Bug 1285770 - Add sys_fallocate to seccomp whitelist. r=gcp
authorJulian Hector <julian.r.hector@gmail.com>
Sat, 23 Jul 2016 17:13:52 +0200
changeset 331752 7107f6c515422d297e25e9028f37d29efcbba0ec
parent 331751 6e16fdf4bb1a5423c7031fdf8c3b9df28782a049
child 331753 c941e8a139541661f1ca69c673959345e76f20bf
push id9858
push userjlund@mozilla.com
push dateMon, 01 Aug 2016 14:37:10 +0000
treeherdermozilla-aurora@203106ef6cb6 [default view] [failures only]
perfherder[talos] [build metrics] [platform microbench] (compared to previous push)
reviewersgcp
bugs1285770
milestone50.0a1
Bug 1285770 - Add sys_fallocate to seccomp whitelist. r=gcp
security/sandbox/linux/SandboxFilter.cpp
--- a/security/sandbox/linux/SandboxFilter.cpp
+++ b/security/sandbox/linux/SandboxFilter.cpp
@@ -669,16 +669,19 @@ public:
     case __NR_clone:
       return ClonePolicy(Error(EPERM));
 
 #ifdef __NR_fadvise64
     case __NR_fadvise64:
       return Allow();
 #endif
 
+    case __NR_fallocate:
+      return Allow();
+
 #endif // DESKTOP
 
 #ifdef __NR_getrandom
     case __NR_getrandom:
       return Allow();
 #endif
 
       // nsSystemInfo uses uname (and we cache an instance, so