diff options
Diffstat (limited to 'profiles')
-rwxr-xr-x | profiles/seccomp/default.json | 34 | ||||
-rw-r--r-- | profiles/seccomp/seccomp_default.go | 22 |
2 files changed, 56 insertions, 0 deletions
diff --git a/profiles/seccomp/default.json b/profiles/seccomp/default.json index 01ff1a4c56..364505090d 100755 --- a/profiles/seccomp/default.json +++ b/profiles/seccomp/default.json @@ -406,6 +406,40 @@ "args": [ { "index": 0, + "value": 131072, + "valueTwo": 0, + "op": "SCMP_CMP_EQ" + } + ], + "comment": "", + "includes": {}, + "excludes": {} + }, + { + "names": [ + "personality" + ], + "action": "SCMP_ACT_ALLOW", + "args": [ + { + "index": 0, + "value": 131080, + "valueTwo": 0, + "op": "SCMP_CMP_EQ" + } + ], + "comment": "", + "includes": {}, + "excludes": {} + }, + { + "names": [ + "personality" + ], + "action": "SCMP_ACT_ALLOW", + "args": [ + { + "index": 0, "value": 4294967295, "valueTwo": 0, "op": "SCMP_CMP_EQ" diff --git a/profiles/seccomp/seccomp_default.go b/profiles/seccomp/seccomp_default.go index 42bc3baa4b..6a8dc4ed3b 100644 --- a/profiles/seccomp/seccomp_default.go +++ b/profiles/seccomp/seccomp_default.go @@ -383,6 +383,28 @@ func DefaultProfile() *types.Seccomp { Args: []*types.Arg{ { Index: 0, + Value: 0x20000, + Op: types.OpEqualTo, + }, + }, + }, + { + Names: []string{"personality"}, + Action: types.ActAllow, + Args: []*types.Arg{ + { + Index: 0, + Value: 0x20008, + Op: types.OpEqualTo, + }, + }, + }, + { + Names: []string{"personality"}, + Action: types.ActAllow, + Args: []*types.Arg{ + { + Index: 0, Value: 0xffffffff, Op: types.OpEqualTo, }, |