UbuntuUpdates.org

Package "seccomp"

Name: seccomp

Description:

helper tools for high level interface to Linux seccomp filter

Latest version: 2.5.1-1ubuntu1~16.04.1
Release: xenial (16.04)
Level: updates
Repository: main
Head package: libseccomp
Homepage: https://github.com/seccomp/libseccomp

Links


Download "seccomp"


Other versions of "seccomp" in Xenial

Repository Area Version
base main 2.2.3-3ubuntu3
security main 2.4.3-1ubuntu3.16.04.3
PPA: Ubuntu SDK Release 2.3.1-2ubuntu2~ubuntu16.04.1~ppa1
PPA: Lxd 2.3.1-2.1ubuntu3~ubuntu16.04.1~ppa1

Changelog

Version: 2.5.1-1ubuntu1~16.04.1 2021-04-14 06:06:58 UTC

  libseccomp (2.5.1-1ubuntu1~16.04.1) xenial; urgency=medium

  * Updated to new upstream 2.5.1 version for updated syscalls support
    (LP: #1891810)
   - Removed the following patches that are now included in the new version:
     + d/p/fix-aarch64-syscalls.patch
     + d/p/db-consolidate-some-of-the-code-which-adds-rules.patch
     + d/p/db-add-shadow-transactions.patch
   - Deleted the patch to add a local copy of architecture specific header
     files from linux-libc-dev/focal as this is not needed anymore
     + d/p/add-5.4-local-syscall-headers.patch
   - debian/control: Added gperf to Build-Depends as this is now required
     by upstream
   - debian/libseccomp2.symbols: Added new symbols
  * Add system call headers for powerpc required for backport to xenial
    - d/p/add-5.8-powerpc-syscall-headers.patch

 -- Alex Murray <email address hidden> Mon, 01 Mar 2021 13:50:00 +1030

Source diff to previous version

Version: 2.4.3-1ubuntu3.16.04.3 2020-07-23 19:06:20 UTC

  libseccomp (2.4.3-1ubuntu3.16.04.3) xenial; urgency=medium

  * d/p/db-consolidate-some-of-the-code-which-adds-rules.patch
  * d/p/db-add-shadow-transactions.patch (LP: #1861177)
    Backport upstream patches to address performance regression introduced
    in libseccomp 2.4.

 -- Ioanna Alifieraki <email address hidden> Mon, 29 Jun 2020 13:57:55 +0100

Source diff to previous version
1861177 seccomp_rule_add is very slow

Version: 2.4.3-1ubuntu3.16.04.2 2020-06-29 11:06:18 UTC

  libseccomp (2.4.3-1ubuntu3.16.04.2) xenial; urgency=medium

  * Updated to new upstream 2.4.3 version for updated syscalls support
    and test-suite robustness
    - d/p/add-5.4-local-syscall-headers.patch: Add local copy of the
      architecture specific header files which specify system call numbers
      from linux-libc-dev in focal to ensure unit tests pass on older
      releases where the linux-libc-dev package does not have the required
      system calls defined and use these during compilation of unit tests
    - d/p/db-properly-reset-attribute-state.patch: Drop this patch since
      is now upstream
    - LP: #1876055
  * Add missing aarch64 system calls
    - d/p/fix-aarch64-syscalls.patch
    - LP: #1877633
  * Re-enable build failure on unit test failure

 -- Alex Murray <email address hidden> Tue, 02 Jun 2020 14:16:21 +0930

Source diff to previous version
1876055 SRU: Backport 2.4.3-1ubuntu3 from groovy to focal/eoan/bionic/xenial for newer syscalls for core20 base and test suite robustness
1877633 libseccomp 2.4.3 (and 2.4.2) is not correctly resolving (at least) the getrlimit syscall on arm64

Version: 2.4.1-0ubuntu0.16.04.2 2019-05-30 23:07:06 UTC

  libseccomp (2.4.1-0ubuntu0.16.04.2) xenial-security; urgency=medium

  [ Marc Deslauriers ]
  * Updated to new upstream 2.4.1 version to fix security issue.
    - CVE-2019-9893
  * debian/patches/*: removed, all included in new version.
  * debian/control: add valgrind to Build-Depends to get more unit tests.
  * debian/libseccomp2.symbols: added new symbols.
  * debian/docs: removed, new version doesn't have README file.

  [ Jamie Strandboge ]
  * db-properly-reset-attribute-state.patch: db: properly reset the attribute
    state in db_col_reset()

 -- Jamie Strandboge <email address hidden> Fri, 03 May 2019 20:10:57 +0000

Source diff to previous version
CVE-2019-9893 libseccomp before 2.4.0 did not correctly generate 64-bit syscall argument comparisons using the arithmetic operators (LT, GT, LE, GE), which might a

Version: 2.3.1-2.1ubuntu2~16.04.1 2018-01-02 22:06:42 UTC

  libseccomp (2.3.1-2.1ubuntu2~16.04.1) xenial; urgency=medium

  * Backport libseccomp 2.3.1 to xenial LP: #1682102
    - Improved s390x support
    - Improved support for v4.5+ kernels

 -- Dimitri John Ledkov <email address hidden> Fri, 06 Oct 2017 14:47:39 +0100

1682102 libseccomp should support GA and HWE kernels



About   -   Send Feedback to @ubuntu_updates