The Anbox Cloud LXD images are based of the standard Ubuntu cloud images for LXD but have the systemd-udev.service unit masked (`systemctl mask systemd-udev.service`) as we do not need udev.
With the latest security patch on Ubuntu 22.04 upgrading the udev package fails:
...
Mar 07 21:33:48 ams-cg3qqttdjmctnqegcqag sh[753]: left to upgrade {'udev', 'libudev1'}
Mar 07 21:33:48 ams-cg3qqttdjmctnqegcqag sh[753]: applying set ['udev', 'libudev1']
Mar 07 21:33:48 ams-cg3qqttdjmctnqegcqag sh[753]: Log ended: 2023-03-07 21:33:47
Mar 07 21:33:48 ams-cg3qqttdjmctnqegcqag sh[753]: Log started: 2023-03-07 21:33:48
Mar 07 21:33:48 ams-cg3qqttdjmctnqegcqag sh[753]: [614B blob data]
Mar 07 21:33:48 ams-cg3qqttdjmctnqegcqag sh[753]: Preparing to unpack .../udev_249.11-0ubuntu3.7_arm64.deb ...
Mar 07 21:33:48 ams-cg3qqttdjmctnqegcqag sh[753]: Unpacking udev (249.11-0ubuntu3.7) over (249.11-0ubuntu3.6) ...
Mar 07 21:33:49 ams-cg3qqttdjmctnqegcqag sh[753]: Preparing to unpack .../libudev1_249.11-0ubuntu3.7_arm64.deb ...
Mar 07 21:33:49 ams-cg3qqttdjmctnqegcqag sh[753]: Unpacking libudev1:arm64 (249.11-0ubuntu3.7) over (249.11-0ubuntu3.6) ...
Mar 07 21:33:49 ams-cg3qqttdjmctnqegcqag sh[753]: Setting up libudev1:arm64 (249.11-0ubuntu3.7) ...
Mar 07 21:33:49 ams-cg3qqttdjmctnqegcqag sh[753]: Setting up udev (249.11-0ubuntu3.7) ...
Mar 07 21:33:49 ams-cg3qqttdjmctnqegcqag systemd[1]: Reloading.
Mar 07 21:33:49 ams-cg3qqttdjmctnqegcqag sh[753]: Failed to restart udev.service: Unit udev.service failed to load properly, please adjust/correct and reload service manager: File exists
Mar 07 21:33:49 ams-cg3qqttdjmctnqegcqag sh[753]: See system logs and 'systemctl status udev.service' for details.
Mar 07 21:33:49 ams-cg3qqttdjmctnqegcqag sh[753]: invoke-rc.d: initscript udev, action "restart" failed.
We can workaround this by doing a patch release to our users next week but it would be a lot better if the package scripts check if the service unit is masked and if it is avoid restarting udev.service
The problem isn't introduced with the 249.11-0ubuntu3.7 but should exist for longer already. It just became a problem for us due to the security patch rolling in via unattended-upgrades
The Anbox Cloud LXD images are based of the standard Ubuntu cloud images for LXD but have the systemd- udev.service unit masked (`systemctl mask systemd- udev.service` ) as we do not need udev.
With the latest security patch on Ubuntu 22.04 upgrading the udev package fails:
... tnqegcqag sh[753]: left to upgrade {'udev', 'libudev1'} tnqegcqag sh[753]: applying set ['udev', 'libudev1'] tnqegcqag sh[753]: Log ended: 2023-03-07 21:33:47 tnqegcqag sh[753]: Log started: 2023-03-07 21:33:48 tnqegcqag sh[753]: [614B blob data] tnqegcqag sh[753]: Preparing to unpack .../udev_ 249.11- 0ubuntu3. 7_arm64. deb ... tnqegcqag sh[753]: Unpacking udev (249.11-0ubuntu3.7) over (249.11-0ubuntu3.6) ... tnqegcqag sh[753]: Preparing to unpack .../libudev1_ 249.11- 0ubuntu3. 7_arm64. deb ... tnqegcqag sh[753]: Unpacking libudev1:arm64 (249.11-0ubuntu3.7) over (249.11-0ubuntu3.6) ... tnqegcqag sh[753]: Setting up libudev1:arm64 (249.11-0ubuntu3.7) ... tnqegcqag sh[753]: Setting up udev (249.11-0ubuntu3.7) ... tnqegcqag systemd[1]: Reloading. tnqegcqag sh[753]: Failed to restart udev.service: Unit udev.service failed to load properly, please adjust/correct and reload service manager: File exists tnqegcqag sh[753]: See system logs and 'systemctl status udev.service' for details. tnqegcqag sh[753]: invoke-rc.d: initscript udev, action "restart" failed.
Mar 07 21:33:48 ams-cg3qqttdjmc
Mar 07 21:33:48 ams-cg3qqttdjmc
Mar 07 21:33:48 ams-cg3qqttdjmc
Mar 07 21:33:48 ams-cg3qqttdjmc
Mar 07 21:33:48 ams-cg3qqttdjmc
Mar 07 21:33:48 ams-cg3qqttdjmc
Mar 07 21:33:48 ams-cg3qqttdjmc
Mar 07 21:33:49 ams-cg3qqttdjmc
Mar 07 21:33:49 ams-cg3qqttdjmc
Mar 07 21:33:49 ams-cg3qqttdjmc
Mar 07 21:33:49 ams-cg3qqttdjmc
Mar 07 21:33:49 ams-cg3qqttdjmc
Mar 07 21:33:49 ams-cg3qqttdjmc
Mar 07 21:33:49 ams-cg3qqttdjmc
Mar 07 21:33:49 ams-cg3qqttdjmc
We can workaround this by doing a patch release to our users next week but it would be a lot better if the package scripts check if the service unit is masked and if it is avoid restarting udev.service
The problem isn't introduced with the 249.11-0ubuntu3.7 but should exist for longer already. It just became a problem for us due to the security patch rolling in via unattended-upgrades