Skip to content

Commit fab360a

Browse files
author
MarcoFalke
committed
util: Add mremap syscall to AllowAddressSpaceAccess
1 parent 66d11b1 commit fab360a

File tree

1 file changed

+8
-7
lines changed

1 file changed

+8
-7
lines changed

src/util/syscall_sandbox.cpp

Lines changed: 8 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -523,14 +523,15 @@ class SeccompPolicyBuilder
523523

524524
void AllowAddressSpaceAccess()
525525
{
526-
allowed_syscalls.insert(__NR_brk); // change data segment size
527-
allowed_syscalls.insert(__NR_madvise); // give advice about use of memory
526+
allowed_syscalls.insert(__NR_brk); // change data segment size
527+
allowed_syscalls.insert(__NR_madvise); // give advice about use of memory
528528
allowed_syscalls.insert(__NR_membarrier); // issue memory barriers on a set of threads
529-
allowed_syscalls.insert(__NR_mlock); // lock memory
530-
allowed_syscalls.insert(__NR_mmap); // map files or devices into memory
531-
allowed_syscalls.insert(__NR_mprotect); // set protection on a region of memory
532-
allowed_syscalls.insert(__NR_munlock); // unlock memory
533-
allowed_syscalls.insert(__NR_munmap); // unmap files or devices into memory
529+
allowed_syscalls.insert(__NR_mlock); // lock memory
530+
allowed_syscalls.insert(__NR_mmap); // map files or devices into memory
531+
allowed_syscalls.insert(__NR_mprotect); // set protection on a region of memory
532+
allowed_syscalls.insert(__NR_mremap); // remap a file in memory
533+
allowed_syscalls.insert(__NR_munlock); // unlock memory
534+
allowed_syscalls.insert(__NR_munmap); // unmap files or devices into memory
534535
}
535536

536537
void AllowEpoll()

0 commit comments

Comments
 (0)