0.8.1
Blocking the following insecure syscalls by deafult in secimport build
:
INSECURE_SYSCALLS = [
"vfork",
"clone",
"access",
"chdir",
"creat",
"dup",
"dup2",
"execve",
"faccessat",
"fcntl",
"fdatasync",
"fork",
"fstat",
"fsync",
"getegid",
"geteuid",
"getgid",
"getgroups",
"getpid",
"getppid",
"getrlimit",
"getsockname",
"getsid",
"getuid",
"ioctl",
"link",
"lseek",
"lstat",
"mkdir",
"mknod",
"open",
"openat",
"pipe",
"poll",
"read",
"readlink",
"readv",
"recvfrom",
"recvmsg",
"rename",
"rmdir",
"select",
"sendmsg",
"sendto",
"setgid",
"setgroups",
"setpgid",
"setpriority",
"setregid",
"setreuid",
"setrlimit",
"setsid",
"setsockopt",
"stat",
"symlink",
"truncate",
"umask",
"utime",
"utimes",
"write",
"writev",
]