Seccomp: Improve syscall allow-listing / deny-listing Process #1008
Labels
Priority: Medium
Indicates than an issue or pull request should be resolved ahead of issues or pull requests labelled
Our current syscall whitelisting process doesn't guarantee that all legit syscalls make it past the seccomp filter. We need to devise a model that can guarantee any seccomp infringement is caught, at latest, during our testing phase.
The text was updated successfully, but these errors were encountered: