exynos9610: RSBS31.Q1-48-36-20
[GitHub/LineageOS/android_device_motorola_exynos9610-common.git] / configs / seccomp / configstore@1.1.policy
CommitLineData
c15915df
JA
1# Copyright (C) 2017 The Android Open Source Project
2#
3# Licensed under the Apache License, Version 2.0 (the "License");
4# you may not use this file except in compliance with the License.
5# You may obtain a copy of the License at
6#
7# http://www.apache.org/licenses/LICENSE-2.0
8#
9# Unless required by applicable law or agreed to in writing, software
10# distributed under the License is distributed on an "AS IS" BASIS,
11# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12# See the License for the specific language governing permissions and
13# limitations under the License.
14
15futex: 1
16# ioctl: arg1 == BINDER_WRITE_READ
17ioctl: arg1 == 0xc0306201
18# prctl: arg0 == PR_SET_NAME || arg0 == PR_SET_VMA || arg0 == PR_SET_TIMERSLACK
19# || arg0 == PR_GET_NO_NEW_PRIVS # used by crash_dump
20# prctl: arg0 == 15 || arg0 == 0x53564d41 || arg0 == 29 || arg0 == 39
21# TODO(b/68162846) reduce scope of prctl() based on arguments
22prctl: 1
23openat: 1
24mmap: 1
25mprotect: 1
26close: 1
27getuid: 1
28read: 1
29faccessat: 1
30write: 1
31fstat: 1
32clone: 1
33sched_setscheduler: 1
34munmap: 1
35lseek: 1
36sigaltstack: 1
37writev: 1
38setpriority: 1
39restart_syscall: 1
40exit: 1
41exit_group: 1
42rt_sigreturn: 1
43getrlimit: 1
44madvise: 1
45getdents64: 1
46clock_gettime: 1
47getpid: 1
edd584d8 48gettid: 1
c15915df
JA
49
50# used during process crash by crash_dump to dump process info
51rt_sigprocmask: 1
52rt_sigaction: 1
53# socket: arg0 == AF_LOCAL
54socket: arg0 == 1
55connect: 1
56recvmsg: 1
57rt_tgsigqueueinfo: 1