Skip to content

[release/1.4 backport] seccomp: add pidfd syscalls#4733

Merged
crosbymichael merged 2 commits intocontainerd:release/1.4from
thaJeztah:1.4_backport_update_seccomp_profile
Nov 17, 2020
Merged

[release/1.4 backport] seccomp: add pidfd syscalls#4733
crosbymichael merged 2 commits intocontainerd:release/1.4from
thaJeztah:1.4_backport_update_seccomp_profile

Conversation

@thaJeztah
Copy link
Copy Markdown
Member

backport of #4730

Similar to the changes merged in moby/moby#41665

  • seccomp: add pidfd_open and pidfd_send_signal
  • seccomp: add pidfd_getfd syscall (gated by CAP_SYS_PTRACE)

Signed-off-by: Sebastiaan van Stijn <[email protected]>
(cherry picked from commit 2dbbd10)
Signed-off-by: Sebastiaan van Stijn <[email protected]>
Signed-off-by: Sebastiaan van Stijn <[email protected]>
(cherry picked from commit 0a1104b)
Signed-off-by: Sebastiaan van Stijn <[email protected]>
@theopenlab-ci
Copy link
Copy Markdown

theopenlab-ci Bot commented Nov 13, 2020

Build succeeded.

Copy link
Copy Markdown
Member

@estesp estesp left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@crosbymichael
Copy link
Copy Markdown
Member

LGTM

@crosbymichael crosbymichael merged commit 882e396 into containerd:release/1.4 Nov 17, 2020
@thaJeztah thaJeztah deleted the 1.4_backport_update_seccomp_profile branch November 17, 2020 16:08
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants