From 648b61d1cce4ebc222c908be895a68b524fb945f Mon Sep 17 00:00:00 2001 From: Rob Bradford Date: Fri, 25 Mar 2022 16:43:18 +0000 Subject: [PATCH] virtio-devices: Add missing syscalls to virtio common list Signed-off-by: Rob Bradford --- virtio-devices/src/seccomp_filters.rs | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/virtio-devices/src/seccomp_filters.rs b/virtio-devices/src/seccomp_filters.rs index 66ce65a2d..482b37ece 100644 --- a/virtio-devices/src/seccomp_filters.rs +++ b/virtio-devices/src/seccomp_filters.rs @@ -180,7 +180,6 @@ fn virtio_vhost_net_thread_rules() -> Vec<(i64, Vec)> { (libc::SYS_getcwd, vec![]), (libc::SYS_listen, vec![]), (libc::SYS_recvmsg, vec![]), - (libc::SYS_rt_sigreturn, vec![]), (libc::SYS_sendmsg, vec![]), (libc::SYS_sendto, vec![]), (libc::SYS_socket, vec![]), @@ -244,7 +243,6 @@ fn get_seccomp_rules(thread_type: Thread) -> Vec<(i64, Vec)> { fn virtio_thread_common() -> Vec<(i64, Vec)> { vec![ (libc::SYS_brk, vec![]), - #[cfg(feature = "mshv")] (libc::SYS_clock_gettime, vec![]), (libc::SYS_close, vec![]), (libc::SYS_dup, vec![]), @@ -261,6 +259,7 @@ fn virtio_thread_common() -> Vec<(i64, Vec)> { (libc::SYS_openat, vec![]), (libc::SYS_read, vec![]), (libc::SYS_rt_sigprocmask, vec![]), + (libc::SYS_rt_sigreturn, vec![]), (libc::SYS_sigaltstack, vec![]), (libc::SYS_write, vec![]), ]