Skip to content

Please bump go version of libcontainer to fix CVEs #1056

@aborrero

Description

@aborrero

There are a number of accumulated CVE problems in libcontainer that wont be resolved unless you bump the go version to 1.24.8 or 1.25.2

Example:
https://pkg.go.dev/vuln/GO-2025-4015
GHSA-wcw9-47fp-rrfr

Also, please notice, users of falco cannot easily do this bump themselves because building falco pulls an already built binary libcontainer.so.

Metadata

Metadata

Assignees

No one assigned

    Labels

    kind/bugSomething isn't working

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions