summary refs log tree commit diff
path: root/seccomp/x86_64
diff options
context:
space:
mode:
authorYunlian Jiang <yunlian@google.com>2018-10-22 13:20:34 -0700
committerchrome-bot <chrome-bot@chromium.org>2018-10-23 02:55:29 -0700
commit31c20fdcce2055a09580429e9522ca4bb1c5abb9 (patch)
treef1a82a5911c5813904c2e563647ca0c117bf20f3 /seccomp/x86_64
parent15503e236ece42f82a256cc0f572fd8df553a50f (diff)
downloadcrosvm-31c20fdcce2055a09580429e9522ca4bb1c5abb9.tar
crosvm-31c20fdcce2055a09580429e9522ca4bb1c5abb9.tar.gz
crosvm-31c20fdcce2055a09580429e9522ca4bb1c5abb9.tar.bz2
crosvm-31c20fdcce2055a09580429e9522ca4bb1c5abb9.tar.lz
crosvm-31c20fdcce2055a09580429e9522ca4bb1c5abb9.tar.xz
crosvm-31c20fdcce2055a09580429e9522ca4bb1c5abb9.tar.zst
crosvm-31c20fdcce2055a09580429e9522ca4bb1c5abb9.zip
crosvm: add getpid and prlimit to seccomp
This is needed to make sure seccomp work with glibc 2.27

BUG=chromium:897477
TEST=None

Change-Id: I101aa07bffd8db2b449be1a697dafcd7d6f1cb58
Reviewed-on: https://chromium-review.googlesource.com/1294729
Commit-Ready: Yunlian Jiang <yunlian@chromium.org>
Tested-by: Yunlian Jiang <yunlian@chromium.org>
Reviewed-by: Mike Frysinger <vapier@chromium.org>
Diffstat (limited to 'seccomp/x86_64')
-rw-r--r--seccomp/x86_64/9s.policy1
1 files changed, 1 insertions, 0 deletions
diff --git a/seccomp/x86_64/9s.policy b/seccomp/x86_64/9s.policy
index 400cca3..33590a8 100644
--- a/seccomp/x86_64/9s.policy
+++ b/seccomp/x86_64/9s.policy
@@ -60,3 +60,4 @@ mkdir: 1
 mremap: 1
 rename: 1
 newfstatat: 1
+prlimit64: arg2 == 0 && arg3 != 0