Index: sandbox/linux/seccomp-bpf-helpers/baseline_policy.cc |
diff --git a/sandbox/linux/seccomp-bpf-helpers/baseline_policy.cc b/sandbox/linux/seccomp-bpf-helpers/baseline_policy.cc |
index 214b99c7467a6ccc7947b20ef774bc139ca38d53..afa74cbc75b96e35aac00205e86cc9800d8e3fb8 100644 |
--- a/sandbox/linux/seccomp-bpf-helpers/baseline_policy.cc |
+++ b/sandbox/linux/seccomp-bpf-helpers/baseline_policy.cc |
@@ -109,6 +109,11 @@ ResultExpr EvaluateSyscallImpl(int fs_denied_errno, |
return Allow(); |
} |
+ // Used when RSS limiting is enabled in sanitizers. |
+ if (sysno == __NR_getrusage) { |
+ return RestrictGetrusage(); |
+ } |
+ |
if (sysno == __NR_sigaltstack) { |
// Required for better stack overflow detection in ASan. Disallowed in |
// non-ASan builds. |