Sign in
android
/
platform
/
external
/
sandboxed-api
/
HEAD
4d444c0
ANDROID: build fixes for merge am: 169615d4f8
by A. Cody Schuffelen
· 8 months ago
main
master
2f1ebe2
Merge remote-tracking branch 'aosp/upstream-main' into aosp/main am: 56a59a9870
by A. Cody Schuffelen
· 8 months ago
169615d
ANDROID: build fixes for merge
by A. Cody Schuffelen
· 8 months ago
56a59a9
Merge remote-tracking branch 'aosp/upstream-main' into aosp/main
by A. Cody Schuffelen
· 8 months ago
8f271b4
Address the `-Wunused-variable` and `-Wparentheses` warnings.
by Oliver Kunz
· 8 months ago
0ba45a7
Add test to ensure we don't accidentally allow unsafe `bpf()`
by Christian Blichmann
· 8 months ago
150c404
Add `AllowSafeBpf()` to policy builder
by Christian Blichmann
· 8 months ago
410855f
Fix build errors.
by Oliver Kunz
· 8 months ago
897cc15
Automated Code Change
by Oliver Kunz
· 8 months ago
50f75d0
policybuilder: Remove deprecated `DisableNamespaces()`
by Oliver Kunz
· 9 months ago
05512ae
allowlists: Move remaining tokens to the allowlists folder.
by Oliver Kunz
· 9 months ago
e3de491
sandbox2: `trace_all_syscalls` and `testonly_trace_all_syscalls` targets.
by Oliver Kunz
· 9 months ago
2a32ac1
forkserver: Switch back from eventfd to pipes
by Wiktor Garbacz
· 9 months ago
4ac4881
Automated Code Change
by Sandboxed API Team
· 9 months ago
971110c
allowlists: Move `TraceAllSyscalls` to allowlists.
by Oliver Kunz
· 9 months ago
873f404
Internal change
by Wiktor Garbacz
· 9 months ago
cedc749
Use `DisableNamespaces` with allowlist token in the sandbox2 codebase.
by Oliver Kunz
· 9 months ago
31a4fcf
allowlists: Create allowlist for `DisableNamespaces`.
by Oliver Kunz
· 9 months ago
02b329d
Adds additional test cases for `sapi::file::CleanPath` and updates
by Oliver Kunz
· 9 months ago
9865502
PtraceMonitor: Add a flag to use deadline manager instead of sigtimedwait
by Wiktor Garbacz
· 9 months ago
1e91228
PidWaiter: Add a thread-safe Notify
by Wiktor Garbacz
· 9 months ago
17044d1
Automated Code Change
by Sandboxed API Team
· 9 months ago
ee068f8
NetworkProxyClient: Restore fd flags
by Wiktor Garbacz
· 9 months ago
67caef7
Refactor NetworkProxyClient
by Wiktor Garbacz
· 9 months ago
63bc576
sandbox: Reduce log-spam for ungraceful SAPI sandbox termination.
by Oliver Kunz
· 9 months ago
85a6828
DeadlineManager: Better debug info for handler override
by Wiktor Garbacz
· 9 months ago
7cb9a03
policybuilder: Add `AnchorPathAbsolute` utility function.
by Oliver Kunz
· 9 months ago
7f62fb9
Add missing copts
by Wiktor Garbacz
· 9 months ago
285cb28
Prepare for restrictions on executable memory mappings
by Christian Blichmann
· 9 months ago
6b9d87a
Automated rollback of commit 2fffcbaad5b1d9f7a3ce8d7c6302984f30aa8616.
by Oliver Kunz
· 9 months ago
2fffcba
Automated rollback of commit 599da2312460ec62dfca24415074895f67608a4a.
by Sandboxed API Team
· 9 months ago
599da23
Remove the private static functions `ValidatePath` and `ValidateAbsolutePath`, and replace it with an internal function `ValidatePath` defined in the policybuilder source file.
by Oliver Kunz
· 9 months ago
8f28935
Allow fixed executable mappings in AllowDynamciStartup
by Wiktor Garbacz
· 9 months ago
653b072
This is a pure reformatting of the PolicyBuilder doc comments.
by Oliver Kunz
· 9 months ago
0a89ada
Automated rollback of commit f48c7720f41681a66f1af5e9bd31c420fa35a023.
by Wiktor Garbacz
· 9 months ago
c6b7860
Automated Code Change
by Sandboxed API Team
· 9 months ago
6df0606
Change MakeAbsolute to pass absl::string_view parameters.
by Oliver Kunz
· 9 months ago
5166f36
Mounts: add better diagnostics on symlinks
by Wiktor Garbacz
· 9 months ago
028c85c
Extend policybuilder API documentation with annotation which APIs require namespace support.
by Oliver Kunz
· 9 months ago
b2af7e9
clang_generator: Handle CompilationContext.includes
by Wiktor Garbacz
· 9 months ago
ed0a5c0
Store time_limit as Duration instead of a time_t in the TransactionBase
by Wiktor Garbacz
· 10 months ago
f48c772
PtraceMonitor: Use deadline manager instead of sigtimedwait
by Wiktor Garbacz
· 10 months ago
bfcd2dd
The private `Sandbox::Exit` function is unused and can be removed.
by Oliver Kunz
· 10 months ago
899792a
DeadlineManager: do exponential backoff on notification failures
by Wiktor Garbacz
· 10 months ago
9add401
DeadlineManager: Verify handler after repeated notification failures
by Wiktor Garbacz
· 10 months ago
f3b3f0a
Add a custom syscall `util::kMagicSyscallNo`, returning `util::kMagicSyscallErr` when the caller is running under sandbox2 and `ENOSYS` if it is not.
by Oliver Kunz
· 10 months ago
4824f58
Remove all Android support from the Sandbox2 codebase and resolve previously added TODO's. This finalizes the removal of Android support from Sandbox2 and SAPI.
by Oliver Kunz
· 10 months ago
90e8119
Remove all Android support from the SAPI codebase and adds
by Oliver Kunz
· 10 months ago
0082673
Remove the ITTT marker. It is confusing as it covers both ptrace and unotify parts but only suggests to edit one file.
by Oliver Kunz
· 10 months ago
7c29026
Permit TCMalloc to use __NR_lseek
by Nelson Liang
· 10 months ago
968a0b5
Add janitors to the OWNERS file am: b308a1b709
by Sadaf Ebrahimi
· 10 months ago
b308a1b
Add janitors to the OWNERS file
by Sadaf Ebrahimi
· 10 months ago
953d754
DeadlineManager: make sure next notification is at least kResolution away
by Wiktor Garbacz
· 10 months ago
a545f8d
PolicyBuilder: Do not CHECK fail on conflicting namespace setup
by Wiktor Garbacz
· 10 months ago
fe32ef4
Automated rollback of commit afe4c628a88bad2d6aaa60862b97d1f6adec81db.
by Wiktor Garbacz
· 10 months ago
d02ef0c
monitor_unotify: fix deadline handling
by Wiktor Garbacz
· 10 months ago
567afff
Automated Code Change
by Sandboxed API Team
· 10 months ago
d5ed83c
Automated Code Change
by Sandboxed API Team
· 10 months ago
3028686
Automated Code Change
by John Cater
· 10 months ago
afe4c62
DeadlineManager: perform better under load
by Wiktor Garbacz
· 11 months ago
cd03f6e
Document that symlinks that point to a resource outside the sandbox need to be resolved. Otherwise the resource will not be available and result in an ENOENT (errno 2).
by Oliver Kunz
· 11 months ago
dfe5ac0
policybuilder: Defensive handling of COVERAGE_DIR.
by Oliver Kunz
· 11 months ago
47dcb51
Automated rollback of commit f06ee44f248fd08ccd42817f97c54b711cb3dec1.
by Wiktor Garbacz
· 11 months ago
19e0490
Add test for Notifier::EventFinished
by Wiktor Garbacz
· 11 months ago
56220f8
Make Sandbox::GetEnvs protected rather than private.
by Sandboxed API Team
· 11 months ago
d423752
Automated Code Change
by Sandboxed API Team
· 11 months ago
037c5c2
Fix a data race
by Wiktor Garbacz
· 11 months ago
f06ee44
PtraceMonitor: Use deadline manager instead of sigtimedwait
by Wiktor Garbacz
· 11 months ago
c0951ac
Test situation when sandboxee is killed but not awaited
by Wiktor Garbacz
· 11 months ago
1ed1edf
Automated Code Change
by Sandboxed API Team
· 11 months ago
e51d739
Add missing include
by Wiktor Garbacz
· 11 months ago
ee33868
Add missing includes
by Wiktor Garbacz
· 11 months ago
9c9c894
Remove unsandboxed stack traces
by Wiktor Garbacz
· 11 months ago
df10cde
DeadlineManager: do not check fail on preexisting handler
by Wiktor Garbacz
· 11 months ago
f86d02e
Add deadline support to PidWaiter
by Wiktor Garbacz
· 11 months ago
5b24c6e
Automated Code Change
by Sandboxed API Team
· 11 months ago
5c9f6e3
Automated Code Change
by Sandboxed API Team
· 11 months ago
acf6f61
Fix notifications to threads
by Wiktor Garbacz
· 11 months ago
5366f9d
Fix DeadlineRegistration to be reusable after expiration
by Wiktor Garbacz
· 11 months ago
0b99c48
PidWaiter: Allow changing priority pid
by Wiktor Garbacz
· 11 months ago
c5a0736
Automated rollback of commit 3175885a1c55a0f51cf38a708c14c75a7828430a.
by Sandboxed API Team
· 11 months ago
ea2136c
Automated rollback of commit f78273754c4cf51f9b3914377c5608b0423eb733.
by Oliver Kunz
· 11 months ago
950c5bf
Delete deprecated `sandbox2::Sandbox2::SetWallTimeLimit` and its remaining call sites.
by Sandboxed API Team
· 11 months ago
70f3aa3
DeadlineManager: make the signal runtime configurable
by Wiktor Garbacz
· 11 months ago
f782737
PidWaiter: Allow changing priority pid
by Wiktor Garbacz
· 11 months ago
3175885
Add deadline support to PidWaiter
by Wiktor Garbacz
· 11 months ago
05e47b0
Implement deadline manager to be used in ptrace monitor
by Wiktor Garbacz
· 11 months ago
e38dabb
Strip visibility for internal build target
by Christian Blichmann
· 11 months ago
2d85dbf
Fix uninitialized value use
by Wiktor Garbacz
· 11 months ago
5e240ca
Introduce a compatibility layer for threads
by Wiktor Garbacz
· 11 months ago
5d9f439
Buildkite: Install system package `python3-clang`
by Christian Blichmann
· 11 months ago
7ac30ec
Fix build issues on older Clang and on Fedora
by Christian Blichmann
· 11 months ago
54e1a94
Fix notification of network violation
by Wiktor Garbacz
· 11 months ago
0474c87
#Cleanup includes and Bazel build dependencies
by Christian Blichmann
· 11 months ago
9ddba0c
Implement move ctor and assignment for complex variable types
by Christian Blichmann
· 11 months ago
00a462b
Split out and test PidWaiter
by Wiktor Garbacz
· 11 months ago
5c74f1b
Internal change
by Sandboxed API Team
· 11 months ago
a1eb40d
Python header generator: Use system libclang
by Christian Blichmann
· 11 months ago
4efc02b
Sandbox2: `UnotifyMonitor` fix possible UB with lambda deleter
by Christian Blichmann
· 11 months ago
f8f58e2
Internal change
by Kevin Hamacher
· 11 months ago
Next »