1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47
|
From 78ac839f6d4dd0cf6dd44a67201e16ee3e890c1d Mon Sep 17 00:00:00 2001
From: Giuseppe Scrivano <gscrivan@redhat.com>
Date: Wed, 16 Jun 2021 12:14:26 +0200
Subject: [PATCH] seccomp: allow clone3
Signed-off-by: Giuseppe Scrivano <gscrivan@redhat.com>
---
pkg/seccomp/default_linux.go | 2 +-
pkg/seccomp/seccomp.json | 2 +-
2 files changed, 2 insertions(+), 2 deletions(-)
--- a/pkg/seccomp/default_linux.go
+++ b/pkg/seccomp/default_linux.go
@@ -53,7 +53,6 @@
{
Names: []string{
"bdflush",
- "clone3",
"io_pgetevents",
"io_uring_enter",
"io_uring_register",
@@ -120,6 +119,7 @@
"clock_nanosleep",
"clock_nanosleep_time64",
"clone",
+ "clone3",
"close",
"close_range",
"connect",
--- a/pkg/seccomp/seccomp.json
+++ b/pkg/seccomp/seccomp.json
@@ -54,7 +54,6 @@
{
"names": [
"bdflush",
- "clone3",
"io_pgetevents",
"io_uring_enter",
"io_uring_register",
@@ -124,6 +123,7 @@
"clock_nanosleep",
"clock_nanosleep_time64",
"clone",
+ "clone3",
"close",
"close_range",
"connect",
|