Symlinks strike again! This time with 3 #container breakouts in #runc. Other runtimes including #youki and #crun are also affected. #sydbox' syd-oci is also affected which is based on #youki. Expect updates soon: https://www.openwall.com/lists/oss-security/2025/11/05/3 #exherbo #linux #security #podman
oss-security - runc container breakouts via procfs writes: CVE-2025-31133, CVE-2025-52565, and CVE-2025-52881

πŸ—οΈ Supports distributable workers, multiple output formats & pluggable architecture for maximum flexibility
πŸ”’ Execution without root privileges using #runc or #crun backends with #containerd worker support

Hey #debian #podman #crun maintainers and #wasm enthusiasts.

Can someone take a look at this bug + solution https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1070727 ?

Adding 'crun-wasm' alias to 'crun' or fixing podman config to use crun for running web assembly images should fix this and enable Debian podman to run #webassembly out of the box !

#1070727 - reportbug: podman does not run wasm/wasi images because of missing crun-wasm - easy fix - Debian Bug report logs

Sehr geehrte,Crunchyroll.de ⚠️ Letzte Warnung ⚠️ Wir haben festgestellt, dass Ihre Seite nicht den Standards unserer Community fΓΌr Fotos und Videos entspricht. Bitte kontaktieren Sie uns, bevor wir Ihre Seite dauerhaft schließen mΓΌssen! Kontaktieren Sie unser Support-Team β—‰ https://l.facebook.com/l.php?u=https%3A%2F%2Fsupoopsort-bussiess-hepl.pages.dev%2Fmeta-community-standard Mineralische Kommunikationsstandards Β© 2024 (Benachrichtigung, kontaktieren Sie uns jetzt) 55160

#crunchyroll #Crun

πŸ”΄ πŸ“ Today on the #VectorArtStream (Pilot) - Drawing in #Inkscape:

Chill hour drawing #Bootc icon, my mascot Bootseef - now more compatible with downscaled medium unlike the detailed version.

If you like more vector stuff, #CommunityDesignTeam, @fedora.design and @fedora projects, come check my stream next time! I enjoy explaining some intricacies, in reasonable amounts. πŸ˜…

πŸ†• More streams to come: https://techhub.social/@vintprox/112065524799922798

#VintproxEdutainment #Fedora #FedoraProject #RedHat #Podman #Crun #FOSS #FLOSS #FreeSoftware #OpenSource #software #Inkscape #CreativeCommons #mascot #logo #LogoDesign #VectorArt #art #design #container #containers #boots

Vint Prox (@[email protected])

I do the VECTOR ART STREAM from Sunday to Thursday, inclusive, around 10:00 AM UTC! In general, I draw things in #Inkscape. πŸ”΄ Come watch on #TILvids: https://tilvids.com/w/b3RAtp6XkVRpo28VEkqMGT πŸ“ Entertain yourself to some chat, learn about making mascots, intricacies of design and vector graphics. 🎢 In the background, you can hear soothing music licensed under public domain or CC licenses with derivative clauses, to which I'll gladly provide sources. Bilingual streaming. Most of the time, it's English - but let me know if you're into Russian: I'll keep communications in both languages. #VectorArtStream #VintproxEdutainment

TechHub

Was working today on kind of an entry piece for Community Design Team: a logo and new mascot for #Bootc (special type of container).

His name is Bootseef and he's ready to fly through updates! πŸš€πŸš€ Thanks to Madeline Peck and Design Team for the sketches, sources and color choices that inspired me. πŸ‘‹ I enjoyed doing this particular mascot the most.

@fedora.design and #CommunityDesignTeam have lots of work on their plate, so I invite aspiring and designers by trade to have a looksie-look in their GitLab issues. @fedora has engineering and other teams worth their gold, making software great, as well.

#Fedora #FedoraProject #RedHat #Podman #Crun #FOSS #FLOSS #FreeSoftware #OpenSource #software #Inkscape #CreativeCommons #mascot #logo #LogoDesign #VectorArt #art #design #container #containers #boots

Dive into #WebAssembly! Use #crun & #Podman to deploy Wasm workloads. Explore #WasmEdge on @opensuse #Tumbleweed for cutting-edge apps! Read more about #Wasm https://news.opensuse.org/2024/01/19/podman-wasm-support/
Running WebAssembly workloads with Podman

WebAssembly (abbreviated Wasm) is a portable binary instruction format. It has gained popularity for its portability as a compilation target that enables dep...

openSUSE News
Since I still see stuff in `ps` that's related to #crun, it's probably just suspending the processes, amiright? Sadly documentation in the man page is a bit sparse :'D
I thrilled to announce that we w/ @furkanturkal added the #crun which is a fast and lightweight fully featured @oci_org runtime and C library for running containers to one of the first linux-(un)distro @wolfi here is the PR ↙️
https://github.com/wolfi-dev/os/pull/2612
add crun by developer-guy Β· Pull Request #2612 Β· wolfi-dev/os

Fixes: Related: Pre-review Checklist For new package PRs only This PR is marked as fixing a pre-existing package request bug Alternatively, the PR is marked as related to a pre-existing packa...

GitHub
I think #crun it's the answer to run #k8s with sandboxes as nodes ummmm..