Browse Source

Fix parsing of apparmor pcre syntax

Signed-off-by: Jessica Frazelle <acidburn@docker.com>
Jessica Frazelle 9 years ago
parent
commit
c0f7fdc025
1 changed files with 1 additions and 1 deletions
  1. 1 1
      daemon/execdriver/native/apparmor.go

+ 1 - 1
daemon/execdriver/native/apparmor.go

@@ -40,7 +40,7 @@ profile {{.Name}} flags=(attach_disconnected,mediate_deleted) {
   file,
   file,
   umount,
   umount,
 
 
-  deny @{PROC}/{*,**^[0-9*],sys/kernel/shm*} wkx,
+  deny @{PROC}/{*,**^[0-9]*,sys/kernel/shm*} wkx,
   deny @{PROC}/sysrq-trigger rwklx,
   deny @{PROC}/sysrq-trigger rwklx,
   deny @{PROC}/mem rwklx,
   deny @{PROC}/mem rwklx,
   deny @{PROC}/kmem rwklx,
   deny @{PROC}/kmem rwklx,