I have made a Bionic version with the fix available for testing in [1].
I'd ask people to test this. Since it changes behavior of a default disabled feature this call applies almost exclusively to people that have set up qemu with "-sandbox=..." or configured libvirt to do so with seccomp_sandbox = 1 in /etc/libvirt/qemu.conf.
@Seth - might I ask you to do a nicely worked call for testing since you so nicely coined it "cajole people to test and report results"?
Depending on the feedback to that we can make a Bionic decision then.
Note: there are plenty of qemu SRUs in flight (one in -proposed, one waiting) this PPA is ahead to all of them to be useful for a while - none of the other changes affect seccomp execution in any way.
I have made a Bionic version with the fix available for testing in [1]. qemu.conf.
I'd ask people to test this. Since it changes behavior of a default disabled feature this call applies almost exclusively to people that have set up qemu with "-sandbox=..." or configured libvirt to do so with seccomp_sandbox = 1 in /etc/libvirt/
@Seth - might I ask you to do a nicely worked call for testing since you so nicely coined it "cajole people to test and report results"?
Depending on the feedback to that we can make a Bionic decision then.
Note: there are plenty of qemu SRUs in flight (one in -proposed, one waiting) this PPA is ahead to all of them to be useful for a while - none of the other changes affect seccomp execution in any way.
[1]: https:/ /launchpad. net/~ci- train-ppa- service/ +archive/ ubuntu/ 3395