crosvm/seccomp/arm
Jordan R Abrahams b785cf2bae seccomp: Mass fstatfs change for glibc for Arm
On trogdor devices, fstatfs64 is not used. Instead, 32bit
fstatfs is used. We need to add both to all 32bit Arm
policy files which were originally determined to be
problematic.

This adds fstsatfs to all 32bit Arm policy files which
were modified for the original glibc security change.

Additionally, this commit sorts the syscalls lexicographically
if the policy file was already sorted.

BUG=chromium:1182687
TEST=CQ of http://crrev.com/c/2910526

Change-Id: I42eb12456625d400ee3422af08d56d648e3f9075
Reviewed-on: https://chromium-review.googlesource.com/c/chromiumos/platform/crosvm/+/3066144
Tested-by: kokoro <noreply+kokoro@google.com>
Reviewed-by: Daniel Verkamp <dverkamp@chromium.org>
Commit-Queue: Jordan R Abrahams <ajordanr@google.com>
2021-08-03 08:08:58 +00:00
..
9p_device.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
balloon_device.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
battery.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
block_device.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
common_device.policy cros_async: Don't use io_uring on kernels < 5.10 2021-07-14 09:42:39 +00:00
cras_audio_device.policy ac97: Add timerfd operations to accepted list 2021-07-23 18:43:21 +00:00
fs_device.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
gpu_device.policy seccomp: Mass fstatfs change for glibc for Arm 2021-08-03 08:08:58 +00:00
input_device.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
net_device.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
null_audio_device.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
pmem_device.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
rng_device.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
serial.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
tpm_device.policy crosvm: add more time syscalls to policies 2021-03-20 13:40:00 +00:00
vhost_net_device.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
vhost_vsock_device.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
video_device.policy seccomp: Mass fstatfs change for glibc for Arm 2021-08-03 08:08:58 +00:00
vios_audio_device.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
wl_device.policy Specify prctl's policy only once per device 2021-04-20 22:50:20 +00:00
xhci.policy cros_async: Don't use io_uring on kernels < 5.10 2021-07-14 09:42:39 +00:00