summaryrefslogtreecommitdiff
path: root/src/analyze/analyze-security.c
diff options
context:
space:
mode:
authorZbigniew Jędrzejewski-Szmek <zbyszek@in.waw.pl>2020-08-01 11:28:09 +0200
committerZbigniew Jędrzejewski-Szmek <zbyszek@in.waw.pl>2020-08-01 11:54:26 +0200
commit01ecb3674ad3650bcbb14155b2dcbd4b9f4ed57e (patch)
treeb6d1739b35a2be59e4421959e1c9b28039f37d00 /src/analyze/analyze-security.c
parentc2cfb12641eb6d47c66ae14d916f0df86de5d8f8 (diff)
downloadsystemd-01ecb3674ad3650bcbb14155b2dcbd4b9f4ed57e.tar.gz
analyze-security: do not assign badness to filtered-out syscalls
Fixes #16451, https://bugzilla.redhat.com/show_bug.cgi?id=1856273.
Diffstat (limited to 'src/analyze/analyze-security.c')
-rw-r--r--src/analyze/analyze-security.c2
1 files changed, 1 insertions, 1 deletions
diff --git a/src/analyze/analyze-security.c b/src/analyze/analyze-security.c
index d4996c3c65..5356dafbb8 100644
--- a/src/analyze/analyze-security.c
+++ b/src/analyze/analyze-security.c
@@ -566,7 +566,7 @@ static int assess_system_call_filter(
b = 10;
} else {
(void) asprintf(&d, "System call deny list defined for service, and %s is included", f->name);
- b = 5;
+ b = 0;
}
}
}