate cache 2019-01-07 13:43:18 +00:00
Benjamin Gilbert
f57832b438 sys-kernel/coreos-modules: enable netlink process events
PROC_EVENTS defaults to y but depends on CONNECTOR=y.
2018-12-20 19:13:42 -05:00
David Michael
bf1108936e chore(metadata): Regenerate cache 2018-12-18 18:55:55 +00:00
David Michael
a2f06053db sys-apps/ignition: Bump to EAPI=7 to use the host Go 2018-12-18 18:33:13 +00:00
David Michael
cb6688f74e dev-db/etcdctl: Bump to EAPI=7 to use the host Go 2018-12-18 18:31:46 +00:00
David Michael
a853ca8737 coreos-devel/mantle: Bump to EAPI=7 to use the host Go 2018-12-18 18:17:18 +00:00
David Michael
ba310cd114 coreos-base/nova-agent-watcher: Bump to EAPI=7 to use the host Go 2018-12-18 18:12:37 +00:00
David Michael
50f2d3dfd0 coreos-base/coreos-cloudinit: Bump to EAPI=7 to use the host Go 2018-12-18 18:11:49 +00:00
David Michael
8b54bbe906 app-emulation/rkt: Bump to EAPI=7 to use the host Go 2018-12-18 18:10:32 +00:00
David Michael
4f235097b4 app-emulation/actool: Bump to EAPI=7 to use the host Go 2018-12-18 17:47:40 +00:00
David Michael
1304d37eaa app-emulation/acbuild: Bump to EAPI=7 to use the host Go 2018-12-18 17:47:20 +00:00
David Michael
dea29687a6 app-crypt/go-tspi: Bump to EAPI=7 to use the host Go 2018-12-18 17:46:17 +00:00