From e28e55f4553d08007f0192640949128058ca1c55 Mon Sep 17 00:00:00 2001 From: Jintao Zhang Date: Sun, 16 Aug 2020 16:28:21 +0800 Subject: [PATCH 1/2] seccomp: add `openat2` syscall. related to https://patchwork.kernel.org/patch/11167585/ Signed-off-by: Jintao Zhang --- contrib/seccomp/seccomp_default.go | 1 + 1 file changed, 1 insertion(+) diff --git a/contrib/seccomp/seccomp_default.go b/contrib/seccomp/seccomp_default.go index 7da95a0c3..56a76de38 100644 --- a/contrib/seccomp/seccomp_default.go +++ b/contrib/seccomp/seccomp_default.go @@ -224,6 +224,7 @@ func DefaultProfile(sp *specs.Spec) *specs.LinuxSeccomp { "_newselect", "open", "openat", + "openat2", "pause", "pipe", "pipe2", From 6a915a1453a5bfd859664679e1ac478a7022c7f6 Mon Sep 17 00:00:00 2001 From: Jintao Zhang Date: Mon, 17 Aug 2020 21:48:21 +0800 Subject: [PATCH 2/2] seccomp: add `faccessat2` syscall. related to https://patchwork.kernel.org/patch/11545287/ Signed-off-by: Jintao Zhang --- contrib/seccomp/seccomp_default.go | 1 + 1 file changed, 1 insertion(+) diff --git a/contrib/seccomp/seccomp_default.go b/contrib/seccomp/seccomp_default.go index 56a76de38..2adb1c937 100644 --- a/contrib/seccomp/seccomp_default.go +++ b/contrib/seccomp/seccomp_default.go @@ -93,6 +93,7 @@ func DefaultProfile(sp *specs.Spec) *specs.LinuxSeccomp { "exit", "exit_group", "faccessat", + "faccessat2", "fadvise64", "fadvise64_64", "fallocate",