Explorar el Código

Add wait4 to the seccomp2 sandbox allowable syscall list

fixes bug 15088. patch from sanic.
Nick Mathewson hace 9 años
padre
commit
d5b2cbea10
Se han modificado 2 ficheros con 5 adiciones y 0 borrados
  1. 4 0
      changes/bug15088
  2. 1 0
      src/common/sandbox.c

+ 4 - 0
changes/bug15088

@@ -0,0 +1,4 @@
+  o Minor bugfixes (Linux seccomp2 sandbox):
+    - Upon receiving sighup, do not crash during attempts to call
+      wait4. Fixes bug 15088; bugfix on 0.2.5.1-alpha. Patch from
+      "sanic".

+ 1 - 0
src/common/sandbox.c

@@ -164,6 +164,7 @@ static int filter_nopar_gen[] = {
 #endif
     SCMP_SYS(stat),
     SCMP_SYS(uname),
+    SCMP_SYS(wait4),
     SCMP_SYS(write),
     SCMP_SYS(writev),
     SCMP_SYS(exit_group),