forked from pool/openssh
This commit is contained in:
parent
f2774839fb
commit
5ada588ef0
@ -6,7 +6,7 @@ from being killed by the seccomp filter
|
||||
diff --git a/openssh-6.5p1/sandbox-seccomp-filter.c b/openssh-6.5p1/sandbox-seccomp-filter.c
|
||||
--- a/openssh-6.5p1/sandbox-seccomp-filter.c
|
||||
+++ b/openssh-6.5p1/sandbox-seccomp-filter.c
|
||||
@@ -85,16 +85,17 @@ static const struct sock_filter preauth_
|
||||
@@ -85,16 +85,18 @@ static const struct sock_filter preauth_
|
||||
offsetof(struct seccomp_data, arch)),
|
||||
BPF_JUMP(BPF_JMP+BPF_JEQ+BPF_K, SECCOMP_AUDIT_ARCH, 1, 0),
|
||||
BPF_STMT(BPF_RET+BPF_K, SECCOMP_FILTER_FAIL),
|
||||
@ -16,6 +16,7 @@ diff --git a/openssh-6.5p1/sandbox-seccomp-filter.c b/openssh-6.5p1/sandbox-secc
|
||||
SC_DENY(open, EACCES),
|
||||
SC_ALLOW(getpid),
|
||||
+ SC_ALLOW(getuid),
|
||||
+ SC_ALLOW(getuid32),
|
||||
SC_ALLOW(gettimeofday),
|
||||
SC_ALLOW(clock_gettime),
|
||||
#ifdef __NR_time /* not defined on EABI ARM */
|
||||
|
Loading…
Reference in New Issue
Block a user