Or is fixed kernel version is released?
pve-kernel-5.13.19-3-pve in version 5.13.19-7pve-kernel-5.15.12-1-pve in version 5.15.12-3pve-kernel-5.4.162-1-pve in version 5.4.162-2I clearly understand that, just wanted to remind of the issue.In general please also note that this issue is mostly problematic for setups providing CT access to untrusted users or programs, just mentioning so that people can better classify how much they're actually exposed to this issue.
Can I run this with LXC containers running ? Any side effects?Any solutions other than setkernel.unprivileged_userns_cloneto0? Or is fixed kernel version released?
Really depends on what runs in them.Can I run this with LXC containers running ?
Again, cannot be said for the general case. It switches off user namespaces, more and more apps rely on this nowadays, albeit moreso on desktop (e.g., flatpack), but also nesting other container tech like Docker may rely on that.Any side effects?
We use essential cookies to make this site work, and optional cookies to enhance your experience.