Commit Graph

  • a33284739e Add save/restore checks for non-4K page sizes Tao Lin 2026-03-04 12:47:24 -08:00
  • 3ecb19131b Address review feedback Tao Lin 2026-02-27 15:26:47 -08:00
  • 2bdc95b3c1 Add 64K page size support for ARM64 Tao Lin 2026-02-27 15:26:39 -08:00
  • 0a1bb90575 Internal change Jing Chen 2026-03-04 13:00:08 -08:00
  • 4e233fa6bc Internal change. Jamie Liu 2026-03-03 15:10:47 -08:00
  • 9042a160d1 Fix new sandbox_options proto build. Lucas Manning 2026-03-03 10:23:23 -08:00
  • d68b68cd0e Fix runsc log and profile file handling. Ayush Ranjan 2026-03-02 22:54:17 -08:00
  • b04ac7b240 SECURITY.md: Distinguish in-sandbox arbitrary reads vs arbitrary execution. Etienne Perot 2026-03-02 17:39:21 -08:00
  • ec013ff364 Create initial sandbox configuration spec. Lucas Manning 2026-03-02 16:16:59 -08:00
  • 7529362db3 Bump actions/upload-artifact from 4 to 7 dependabot/github_actions/actions/upload-artifact-7 dependabot[bot] 2026-03-02 22:18:42 +00:00
  • a12250c829 nvproxy: keep uvmFDMemmapFile.pfm refcount up to date release-20260302.0 Jamie Liu 2026-02-27 15:17:01 -08:00
  • 140594155b Update gVisor SECURITY.md policy for vulnerability disclosure. Etienne Perot 2026-02-27 15:10:53 -08:00
  • 44df3f8de3 Fix cos_gpu_compatibility_test Zach Koopmans 2026-02-27 14:49:56 -08:00
  • d9691a1d60 Merge pull request #12653 from tianyuzhou95:albert/exec-fix gVisor bot 2026-02-27 13:05:55 -08:00
  • d5a453ca03 Merge pull request #12447 from danielnorberg:fix-bind-mount-type-validation gVisor bot 2026-02-27 12:44:04 -08:00
  • d676cf1324 nvproxy: Add support for 590.48.01. Ayush Ranjan 2026-02-26 21:54:24 -08:00
  • 49696ef022 cmd/exec: fix failure in detach mode when --pid-file is not provided Tianyu Zhou 2026-02-26 10:27:56 +08:00
  • cb92b43f23 Inplace Restore test/cl875364011 Nayana Bidari 2026-02-25 15:25:25 -08:00
  • 6ee74522ca Add more shim grouping tests. release-20260223.0 Nayana Bidari 2026-02-25 14:29:06 -08:00
  • f5386d7ddc overlayfs: Allow identity rename for nonempty dirs too test/cl873037550 Shailend Chand 2026-02-20 12:56:13 -08:00
  • e7b87edeb2 Translate StartSubcontainer to RestoreSubcontainer on a restoring sandbox. Ayush Ranjan 2026-02-25 13:19:19 -08:00
  • 07778f33eb Enable runsc shim grouping. Nayana Bidari 2026-02-25 13:03:36 -08:00
  • a8ce0282b2 Fix flaky fuse save_resume tests Shailend Chand 2026-02-25 11:21:17 -08:00
  • 117277404a nogo: Fix more analyzer findings. Konstantin Bogomolov 2026-02-25 11:05:48 -08:00
  • b8a4f24561 devpts: Support TCGETS2, TCSETS2, TCSETSW2, TCSETSF2 Jeremy Maitin-Shepard 2026-02-05 22:05:54 -08:00
  • 573d5e7127 Merge release-20260216.0-52-gc58e543f3 (automated) gVisor bot 2026-02-24 22:51:40 +00:00
  • c58e543f3d Reject unsupported file types in directfs. Ayush Ranjan 2026-02-24 14:35:36 -08:00
  • 794768df21 Get go version for nogo from a helper function. Konstantin Bogomolov 2026-02-24 11:36:01 -08:00
  • 7b92379c2d Merge release-20260216.0-50-ge41477ffa (automated) gVisor bot 2026-02-24 08:14:18 +00:00
  • e41477ffa9 Internal change. Konstantin Bogomolov 2026-02-23 23:52:33 -08:00
  • a5a5ff0144 Add the flag allow-rootfs-tar-annotation. Jing Chen 2026-02-23 12:40:03 -08:00
  • 7551ab05d9 runsc metric-server: Tag metrics as per-sandbox vs process-wide. Etienne Perot 2026-02-23 11:47:57 -08:00
  • ad1babccfc vfs: validate source/target type match in BindAt Daniel Norberg 2026-01-07 00:31:28 +01:00
  • 4c7c190851 Preserve xattrs in rootfs-upper tar serialization Daniel Norberg 2026-02-22 07:36:21 +00:00
  • eac475ffdc Add regression test for opaque xattr preservation in rootfs-upper tar Daniel Norberg 2026-02-22 07:36:17 +00:00
  • c8e5cd9da5 Internal change test/cl873105605 Etienne Perot 2026-02-20 15:46:19 -08:00
  • fe30adbe8e Merge release-20260216.0-47-geb261c614 (automated) gVisor bot 2026-02-20 23:14:12 +00:00
  • eb261c6145 gofer: Improve restore failure messages. Ayush Ranjan 2026-02-20 14:57:59 -08:00
  • 098a186797 Merge release-20260216.0-46-gc50105dcf (automated) gVisor bot 2026-02-20 20:10:25 +00:00
  • c50105dcfe nvproxy: Add size check for NV0000_CTRL_CMD_SYSTEM_GET_BUILD_VERSION. Ayush Ranjan 2026-02-20 11:54:59 -08:00
  • 2ba75b93bf Merge pull request #12598 from tamird:nogo-more-checks gVisor bot 2026-02-20 11:35:37 -08:00
  • 21970e2938 Merge release-20260216.0-12-g1985b831b (automated) gVisor bot 2026-02-20 00:01:13 +00:00
  • 1985b831b9 Do not panic if RegisterPacketEndpoint failed during restore. Nayana Bidari 2026-02-19 15:43:58 -08:00
  • 0f2374377e Merge release-20260216.0-11-ged6a344b4 (automated) gVisor bot 2026-02-19 19:20:49 +00:00
  • ed6a344b4a Remove stale references to placeholders in --metric-server flag. Ayush Ranjan 2026-02-19 11:05:19 -08:00
  • be0dd44113 Merge release-20260209.1-20-gd473cc236 (automated) gVisor bot 2026-02-19 17:46:51 +00:00
  • d473cc236b Add "debug-command" to allowlist for annotation-based flag override. Ayush Ranjan 2026-02-19 09:28:26 -08:00
  • c78d9e41a0 Ensure s.mu is locked before accessing nextTrap. Lucas Manning 2026-02-18 14:13:16 -08:00
  • 97c87dec99 runsc: Update bundle precedence comment in config_bundles.go. Ayush Ranjan 2026-02-18 13:41:15 -08:00
  • 9482616b49 Merge release-20260209.1-17-g24983d1c6 (automated) gVisor bot 2026-02-18 20:24:53 +00:00
  • 24983d1c6e Add flags for pausing external networking Lucas Manning 2026-02-18 12:07:13 -08:00
  • 2315344287 Move default device file mode to createDeviceFile. Ayush Ranjan 2026-02-18 11:14:11 -08:00
  • eed1cebf76 Merge release-20260209.1-15-g27046a53a (automated) gVisor bot 2026-02-18 15:25:08 +00:00
  • 27046a53aa Merge pull request #12607 from quetz:tcp-sack-btreeg gVisor bot 2026-02-18 07:12:09 -08:00
  • 7ce75cc793 hostinet: Replacing Seek with ReadAt. Parth Sarthi 2026-02-17 14:56:36 -08:00
  • 52821db2b4 nvproxy: Add support for 535.288.01 and 580.126.09. Ayush Ranjan 2026-02-17 12:36:38 -08:00
  • caa65fdd2f Merge release-20260209.1-11-g3f6a9614c (automated) gVisor bot 2026-02-17 18:13:06 +00:00
  • 3f6a9614cc Add a method for stopping external network access while a sandbox is running. Lucas Manning 2026-02-17 09:56:46 -08:00
  • 444f74c200 Merge release-20260209.1-10-g813e3124c (automated) gVisor bot 2026-02-13 20:06:28 +00:00
  • 813e3124c3 netstack: Added check for CAP_NET_ADMIN for get/setsockopt. release-20260216.0 Parth Sarthi 2026-02-13 11:50:11 -08:00
  • 3cc31c0ebd Add sandbox metrics: cpu and wall time saved. Nayana Bidari 2026-02-13 10:05:52 -08:00
  • 0684f84c9a Internal change. test/cl869121609 gVisor bot 2026-02-12 03:07:03 -08:00
  • 67ff7826fd Add a metric to track the presence of the metric server. Etienne Perot 2026-02-12 19:08:41 -08:00
  • 10c3acaa8c Mask out ignored xfeatures when loading FPU state. Andrei Vagin 2026-02-12 18:19:49 -08:00
  • 400d3ccd89 Remove "AddressSpace activation". Jamie Liu 2026-02-12 11:16:55 -08:00
  • e5b717ac26 Merge release-20260209.1-5-gbf7d4ccdb (automated) gVisor bot 2026-02-12 22:48:30 +00:00
  • bf7d4ccdb2 Terminate connections only for restore (not for resume). Nayana Bidari 2026-02-11 13:57:59 -08:00
  • 6f7d12cf8e Add compUtil capability to several nvproxy control commands. Etienne Perot 2026-02-10 18:34:03 -08:00
  • e7ef6e94c9 tcp: migrate SACKScoreboard from btree.BTree to btree.BTreeG qz 2026-02-12 16:22:30 +03:00
  • 34ac2a9f4c chore: Migrate gsutil usage to gcloud storage gurusai-voleti 2026-02-11 12:17:13 +00:00
  • fcc60e0011 Print stack trace when endpoint receiver is nil (for debugging only). Nayana Bidari 2026-02-10 14:26:01 -08:00
  • b3aa83da69 Merge release-20260202.0-22-g3c1e585d5 (automated) gVisor bot 2026-02-10 20:11:08 +00:00
  • 3c1e585d50 runsc: fix data race in config.RegisterDeprecatedFlags() Jamie Liu 2026-02-10 11:54:34 -08:00
  • a50651c4a9 Fix S1040 violations and drop suppression Tamir Duberstein 2026-02-08 07:56:52 -05:00
  • 61eddced18 Fix S1039 violations and drop suppression Tamir Duberstein 2026-02-08 07:45:24 -05:00
  • 3f5d448707 Fix S1034 violations and drop suppression Tamir Duberstein 2026-02-08 07:15:57 -05:00
  • e8af5cc9fd Fix S1033 violations and drop suppression Tamir Duberstein 2026-02-08 07:51:14 -05:00
  • a42181a474 Fix S1030 violations and drop suppression Tamir Duberstein 2026-02-08 07:26:16 -05:00
  • 38e1236b0a Fix S1025 violations and drop suppression Tamir Duberstein 2026-02-07 23:17:49 -05:00
  • 1f97fa1c14 Fix S1024 violations and drop suppression Tamir Duberstein 2026-02-07 22:54:56 -05:00
  • 71a9600b91 Fix S1023 violations and drop suppression Tamir Duberstein 2026-02-07 22:42:01 -05:00
  • 7508cd5c2d Fix S1021 violations and drop suppression Tamir Duberstein 2026-02-07 22:01:14 -05:00
  • 0ac4d1dbc8 Fix S1020 violations and drop suppression Tamir Duberstein 2026-02-08 08:07:34 -05:00
  • 9a64f2f222 Fix S1019 violations and drop suppression Tamir Duberstein 2026-02-07 21:48:28 -05:00
  • 88ed0b2c0e Fix S1016 violations and drop suppression Tamir Duberstein 2026-02-07 21:27:29 -05:00
  • 7ba811fff5 Fix S1012 violations and drop suppression Tamir Duberstein 2026-02-07 20:06:32 -05:00
  • 89cebe8048 Fix S1011 violations and drop suppression Tamir Duberstein 2026-02-07 20:03:10 -05:00
  • bf1fb63228 Fix S1009 violations and drop suppression Tamir Duberstein 2026-02-07 19:58:52 -05:00
  • ea0f2f46c2 Fix S1008 violations and drop suppression Tamir Duberstein 2026-02-07 19:51:43 -05:00
  • b5cadeae4f Fix S1007 violations and drop suppression Tamir Duberstein 2026-02-07 17:19:09 -05:00
  • 56a6075b65 Fix S1005 violations and drop suppression Tamir Duberstein 2026-02-07 17:12:12 -05:00
  • 6252debdda Fix S1004 violations and drop suppression Tamir Duberstein 2026-02-07 17:09:19 -05:00
  • 9c52ab3631 Fix S1003 violations and drop suppression Tamir Duberstein 2026-02-07 17:04:04 -05:00
  • 20699f512e Fix S1002 violations and drop suppression Tamir Duberstein 2026-02-07 16:57:14 -05:00
  • 0392729e7e Fix S1000 violations and drop suppression Tamir Duberstein 2026-02-07 16:53:42 -05:00
  • 50329dc878 Fix QF1012 violations and drop suppression Tamir Duberstein 2026-02-07 16:50:48 -05:00
  • 27446196f9 Move and explain QF1008 suppression Tamir Duberstein 2026-02-09 17:07:58 -05:00
  • 4fc09fa7b2 Fix QF1007 violations and drop suppression Tamir Duberstein 2026-02-07 16:31:47 -05:00
  • 163abb292d Fix QF1006 violations and drop suppression Tamir Duberstein 2026-02-07 16:24:17 -05:00
  • 141a317de9 Fix QF1005 violations and drop suppression Tamir Duberstein 2026-02-07 14:34:31 -05:00