From c0f7fdc025da69283eb00d80bf47f4d47eeb0a65 Mon Sep 17 00:00:00 2001 From: Jessica Frazelle Date: Wed, 25 Nov 2015 10:38:18 -0800 Subject: [PATCH] Fix parsing of apparmor pcre syntax Signed-off-by: Jessica Frazelle --- daemon/execdriver/native/apparmor.go | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/daemon/execdriver/native/apparmor.go b/daemon/execdriver/native/apparmor.go index 3aaba98a34..06babd3b62 100644 --- a/daemon/execdriver/native/apparmor.go +++ b/daemon/execdriver/native/apparmor.go @@ -40,7 +40,7 @@ profile {{.Name}} flags=(attach_disconnected,mediate_deleted) { file, umount, - deny @{PROC}/{*,**^[0-9*],sys/kernel/shm*} wkx, + deny @{PROC}/{*,**^[0-9]*,sys/kernel/shm*} wkx, deny @{PROC}/sysrq-trigger rwklx, deny @{PROC}/mem rwklx, deny @{PROC}/kmem rwklx,