nvidia-container-toolkit/vendor/github.com
Evan Lezar ec29b602c3
Run update-ldcache in isolated namespaces
This change uses the reexec package to run the update of the
ldcache in a container in a process with isolated namespaces.
Since the hook is invoked as a createContainer hook, these
namespaces are cloned from the container's namespaces.

In the reexec handler, we further isolate the proc filesystem,
mount the host ldconfig to a tmpfs, and pivot into the containers
root.

Signed-off-by: Evan Lezar <elezar@nvidia.com>
2025-05-15 12:45:49 +02:00
..
cpuguy83/go-md2man/v2 Bump github.com/urfave/cli/v2 from 2.27.4 to 2.27.5 2025-01-16 08:25:45 +00:00
cyphar/filepath-securejoin Use libcontainer execseal to run ldconfig 2025-02-27 13:52:27 +02:00
davecgh/go-spew
fsnotify/fsnotify
google/uuid
moby/sys Run update-ldcache in isolated namespaces 2025-05-15 12:45:49 +02:00
NVIDIA Fix mode detection on Thor-based systems 2025-05-13 21:25:11 +02:00
opencontainers bump runc go dep to v1.3.0 2025-04-29 19:01:38 -07:00
pelletier/go-toml
pmezard/go-difflib
russross/blackfriday/v2
sirupsen/logrus
stretchr/testify Bump github.com/stretchr/testify from 1.9.0 to 1.10.0 2025-01-09 14:16:21 +00:00
syndtr/gocapability
urfave/cli/v2 Bump github.com/urfave/cli/v2 from 2.27.5 to 2.27.6 2025-03-06 10:48:36 +00:00
xrash/smetrics