Arch Linux

Please read this before reporting a bug:
https://wiki.archlinux.org/title/Bug_reporting_guidelines

Do NOT report bugs when a package is just outdated, or it is in the AUR. Use the 'flag out of date' link on the package page, or the Mailing List.

REPEAT: Do NOT report bugs for outdated packages!
Tasklist

FS#79769 - [toolbox] package not working on recent installations

Attached to Project: Arch Linux
Opened by - (ckanibal) - Sunday, 24 September 2023, 19:20 GMT
Last edited by George Rawlinson (rawlinsong) - Saturday, 30 September 2023, 20:14 GMT
Task Type Bug Report
Category Packages: Extra
Status Closed
Assigned To George Rawlinson (rawlinsong)
Morten Linderud (Foxboron)
Architecture All
Severity Low
Priority Normal
Reported Version
Due in Version Undecided
Due Date Undecided
Percent Complete 100%
Votes 0
Private No

Details

Description:
The toolbox package is currently not usable in rootless mode on updated installations. Toolbox requires several bind-mounts to start the container. However, the current version tries to mount several of these files as read-only, discarding existing security flags in the process.

Effectively, this prevents toolbox from starting the container in rootless mode. The user instead gets the following error message:
`Error: invalid entry point PID of container`

This bug is already fixed upstream. A backport would be appreciated.


Additional info:
* package version(s): systemd 254 (254.4-1-arch), toolbox 0.0.99.4-1
* link to upstream bug report, if any:
- https://github.com/containers/toolbox/commit/1cc9e07b7c36fe9f9784b40b58f0a2a3694dd328
- https://github.com/containers/toolbox/commit/219f5b4be428388f2b8cc12a7480c4a6922b59ca

Steps to reproduce:
- Install toolbox on an updated Arch Linux installation (I tried with systemd 254 (254.4-1-arch))
- Enter a (rootless) toolbox, e.g. by `$ toolbox enter`
- toolbox errors out with "Error: invalid entry point PID of container"
This task depends upon

Closed by  George Rawlinson (rawlinsong)
Saturday, 30 September 2023, 20:14 GMT
Reason for closing:  Fixed
Additional comments about closing:  Backported fixes in 0.0.99.4-2

Loading...