192 lines
3.9 KiB
Diff
192 lines
3.9 KiB
Diff
From 55a4f57232c42a9c2d36a41de5d743ee9ebbe88e Mon Sep 17 00:00:00 2001
|
|
From: vegbir <yangjiaqi16@huawei.com>
|
|
Date: Wed, 1 Jun 2022 13:44:37 +0800
|
|
Subject: [PATCH 11/22] update seccomp to Linux 5.10 syscall list
|
|
|
|
Signed-off-by: yangjiaqi <yangjiaqi16@huawei.com>
|
|
---
|
|
src/contrib/config/seccomp_default.json | 39 +++++++++++++++++++++++--
|
|
1 file changed, 36 insertions(+), 3 deletions(-)
|
|
|
|
diff --git a/src/contrib/config/seccomp_default.json b/src/contrib/config/seccomp_default.json
|
|
index 7218b99c..7b2fcad3 100644
|
|
--- a/src/contrib/config/seccomp_default.json
|
|
+++ b/src/contrib/config/seccomp_default.json
|
|
@@ -31,10 +31,16 @@
|
|
"chmod",
|
|
"chown",
|
|
"chown32",
|
|
+ "clock_adjtime",
|
|
+ "clock_adjtime64",
|
|
"clock_getres",
|
|
+ "clock_getres_time64",
|
|
"clock_gettime",
|
|
+ "clock_gettime64",
|
|
"clock_nanosleep",
|
|
+ "clock_nanosleep_time64",
|
|
"close",
|
|
+ "close_range",
|
|
"connect",
|
|
"copy_file_range",
|
|
"creat",
|
|
@@ -46,6 +52,7 @@
|
|
"epoll_ctl",
|
|
"epoll_ctl_old",
|
|
"epoll_pwait",
|
|
+ "epoll_pwait2",
|
|
"epoll_wait",
|
|
"epoll_wait_old",
|
|
"eventfd",
|
|
@@ -55,6 +62,7 @@
|
|
"exit",
|
|
"exit_group",
|
|
"faccessat",
|
|
+ "faccessat2",
|
|
"fadvise64",
|
|
"fadvise64_64",
|
|
"fallocate",
|
|
@@ -83,6 +91,7 @@
|
|
"ftruncate",
|
|
"ftruncate64",
|
|
"futex",
|
|
+ "futex_time64",
|
|
"futimesat",
|
|
"getcpu",
|
|
"getcwd",
|
|
@@ -128,10 +137,15 @@
|
|
"ioctl",
|
|
"io_destroy",
|
|
"io_getevents",
|
|
+ "io_pgetevents",
|
|
+ "io_pgetevents_time64",
|
|
"ioprio_get",
|
|
"ioprio_set",
|
|
"io_setup",
|
|
"io_submit",
|
|
+ "io_uring_enter",
|
|
+ "io_uring_register",
|
|
+ "io_uring_setup",
|
|
"ipc",
|
|
"kill",
|
|
"lchown",
|
|
@@ -149,6 +163,7 @@
|
|
"lstat",
|
|
"lstat64",
|
|
"madvise",
|
|
+ "membarrier",
|
|
"memfd_create",
|
|
"mincore",
|
|
"mkdir",
|
|
@@ -165,7 +180,9 @@
|
|
"mq_notify",
|
|
"mq_open",
|
|
"mq_timedreceive",
|
|
+ "mq_timedreceive_time64",
|
|
"mq_timedsend",
|
|
+ "mq_timedsend_time64",
|
|
"mq_unlink",
|
|
"mremap",
|
|
"msgctl",
|
|
@@ -181,17 +198,22 @@
|
|
"_newselect",
|
|
"open",
|
|
"openat",
|
|
+ "openat2",
|
|
"pause",
|
|
+ "pidfd_open",
|
|
+ "pidfd_send_signal",
|
|
"pipe",
|
|
"pipe2",
|
|
"poll",
|
|
"ppoll",
|
|
+ "ppoll_time64",
|
|
"prctl",
|
|
"pread64",
|
|
"preadv",
|
|
"preadv2",
|
|
"prlimit64",
|
|
"pselect6",
|
|
+ "pselect6_time64",
|
|
"pwrite64",
|
|
"pwritev",
|
|
"pwritev2",
|
|
@@ -203,6 +225,7 @@
|
|
"recv",
|
|
"recvfrom",
|
|
"recvmmsg",
|
|
+ "recvmmsg_time64",
|
|
"recvmsg",
|
|
"remap_file_pages",
|
|
"removexattr",
|
|
@@ -211,6 +234,7 @@
|
|
"renameat2",
|
|
"restart_syscall",
|
|
"rmdir",
|
|
+ "rseq",
|
|
"rt_sigaction",
|
|
"rt_sigpending",
|
|
"rt_sigprocmask",
|
|
@@ -218,6 +242,7 @@
|
|
"rt_sigreturn",
|
|
"rt_sigsuspend",
|
|
"rt_sigtimedwait",
|
|
+ "rt_sigtimedwait_time64",
|
|
"rt_tgsigqueueinfo",
|
|
"sched_getaffinity",
|
|
"sched_getattr",
|
|
@@ -226,6 +251,7 @@
|
|
"sched_get_priority_min",
|
|
"sched_getscheduler",
|
|
"sched_rr_get_interval",
|
|
+ "sched_rr_get_interval_time64",
|
|
"sched_setaffinity",
|
|
"sched_setattr",
|
|
"sched_setparam",
|
|
@@ -237,6 +263,7 @@
|
|
"semget",
|
|
"semop",
|
|
"semtimedop",
|
|
+ "semtimedop_time64",
|
|
"send",
|
|
"sendfile",
|
|
"sendfile64",
|
|
@@ -279,6 +306,7 @@
|
|
"sigaltstack",
|
|
"signalfd",
|
|
"signalfd4",
|
|
+ "sigprocmask",
|
|
"sigreturn",
|
|
"socket",
|
|
"socketcall",
|
|
@@ -300,12 +328,16 @@
|
|
"time",
|
|
"timer_create",
|
|
"timer_delete",
|
|
- "timerfd_create",
|
|
- "timerfd_gettime",
|
|
- "timerfd_settime",
|
|
"timer_getoverrun",
|
|
"timer_gettime",
|
|
+ "timer_gettime64",
|
|
"timer_settime",
|
|
+ "timer_settime64",
|
|
+ "timerfd_create",
|
|
+ "timerfd_gettime",
|
|
+ "timerfd_gettime64",
|
|
+ "timerfd_settime",
|
|
+ "timerfd_settime64",
|
|
"times",
|
|
"tkill",
|
|
"truncate",
|
|
@@ -317,6 +349,7 @@
|
|
"unlinkat",
|
|
"utime",
|
|
"utimensat",
|
|
+ "utimensat_time64",
|
|
"utimes",
|
|
"vfork",
|
|
"vmsplice",
|
|
--
|
|
2.25.1
|
|
|