Bug 1004175
Summary: | '-sandbox on' option cause qemu-kvm process hang | ||||||
---|---|---|---|---|---|---|---|
Product: | Red Hat Enterprise Linux 7 | Reporter: | FuXiangChun <xfu> | ||||
Component: | qemu-kvm | Assignee: | Paul Moore <pmoore> | ||||
Status: | CLOSED CURRENTRELEASE | QA Contact: | Virtualization Bugs <virt-bugs> | ||||
Severity: | high | Docs Contact: | |||||
Priority: | urgent | ||||||
Version: | 7.0 | CC: | acathrow, eotubo, hhuang, juzhang, knoel, michen, pmoore, sluo, virt-maint, xfu | ||||
Target Milestone: | rc | Keywords: | TestBlocker | ||||
Target Release: | --- | ||||||
Hardware: | x86_64 | ||||||
OS: | Linux | ||||||
Whiteboard: | |||||||
Fixed In Version: | qemu-kvm-1.5.3-10.el7 | Doc Type: | Bug Fix | ||||
Doc Text: | Story Points: | --- | |||||
Clone Of: | Environment: | ||||||
Last Closed: | 2014-06-13 12:50:51 UTC | Type: | Bug | ||||
Regression: | --- | Mount Type: | --- | ||||
Documentation: | --- | CRM: | |||||
Verified Versions: | Category: | --- | |||||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||
Cloudforms Team: | --- | Target Upstream Version: | |||||
Embargoed: | |||||||
Attachments: |
|
Description
FuXiangChun
2013-09-04 07:13:03 UTC
I assume this is on x86_64? If so, it looks like 'times()' is missing from the syscall filter. # scmp_sys_resolver -a x86_64 100 times I just had an email exchange with the IBM developer who has been doing the bulk of the QEMU/seccomp development and he found the problem with times() just recently and expects to submit a patch upstream today. Once the patch is accepted upstream I will backport it and submit it internally for RHEL7. Created attachment 793658 [details]
This patch adds times() syscall to the whitelist
The above patch is also available in Qemu mailing list http://lists.nongnu.org/archive/html/qemu-devel/2013-09/msg00774.html (In reply to Eduardo Otubo from comment #5) > Created attachment 793658 [details] I've just tested this patch and can verify that it solves the problem. Update: the patch has been pulled into a QEMU sub-tree by the QEMU/seccomp maintainer, currently waiting on the QEMU maintainer to pull from the QEMU/seccomp tree. The remote branch has been merged and the fix is now available in the main tree - http://git.qemu.org/?p=qemu.git;a=commit;h=88b70e56b969142c88f240434f392b9348600ef5 Thanks for the update Eduardo, but the BZ state should remain in POST. Fix included in qemu-kvm-1.5.3-10.el7 Verify this bug with qemu-kvm-rhev-1.5.3-10.el7.x86_64. According to Comment 0 test steps. Result: qemu-kvm and guest work well. Base on test result of Comment 23 and Comment 24. This bug is fixed. This request was resolved in Red Hat Enterprise Linux 7.0. Contact your manager or support representative in case you have further questions about the request. |