totoro625
0.01D

PVE 内 LXC 运行 docker 的用户暂时不要更新 containerd.io_2.1.5-1

  •  
  •   totoro625 · Nov 13, 2025 · 1157 views
    This topic created in 196 days ago, the information mentioned may be changed or developed.

    如果已经升级后 docker 无法启动

    可以使用apt install -y --allow-downgrades containerd.io=1.7.28-1~debian.13~trixie 进行降级

    或者修改 /etc/pve/lxc文件夹内配置文件,添加一行lxc.apparmor.profile: unconfined即可(有安全风险)

    参考: Docker inside LXC (net.ipv4.ip_unprivileged_port_start error)

    CVE-2025-52881: fd reopening causes issues with AppArmor profiles

    No Comments Yet
    About   ·   Help   ·   Advertise   ·   Blog   ·   API   ·   FAQ   ·   Solana   ·   5203 Online   Highest 6679   ·     Select Language
    创意工作者们的社区
    World is powered by solitude
    VERSION: 3.9.8.5 · 46ms · UTC 09:23 · PVG 17:23 · LAX 02:23 · JFK 05:23
    ♥ Do have faith in what you're doing.