This is an automated email from the ASF dual-hosted git repository.
MuhammadTahaNaveed pushed a commit to branch master
in repository https://gitbox.apache.org/repos/asf/age.git
The following commit(s) were added to refs/heads/master by this push:
new 8f16cf51 Pin BuildKit image used for Docker Hub multi-arch builds
(#2522)
8f16cf51 is described below
commit 8f16cf512010955300fe0fd5acda2622b9769019
Author: John Gemignani <[email protected]>
AuthorDate: Wed Aug 19 00:05:20 2026 -0700
Pin BuildKit image used for Docker Hub multi-arch builds (#2522)
The docker-container buildx driver boots moby/buildkit:buildx-stable-1,
a moving tag that has advanced to BuildKit v0.32.x. That release bundles
runc v1.4.3, which mounts masked-path tmpfs with nr_inodes=1 and is
rejected by the Docker Hub build host kernel, so every RUN step fails
during container init (opencontainers/runc#5348, fixed in runc 1.4.4).
Pin to v0.31.2, the last BuildKit release predating the runc 1.4.3 bump.
Remove the pin once BuildKit ships runc >= 1.4.4.
---
docker/hooks/build | 7 +++++--
1 file changed, 5 insertions(+), 2 deletions(-)
diff --git a/docker/hooks/build b/docker/hooks/build
index bd347d90..68b9acda 100644
--- a/docker/hooks/build
+++ b/docker/hooks/build
@@ -1,4 +1,7 @@
#!/bin/bash
-docker buildx create --name multiarch --use --platform
linux/amd64,linux/arm64/v8
-docker buildx build ../ -t $IMAGE_NAME -f Dockerfile --platform
linux/amd64,linux/arm64/v8 --push
\ No newline at end of file
+# Pinned: buildx-stable-1 ships runc 1.4.3, which fails masked-path setup on
the build host (runc#5348).
+docker buildx create --name multiarch --use --platform
linux/amd64,linux/arm64/v8 \
+ --driver-opt image=moby/buildkit:v0.31.2
+
+docker buildx build ../ -t $IMAGE_NAME -f Dockerfile --platform
linux/amd64,linux/arm64/v8 --push