diff --git a/virtio-devices/src/seccomp_filters.rs b/virtio-devices/src/seccomp_filters.rs index b8b558241..062cfd2b0 100644 --- a/virtio-devices/src/seccomp_filters.rs +++ b/virtio-devices/src/seccomp_filters.rs @@ -159,6 +159,7 @@ fn virtio_pmem_thread_rules() -> Result, Error> { fn virtio_rng_thread_rules() -> Result, Error> { Ok(vec![ + allow_syscall(libc::SYS_brk), allow_syscall(libc::SYS_close), allow_syscall(libc::SYS_dup), allow_syscall(libc::SYS_epoll_create1),