From 53d17aa4e11007f8f9f1fb7ab201c2d7116deee3 Mon Sep 17 00:00:00 2001 From: bol-van Date: Tue, 22 Nov 2022 18:23:04 +0300 Subject: [PATCH] seccomp: disable clone2 --- nfq/sec.c | 5 +++++ tpws/sec.c | 5 +++++ 2 files changed, 10 insertions(+) diff --git a/nfq/sec.c b/nfq/sec.c index 7545aeb..c40f1ec 100644 --- a/nfq/sec.c +++ b/nfq/sec.c @@ -30,7 +30,12 @@ SYS_execve,SYS_execveat, #ifdef SYS_exec_with_loader SYS_exec_with_loader, #endif +#ifdef SYS_clone SYS_clone, +#endif +#ifdef SYS_clone2 +SYS_clone2, +#endif #ifdef SYS_clone3 SYS_clone3, #endif diff --git a/tpws/sec.c b/tpws/sec.c index 800e825..08a5d78 100644 --- a/tpws/sec.c +++ b/tpws/sec.c @@ -30,7 +30,12 @@ SYS_execve,SYS_execveat, #ifdef SYS_exec_with_loader SYS_exec_with_loader, #endif +#ifdef SYS_clone SYS_clone, +#endif +#ifdef SYS_clone2 +SYS_clone2, +#endif #ifdef SYS_clone3 SYS_clone3, #endif