summaryrefslogtreecommitdiff
path: root/profiles
diff options
context:
space:
mode:
Diffstat (limited to 'profiles')
-rwxr-xr-xprofiles/seccomp/default.json34
-rw-r--r--profiles/seccomp/seccomp_default.go22
2 files changed, 56 insertions, 0 deletions
diff --git a/profiles/seccomp/default.json b/profiles/seccomp/default.json
index 01ff1a4c56..364505090d 100755
--- a/profiles/seccomp/default.json
+++ b/profiles/seccomp/default.json
@@ -406,6 +406,40 @@
"args": [
{
"index": 0,
+ "value": 131072,
+ "valueTwo": 0,
+ "op": "SCMP_CMP_EQ"
+ }
+ ],
+ "comment": "",
+ "includes": {},
+ "excludes": {}
+ },
+ {
+ "names": [
+ "personality"
+ ],
+ "action": "SCMP_ACT_ALLOW",
+ "args": [
+ {
+ "index": 0,
+ "value": 131080,
+ "valueTwo": 0,
+ "op": "SCMP_CMP_EQ"
+ }
+ ],
+ "comment": "",
+ "includes": {},
+ "excludes": {}
+ },
+ {
+ "names": [
+ "personality"
+ ],
+ "action": "SCMP_ACT_ALLOW",
+ "args": [
+ {
+ "index": 0,
"value": 4294967295,
"valueTwo": 0,
"op": "SCMP_CMP_EQ"
diff --git a/profiles/seccomp/seccomp_default.go b/profiles/seccomp/seccomp_default.go
index 42bc3baa4b..6a8dc4ed3b 100644
--- a/profiles/seccomp/seccomp_default.go
+++ b/profiles/seccomp/seccomp_default.go
@@ -383,6 +383,28 @@ func DefaultProfile() *types.Seccomp {
Args: []*types.Arg{
{
Index: 0,
+ Value: 0x20000,
+ Op: types.OpEqualTo,
+ },
+ },
+ },
+ {
+ Names: []string{"personality"},
+ Action: types.ActAllow,
+ Args: []*types.Arg{
+ {
+ Index: 0,
+ Value: 0x20008,
+ Op: types.OpEqualTo,
+ },
+ },
+ },
+ {
+ Names: []string{"personality"},
+ Action: types.ActAllow,
+ Args: []*types.Arg{
+ {
+ Index: 0,
Value: 0xffffffff,
Op: types.OpEqualTo,
},