glibc adds getrandom(2), everything that uses seccomp and getrandom(2) through libressl breaks now, apparently openssl doesn't use it
-
-
Replying to @duncaen
They break because getrandom() isn't whitelisted? Or is it more nuanced than that?
1 reply 0 retweets 0 likes -
Replying to @BRIAN_____
yes its just not whitelisted, but this shows how seccomp can introduce new problems, other libcs use different syscalls...
1 reply 0 retweets 2 likes
Replying to @duncaen
Thanks. You might enjoy this: https://github.com/kristapsdz/acme-client-portable/blob/master/Linux-seccomp.md ….
0 replies
0 retweets
3 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.