Check for incompatible/incomplete options #3

Nyitott
megnyitva 2020-09-26 13:03:57 +02:00 crtxcr által · 0 hozzászólás
Tulajdonos

Currenlty, no_new_privs can be 0 and seccomp filtering enabled, causing prctl to fail

Possible solutions:

  1. Silently enable no_new_privs when seccomp filter given (probably not)
  2. Check for this and drop out with an error message. Check other combinations like this.

Same problem with chroot and namespaces options

Currenlty, no_new_privs can be 0 and seccomp filtering enabled, causing prctl to fail Possible solutions: 1) Silently enable no_new_privs when seccomp filter given (probably not) 2) Check for this and drop out with an error message. Check other combinations like this. Same problem with chroot and namespaces options
crtxcr changed title from Check for no_new_privs required for seccomp filtering to Check for no_new_privs for seccomp filtering 2020-09-26 13:04:04 +02:00
crtxcr changed title from Check for no_new_privs for seccomp filtering to Check for incompatible/incomplete options 2020-09-26 16:20:15 +02:00
Jelentkezz be hogy csatlakozz a beszélgetéshez.
Nincs mérföldkő
Nincsenek megbízottak
1 Résztvevő
Értesítések
Határidő
The due date is invalid or out of range. Please use the format 'yyyy-mm-dd'.

Nincs beállítva határidő.

Függőségek

No dependencies set.

Reference: crtxcr/exile.h#3
No description provided.