- Linux 4.14.73
- Buildroot: 2018.02
- Docker docker-18.03.1-ce by default
- RPi64: Linux 4.9.80
- Alpine: 3.8
- CentOS: 7.5.1804
- Debian: stretch
- Fedora: 28
- Ubuntu: bionic
- This release addresses CVE-2019-5736. Both system-docker and the default user-docker have been patched.
For x86 platforms, the following user docker versions( v1.12.6/v1.13.1/v17.03.2/v17.06.2/v17.09.1/v17.12.1/v18.03.1/v18.06.1 ) have been patched.
For arm64 platforms, the following user docker versions( v17.09.1/v17.12.1/v18.03.1/v18.06.1 ) have been patched.
- There is now a built-in service for system upgrades that requires access to the internet. By default, it can detect system updates and downloads the required files. It will not automatically apply the patch. If you want to completely disable this feature, just run
ros config set rancher.upgrade.policy none