)]}'
{
  "log": [
    {
      "commit": "472581ace012ae755f3136870bba8bdd5cdb8331",
      "tree": "5d135387176789284904e35b24a15d79d5c939f6",
      "parents": [
        "882372d64ebf45f599dc8b7b64fe91adbaa90b71"
      ],
      "author": {
        "name": "Dylan Reid",
        "email": "dgreid@chromium.org",
        "time": "Mon Jul 11 21:35:12 2016"
      },
      "committer": {
        "name": "chrome-bot",
        "email": "chrome-bot@chromium.org",
        "time": "Sat Jul 16 02:22:51 2016"
      },
      "message": "Add cgroup namespce option to minijail0 manpage\n\nThe new -N option wasn\u0027t yet added to the manpage.  It utilizes the new\ncgroup namespace feature of v4.6+ Linux kernels.\n\nBUG\u003dnone\nTEST\u003dman ./minijail0.1\n\nSigned-off-by: Dylan Reid \u003cdgreid@chromium.org\u003e\n(cherry picked from commit 87e5851ba5eee9c8ff57c37aefa09f089f75c935)\n\nChange-Id: I55506830cee475d1fb429d7583ef4e8ff389474b\nReviewed-on: https://chromium-review.googlesource.com/360331\nCommit-Ready: Dylan Reid \u003cdgreid@chromium.org\u003e\nTested-by: Dylan Reid \u003cdgreid@chromium.org\u003e\nReviewed-by: Stephen Barber \u003csmbarber@chromium.org\u003e\n"
    },
    {
      "commit": "882372d64ebf45f599dc8b7b64fe91adbaa90b71",
      "tree": "1dbd4a256062f7357050ce33a77d55aed40f1f2f",
      "parents": [
        "369044f9fb26bdb59f76dfdacee5fc40e0e0ca32"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Jul 01 13:49:39 2016"
      },
      "committer": {
        "name": "chrome-bot",
        "email": "chrome-bot@chromium.org",
        "time": "Sat Jul 16 02:22:50 2016"
      },
      "message": "Make libminijail.h 80-col clean.\n\nBug: None\n(cherry picked from commit deca9f2fd6cc02dad6d453eedd09eaf4f3baff6b)\n\nChange-Id: I4d6a94823d0e244ed4f37cf693f1c609bdba3d53\nReviewed-on: https://chromium-review.googlesource.com/360330\nCommit-Ready: Dylan Reid \u003cdgreid@chromium.org\u003e\nTested-by: Dylan Reid \u003cdgreid@chromium.org\u003e\nReviewed-by: Stephen Barber \u003csmbarber@chromium.org\u003e\n"
    },
    {
      "commit": "369044f9fb26bdb59f76dfdacee5fc40e0e0ca32",
      "tree": "9fb96f5c76364f85a221b3ae61c6dfc34d784b38",
      "parents": [
        "4f292e8165fcd412702d10fc203c882a38a7aa6f"
      ],
      "author": {
        "name": "Dylan Reid",
        "email": "dgreid@chromium.org",
        "time": "Wed May 18 21:06:35 2016"
      },
      "committer": {
        "name": "chrome-bot",
        "email": "chrome-bot@chromium.org",
        "time": "Sat Jul 16 02:22:48 2016"
      },
      "message": "Allow mount data to be specified\n\nAdd an API, minijail_mount_with_data, that allows the mount data string\nto be set.  This is needed for some mounts when entering a user\nnamespace and specifying uid\u003d, gid\u003d, or similar mount options.\n\nBUG\u003db/27273730\nTEST\u003dmount proc with hidepid\u003d2 check mount output to confirm\n     security_Minijail0 test case added.\n\nSigned-off-by: Dylan Reid \u003cdgreid@chromium.org\u003e\n(cherry picked from commit 81e2397c51787ed8682b08e9c732f53cc668401f)\n\nChange-Id: Iee10ead22c7d043afc3955496f7d4c470e31dfa0\nReviewed-on: https://chromium-review.googlesource.com/360259\nCommit-Ready: Dylan Reid \u003cdgreid@chromium.org\u003e\nTested-by: Dylan Reid \u003cdgreid@chromium.org\u003e\nReviewed-by: Stephen Barber \u003csmbarber@chromium.org\u003e\n"
    },
    {
      "commit": "4f292e8165fcd412702d10fc203c882a38a7aa6f",
      "tree": "7e02d1924023fa821eba0a9f78adf27e5675bee9",
      "parents": [
        "8fcf3f0414eb571ae2531041dd760f4247fdcfda"
      ],
      "author": {
        "name": "Chih-Hung Hsieh",
        "email": "chh@google.com",
        "time": "Thu Jun 09 00:45:42 2016"
      },
      "committer": {
        "name": "chrome-bot",
        "email": "chrome-bot@chromium.org",
        "time": "Sat Jul 16 02:22:47 2016"
      },
      "message": "Fix misc-macro-parentheses warnings in minijail\n\nAdd parentheses around macro arguments used beside operators.\nBug: 28705665\nTest: build with clang-tidy\n\n(cherry picked from commit c391b9e4f7ee76bb8d8686aadbbe49b789537dc0)\n\nChange-Id: I4b3064cb85c3776e178cf66aceda1b387ac9c42b\nReviewed-on: https://chromium-review.googlesource.com/360258\nCommit-Ready: Dylan Reid \u003cdgreid@chromium.org\u003e\nTested-by: Dylan Reid \u003cdgreid@chromium.org\u003e\nReviewed-by: Stephen Barber \u003csmbarber@chromium.org\u003e\n"
    },
    {
      "commit": "8fcf3f0414eb571ae2531041dd760f4247fdcfda",
      "tree": "e386a08b77b2bbb1fd1dea1b0c0f1674b9f28069",
      "parents": [
        "a5ea27098297608a180573fd8b444f42a3d3c919"
      ],
      "author": {
        "name": "Dylan Reid",
        "email": "dgreid@chromium.org",
        "time": "Sat Jun 18 02:06:07 2016"
      },
      "committer": {
        "name": "chrome-bot",
        "email": "chrome-bot@chromium.org",
        "time": "Sat Jul 16 02:22:45 2016"
      },
      "message": "Add ability to enter a cgroup namespace\n\nThe cgroup namespacing feature was recently added to the linux kernel.\nAllow jailed processes to be placed in to a new cgroup namespace.  This\navoids leaking host info into the jailed process and allows for the\njailed process to use cgroups as it would if it was running outside of\nany namespaces.  Android needs this so its cgroup setting CTS tests can\npass and it can distribute its cpu shares between background and\nforeground apps.\n\nCQ-DEPEND\u003dCL:356201\nBUG\u003db/29259708\nTEST\u003dminijail0 -m \u00270 1000 100\u0027 -M \u00270 1000 100\u0027 -N /bin/bash\n  check that the cgroup namespace is different\n  check that a newly mounted cgroup FS is rooted at the parent\u0027s cgroup\n\nSigned-off-by: Dylan Reid \u003cdgreid@chromium.org\u003e\n(cherry picked from commit 4cbc2a522e1bc88424905bee32199af1c0fdbd20)\n\nChange-Id: I346e7b88a1cd6a6b677fe06ca432ebd179d9ffaa\nReviewed-on: https://chromium-review.googlesource.com/360257\nCommit-Ready: Dylan Reid \u003cdgreid@chromium.org\u003e\nTested-by: Dylan Reid \u003cdgreid@chromium.org\u003e\nReviewed-by: Stephen Barber \u003csmbarber@chromium.org\u003e\n"
    },
    {
      "commit": "a5ea27098297608a180573fd8b444f42a3d3c919",
      "tree": "345ba177aa62bdcde91beb845dfa93b3780c6cb5",
      "parents": [
        "ce20704e0c05d10f9fa4365d7ec22f32ebdc42c7"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Jun 02 00:15:31 2016"
      },
      "committer": {
        "name": "chrome-bot",
        "email": "chrome-bot@chromium.org",
        "time": "Sat Jul 16 02:22:44 2016"
      },
      "message": "Add logging message when using user namespaces and mount namespaces.\n\nAlso fix a comment that was \u003e 80 cols.\n\nBug: 28714771\n(cherry picked from commit df7fab1a0e0ca2c02ec366ba1f530bc8db7c8688)\n\nChange-Id: I675542183d43a2203ea109ab18c77ee1f94ae341\nReviewed-on: https://chromium-review.googlesource.com/360256\nCommit-Ready: Dylan Reid \u003cdgreid@chromium.org\u003e\nTested-by: Dylan Reid \u003cdgreid@chromium.org\u003e\nReviewed-by: Stephen Barber \u003csmbarber@chromium.org\u003e\n"
    },
    {
      "commit": "ce20704e0c05d10f9fa4365d7ec22f32ebdc42c7",
      "tree": "5aaa447eda8e2a555ad6439dfdd9e300c728cbdc",
      "parents": [
        "b31bcac52769a75da951619ea0031fe82508d6ef"
      ],
      "author": {
        "name": "Alex Deymo",
        "email": "deymo@google.com",
        "time": "Fri May 13 01:35:49 2016"
      },
      "committer": {
        "name": "chrome-bot",
        "email": "chrome-bot@chromium.org",
        "time": "Sat Jul 16 02:22:42 2016"
      },
      "message": "Fix .d generation in Chrome OS.\n\nChrome OS toolchain generates \"-:\" instead of \"-.o:\" when reading the\nsource from stdin \"-\". This patch makes the code handle both cases and\nfixes some missing quotes.\n\nBug: chromium:609385\nBug: 27954979\nTEST\u003dFEATURES\u003dtest emerge-link chromeos-minijail\n\n(cherry picked from commit 477f2e32a7e4a6ce96baf960ad9f915f52f920a6)\n\nChange-Id: I783db1c0617cafa9b999500b49df36a927fe16b9\nReviewed-on: https://chromium-review.googlesource.com/360255\nCommit-Ready: Dylan Reid \u003cdgreid@chromium.org\u003e\nTested-by: Dylan Reid \u003cdgreid@chromium.org\u003e\nReviewed-by: Stephen Barber \u003csmbarber@chromium.org\u003e\n"
    },
    {
      "commit": "b31bcac52769a75da951619ea0031fe82508d6ef",
      "tree": "38e3755dd6dfefe117ff07ed3b28552f5d342f0c",
      "parents": [
        "7a569073b95af7532892dc726c2f33cd40edfb57"
      ],
      "author": {
        "name": "Shinichiro Hamaji",
        "email": "hamaji@google.com",
        "time": "Tue May 10 08:33:08 2016"
      },
      "committer": {
        "name": "chrome-bot",
        "email": "chrome-bot@chromium.org",
        "time": "Sat Jul 16 02:22:41 2016"
      },
      "message": "Generate .d files for generated .c files\n\nso ninja can regenerate these files when included header files\nare updated.\n\nCQ-DEPEND\u003dCL:360255\nBug: 27954979\n(cherry picked from commit 286e28905fd41e58055bf95cfe33b7745a7908bd)\n\nChange-Id: I28f3caaf64d670f6324fd8c87a8dbb13d9af174f\nReviewed-on: https://chromium-review.googlesource.com/360254\nCommit-Ready: Dylan Reid \u003cdgreid@chromium.org\u003e\nTested-by: Dylan Reid \u003cdgreid@chromium.org\u003e\nReviewed-by: Stephen Barber \u003csmbarber@chromium.org\u003e\n"
    },
    {
      "commit": "7a569073b95af7532892dc726c2f33cd40edfb57",
      "tree": "0e1e4a68dcd4ce51362c3ef8f094eed5e7e60ba1",
      "parents": [
        "9e35c09854e55973731f80dd7cc41b80c20eec42"
      ],
      "author": {
        "name": "Arthur Gautier",
        "email": "superbaloo@gmail.com",
        "time": "Sat Apr 23 17:25:20 2016"
      },
      "committer": {
        "name": "Arthur Gautier",
        "email": "superbaloo@gmail.com",
        "time": "Mon Apr 25 23:19:54 2016"
      },
      "message": "Avoid warning about BSD_SOURCE on glibc \u003e\u003d 2.20\n\nCommit id c941736c92fa3a319221f65f6755659b2a5e0a20\nremoved support for _BSD_SOURCE in favor of _DEFAULT_SOURCE.\nThis commit introduces support for glibc \u003e\u003d 2.20.\n\n_BSD_SOURCE is not ignored, glibc just emits a warning and then\ndefines _DEFAULT_SOURCE itself. The warning fails the build\nbecause of -Werror.\n\nChange-Id: I9a72ef419678ab1b76174c9481550af8954c2be4\nSee: https://sourceware.org/git/?p\u003dglibc.git;a\u003dcommit;f\u003dinclude/features.h;h\u003dc941736c92fa3a319221f65f6755659b2a5e0a20\nSee: https://sourceware.org/git/?p\u003dglibc.git;a\u003dcommit;f\u003dinclude/features.h;h\u003dade40b10ff5fa59a318cf55b9d8414b758e8df78\nSigned-off-by: Arthur Gautier \u003csuperbaloo@gmail.com\u003e\n"
    },
    {
      "commit": "9e35c09854e55973731f80dd7cc41b80c20eec42",
      "tree": "b0c1de23e9d4218b94459b2ee52a7ec6a8babd0a",
      "parents": [
        "2413f3713ae8a306a23550e2eecd59f380f34eae"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Mon Apr 11 20:30:08 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Mon Apr 11 21:31:50 2016"
      },
      "message": "Fix #ifdef statement.\n\nPrevious version did not compile with GCC.\n\nBug: None\nChange-Id: I9f8b40e6e965a7573505cc7f3c1c650b37522926\n"
    },
    {
      "commit": "2413f3713ae8a306a23550e2eecd59f380f34eae",
      "tree": "097849fef9aa6b967da6e828533764b918bfb01a",
      "parents": [
        "f783b5273d66d19a78705276a38ae68ef2e3e165"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Apr 07 01:43:10 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Apr 07 01:43:10 2016"
      },
      "message": "Skip setting seccomp filter when running with ASan.\n\nAlso add an example build target for an ASan-ified libminijail (useful\nfor debugging).\n\nBug: 28052772\n\nChange-Id: Ib36a0303d635becaa8802dee56d486f11060ea47\n"
    },
    {
      "commit": "f783b5273d66d19a78705276a38ae68ef2e3e165",
      "tree": "6cc2402f12faffc14aca6b6e11a0f430ee43b7c5",
      "parents": [
        "a867c8204c1fe303f2de9a202e6454d230488a47"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Mon Mar 14 21:34:10 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Mon Mar 21 21:21:01 2016"
      },
      "message": "Fix use of SECURE_ALL_BITS/SECURE_ALL_LOCKS.\n\nKernels 4.3+ define a new securebit (SECURE_NO_CAP_AMBIENT_RAISE),\nso using the SECURE_ALL_BITS and SECURE_ALL_LOCKS masks from newer\nkernel headers will return EPERM on older kernels. Detect this, and\nretry with the right mask for older (2.6.26-4.2) kernels.\n\nAlso add a compile-time assert to make sure we identify these changes\nsooner going forward.\n\nBug: 27632733\n\nChange-Id: I6cf9c56fec222347575bd0d1147287aac6572e67\n"
    },
    {
      "commit": "a867c8204c1fe303f2de9a202e6454d230488a47",
      "tree": "c8033406c520baccf61b04cc1ea1286f414f5318",
      "parents": [
        "2df5394ebe2a2435001e3e77ace5ccd466c18d88",
        "6e3a5823bd62ec8257ad9a4fd138e0996cd0b94f"
      ],
      "author": {
        "name": "Mattias Nissler",
        "email": "mnissler@google.com",
        "time": "Mon Mar 21 15:59:54 2016"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Mon Mar 21 15:59:54 2016"
      },
      "message": "Merge \"Remove dead minijail_disable_ptrace() declaration.\""
    },
    {
      "commit": "6e3a5823bd62ec8257ad9a4fd138e0996cd0b94f",
      "tree": "8cd580dd670bcce7ea94f925411f2f4e4df4769d",
      "parents": [
        "69841b31dee412d75b76653dc7bc03126af69df0"
      ],
      "author": {
        "name": "Mattias Nissler",
        "email": "mnissler@google.com",
        "time": "Mon Mar 21 13:11:19 2016"
      },
      "committer": {
        "name": "Mattias Nissler",
        "email": "mnissler@google.com",
        "time": "Mon Mar 21 13:11:19 2016"
      },
      "message": "Remove dead minijail_disable_ptrace() declaration.\n\nChange-Id: Iee493a21252ef952c6d34ded1443ad9bbeb960d7\n"
    },
    {
      "commit": "2df5394ebe2a2435001e3e77ace5ccd466c18d88",
      "tree": "485bac85d879703e15a6e2f6fc0f25f267ae353d",
      "parents": [
        "6b0de9b30aec11d4736557bd7fde0c36ea238ada",
        "3b5841b91f89059bd8f9453581e1d58f225e49f0"
      ],
      "author": {
        "name": "Brian Norris",
        "email": "briannorris@google.com",
        "time": "Thu Mar 17 17:10:01 2016"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Thu Mar 17 17:10:02 2016"
      },
      "message": "Merge \"Add missing options to minijail(1) manpage\""
    },
    {
      "commit": "6b0de9b30aec11d4736557bd7fde0c36ea238ada",
      "tree": "54bc2a4826b20dab4ce2d36f1be81bc5d15c14a2",
      "parents": [
        "097b719fafb1add8a1fd60bf6d230816810dd7fa"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Mar 17 05:41:34 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Mar 17 05:49:37 2016"
      },
      "message": "Fix typo in error message.\n\nI did not notice \"unmount(2)\" -- the syscall is \"umount\".\n\nWhile in there, reword the comment to make it clearer.\n\nBug: None\nChange-Id: I789a5a2c42a4973e8d90e3b61714fc84bd558df6\n"
    },
    {
      "commit": "097b719fafb1add8a1fd60bf6d230816810dd7fa",
      "tree": "49acda7bbb8b5253d02ee7d03aee03101d1167ed",
      "parents": [
        "69841b31dee412d75b76653dc7bc03126af69df0"
      ],
      "author": {
        "name": "Hidehiko Abe",
        "email": "hidehiko@google.com",
        "time": "Wed Mar 16 09:00:36 2016"
      },
      "committer": {
        "name": "Hidehiko Abe",
        "email": "hidehiko@google.com",
        "time": "Thu Mar 17 04:13:50 2016"
      },
      "message": "Remove mount points from peer group just before oldroot unmount.\n\nWith -K (skip_private_remount) option, there could\nbe shared mount points under the oldroot.\nSo, unmounting oldroot triggers unmounting mount\npoints under the shared mount points, which will be\npropagated to the original namespace and corresponding\nmount points will be unmounted in those namespaces,\ntoo.\nTo prevent such unexpected unmounting, this CL remove\nmount points being unmounted from peer groups.\n\nBug: 27689605\nTEST\u003dSet up mount points; \\\n     minijail0 -v -K -b /bin,/bin -P $CONTAINER -- \\\n         /bin/true; \\\n     Make sure shared mount points are untouched in \\\n     the original namespace.\n\nChange-Id: I3dbf7de2a63382c084e4d7e4c2675cc2a6f73c77\n"
    },
    {
      "commit": "3b5841b91f89059bd8f9453581e1d58f225e49f0",
      "tree": "051b0e7b45240a92ce5ec8fc13758419d6386fb8",
      "parents": [
        "69841b31dee412d75b76653dc7bc03126af69df0"
      ],
      "author": {
        "name": "Brian Norris",
        "email": "briannorris@google.com",
        "time": "Wed Mar 16 23:43:49 2016"
      },
      "committer": {
        "name": "Brian Norris",
        "email": "briannorris@google.com",
        "time": "Thu Mar 17 00:00:31 2016"
      },
      "message": "Add missing options to minijail(1) manpage\n\nWe\u0027re missing -I, -L, -n, and -U. Borrowed text mostly from the \u0027-h\u0027\nusage output, as well as some code comments, and other man pages.\n\nAlso fixup one inconsistency in the -h usage output formatting.\n\nBug: None\nTEST\u003d`man ./minijail0.1`; `minijail0 -h`\n\nChange-Id: Ie5a8313486490243d3382726aed82971aad9a466\nSigned-off-by: Brian Norris \u003cbriannorris@google.com\u003e\n"
    },
    {
      "commit": "69841b31dee412d75b76653dc7bc03126af69df0",
      "tree": "9dfae7211fc47c6230b4d2241fd9d9bd75e5cd07",
      "parents": [
        "87bf01da8a4f60cd9064ad3b5c34200b2211152a"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Mon Mar 14 04:30:46 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Mon Mar 14 04:32:37 2016"
      },
      "message": "Stop using the system\u0027s securebits.h include.\n\nThis is causing brillo_Minijail to fail in the lab. See b/27632733 for\ndetails.\n\nBug: 27632845\nBug: 27632733\nChange-Id: I8301961dc51c3692425f79856976c19669b0472f\n"
    },
    {
      "commit": "87bf01da8a4f60cd9064ad3b5c34200b2211152a",
      "tree": "d034b30f651bbd44252d368347851f00f1d93196",
      "parents": [
        "3da4031a852b9dcfd35b48bc700ad7ae55baa1bc"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Mar 08 19:20:03 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Mar 08 19:30:24 2016"
      },
      "message": "Re-organize flags in \u0027minijail_preexec\u0027.\n\nThis matches the order in \u0027minijail_preenter\u0027.\n\nBug: 27304928\nChange-Id: I99b421cb19ddf45f73f47748f81e1a09f8e40c48\n"
    },
    {
      "commit": "3da4031a852b9dcfd35b48bc700ad7ae55baa1bc",
      "tree": "74b4113785ab493760acfcc38859b2ddbc01cc3e",
      "parents": [
        "a521bee6c8c014aa19cbfea0b365ba984277aa27"
      ],
      "author": {
        "name": "Shuhei Takahashi",
        "email": "nya@google.com",
        "time": "Mon Mar 07 08:37:49 2016"
      },
      "committer": {
        "name": "Shuhei Takahashi",
        "email": "nya@google.com",
        "time": "Tue Mar 08 04:11:47 2016"
      },
      "message": "Make -K work for dynamically-linked binary.\n\nBug: None\nTEST\u003dstrace -f minijail0 -v -K /bin/true |\u0026 grep mount\n\nChange-Id: I96ec04c6acefa909a83f374d7db44ae78393a17c\n"
    },
    {
      "commit": "a521bee6c8c014aa19cbfea0b365ba984277aa27",
      "tree": "972a5e6d5cd790d693d9f3df3777a47f0c539c48",
      "parents": [
        "bce609d2455ca98c0f3c75fd2a791b522d1b41e4"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Mar 03 21:47:57 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Mar 04 20:52:39 2016"
      },
      "message": "Add an option to skip remounting / as MS_PRIVATE.\n\nAlso update the minijail0.1 file.\n\nBug: 27304928\n\nChange-Id: Id5c03fef3c7906e6fe53bad130d74c895f03f730\n"
    },
    {
      "commit": "bce609d2455ca98c0f3c75fd2a791b522d1b41e4",
      "tree": "1217f7c9f2b0d2c7ebece8e493dce9ebc0122ba2",
      "parents": [
        "7ea269e060ec85eaf94ccf95033a6a6857fcff4e"
      ],
      "author": {
        "name": "Ricky Zhou",
        "email": "rickyz@google.com",
        "time": "Thu Mar 03 05:47:56 2016"
      },
      "committer": {
        "name": "Ricky Zhou",
        "email": "rickyz@chromium.org",
        "time": "Thu Mar 03 05:59:57 2016"
      },
      "message": "Do not leak outside root dir fd into the child.\n\nAlso adds O_CLOEXEC to all open calls to be on the safe side.  In the\nfuture, we should look into doing some sanity checks before execve like\nChromium\u0027s sandbox does:\nhttps://code.google.com/p/chromium/codesearch#chromium/src/sandbox/linux/services/credentials.cc\u0026l\u003d320\n\nIf we want to further prevent people from shooting themselves in the\nfoot, we could also check that no fds are open, except for duping\n/dev/null over 0, 1, and 2.\n\nTEST\u003dBuilt and tested that an fd to / is not leaked.\n\nBug: None\nChange-Id: I41993a6aec9ce48bd34d191c3949f313ba80ca73\n"
    },
    {
      "commit": "7ea269e060ec85eaf94ccf95033a6a6857fcff4e",
      "tree": "213a037e3bb4bf0d54e91c4cfdae61d45c50b977",
      "parents": [
        "d8c82052209904fba2b8b8cc46d15abd465a96f3"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Sat Feb 27 06:07:09 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Sat Feb 27 06:21:20 2016"
      },
      "message": "Don\u0027t call cap_get_proc(3) unconditionally.\n\ncap_get_proc(3) uses the capget(2) system call. Don\u0027t call\ncap_get_proc(3) if |flags.use_caps| is not set, to avoid\nhaving the program call a capability-related syscall even\nwhen capabilities are not being used.\n\nBug: 27366428\n\nChange-Id: Ifb797bc5f1a43adf4f9fa2fff3ef7d6f4bd9c958\n"
    },
    {
      "commit": "d8c82052209904fba2b8b8cc46d15abd465a96f3",
      "tree": "678f503fb2a0aafa15e9e2ddb41aeb8174e74d9b",
      "parents": [
        "f9fcdbe67360c30a41b70c2f1271c0767eb073c9"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Feb 26 00:00:32 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Feb 26 00:03:19 2016"
      },
      "message": "Always call \u0027drop_caps\u0027.\n\nThis follows the model used by \u0027drop_ugid\u0027 and \u0027set_seccomp_filter\u0027,\nand allows for the section of code where these functions are used to\nbe significantly more legible.\n\nBug: 27366428\nChange-Id: I72618340df65da20deca572ea8ff43a795423433\n"
    },
    {
      "commit": "f9fcdbe67360c30a41b70c2f1271c0767eb073c9",
      "tree": "cc3ac22a6944700a3331ba085dd71f053f845838",
      "parents": [
        "6482e8d2d70407a190e7eea4aeb895da0ed19cb1"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Feb 19 23:04:09 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Feb 19 23:20:18 2016"
      },
      "message": "Add support for dropping capabilities from the bounding set.\n\nAndroid daemons such as adbd need to drop capabilities from their\nbounding sets (to prevent processes they launch from gaining privileges\nthrough file capabilities), but not from their runtime\n(permitted|inheritable|effective) sets. Add support for this and rename\nsome capability-related code to make things clearer.\n\nWhile in there, fix a comment in the Android makefile.\n\nBug: 27274137\nChange-Id: I7cab7e3302bb34cd7859b9621906391104bf6b4e\n"
    },
    {
      "commit": "6482e8d2d70407a190e7eea4aeb895da0ed19cb1",
      "tree": "b19d785cae4795373dea4de317c6e4a2c8ef7f71",
      "parents": [
        "768d42b6675444f158e7a03df688ec788e07c567"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Feb 17 20:40:34 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Feb 17 20:40:34 2016"
      },
      "message": "Add a syscall filter generation script.\n\nMany people have found this script useful to bootstrap their seccomp\nfilter policies. Add it to the repo instead of keeping it elsewhere.\n\nBug: None\nChange-Id: I1ec0c25eb52aac1542f710a5acdb7d2616d075d6\n"
    },
    {
      "commit": "768d42b6675444f158e7a03df688ec788e07c567",
      "tree": "3afa592579ede9943535cbeaea88cff2571dfe0b",
      "parents": [
        "9dd256ea2a2a6c7faed026eb6f87f9677b7fc0fe"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Feb 17 18:28:25 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Feb 17 18:31:14 2016"
      },
      "message": "Clarify \u0027-T\u0027 help.\n\nMake it clear that the -T option will prevent all checks on the target\nexecutable.\n\nBug: 27207746\nChange-Id: I80888678530ada6d66d9bee203ee34f03b77f880\n"
    },
    {
      "commit": "9dd256ea2a2a6c7faed026eb6f87f9677b7fc0fe",
      "tree": "ba7540604e433bb9fce9982a626716429d49113e",
      "parents": [
        "2ed0912e55994ec1bd1916f63f5cb0155c57bb65"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Feb 16 23:31:02 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Feb 16 23:37:23 2016"
      },
      "message": "Clean up \u0027minijail0\u0027 help message.\n\nMake punctuation and capitalization consistent:\n-The help text for a flag is always capitalized, unless it starts\nwith the name of a system call.\n-The help text for a flag always ends with a period.\n\nBug: None\nChange-Id: I8e3dc8bd27b901df4c8e1d15df85352430655f2e\n"
    },
    {
      "commit": "2ed0912e55994ec1bd1916f63f5cb0155c57bb65",
      "tree": "229927483a36dfa61917e7f62ea2f3d813070f14",
      "parents": [
        "c8b606a21be909cd74713ecce5432a924dfdaed0"
      ],
      "author": {
        "name": "Matthew Dempsky",
        "email": "mdempsky@google.com",
        "time": "Thu Feb 11 17:43:37 2016"
      },
      "committer": {
        "name": "Matthew Dempsky",
        "email": "mdempsky@google.com",
        "time": "Tue Feb 16 22:36:11 2016"
      },
      "message": "add -T option to minijail0 for specifying ELF linkage type\n\nThis removes the need for minijail0 to access the program file before\ntrying to launch it, which allows it to be used for running programs\nthat are only accessible within a mount namespace specified with the -V\noption.\n\nIt would still be preferable if -V worked correctly on its own (like\nhow -b, -k, and -C already do), but this is a less intrusive and\nsimpler immediate fix.\n\nTEST\u003dUse minijail0 -V -T to run program in pivot_root\u0027d mount namespace\n\nBug: 26947503\nChange-Id: I923ca87683b7fd8a60530946fad58018cfcd5125\n"
    },
    {
      "commit": "c8b606a21be909cd74713ecce5432a924dfdaed0",
      "tree": "f2ca5e92b8a731b4a23275c5a104e5bca92a7cff",
      "parents": [
        "0e3fe532a9fdf42bed41e371939134af38dd53b5"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Feb 05 23:13:52 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Feb 05 23:13:52 2016"
      },
      "message": "libminijail_test: Format code, add .clang-format file.\n\nBug: None\nChange-Id: I588a62af0b533f301391a51ebb1d7654d86b30e7\n"
    },
    {
      "commit": "0e3fe532a9fdf42bed41e371939134af38dd53b5",
      "tree": "fa7d9e9975f81324c13b5ffa498d10300fc6bbed",
      "parents": [
        "3c8375cdf37104998ded0edc5ed072ab3b07c00d"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Feb 05 05:27:47 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Feb 05 19:18:02 2016"
      },
      "message": "Add check for supplementary groups.\n\nThis binary will be used by a new Brillo Autotest test.\n\nAlso tie the return value of the binary to the result of the checks \u003d).\n\nBug: 25368607\nChange-Id: Ia338cb8270916cafdbbfbbb8808b88759906327f\n"
    },
    {
      "commit": "3c8375cdf37104998ded0edc5ed072ab3b07c00d",
      "tree": "f3a7c48e1a640f3f4d652f4feeb4c594d69fe11c",
      "parents": [
        "a0aa041dff6fb71c7ac7bd08b805087ad6026e37"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Feb 04 22:21:49 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Feb 04 22:21:49 2016"
      },
      "message": "Unit tests: Compile only on \u0027eng\u0027 builds.\n\nBug: 26967770\nChange-Id: I93e6a108803a62383c2e1b71879196e2b47c38ba\n"
    },
    {
      "commit": "a0aa041dff6fb71c7ac7bd08b805087ad6026e37",
      "tree": "e76fc6259e2c5b9232b28c6e87443617e6a2350f",
      "parents": [
        "ac9e342ef745e9057edc4e1b02a52d8943ea608a",
        "00c5791460762deae2f6b6ac3659296f5a8d3d0d"
      ],
      "author": {
        "name": "Jeffrey Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Thu Feb 04 18:37:06 2016"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Thu Feb 04 18:37:06 2016"
      },
      "message": "Merge \"call abort() on sigsys\""
    },
    {
      "commit": "00c5791460762deae2f6b6ac3659296f5a8d3d0d",
      "tree": "1126d9c6946c70999cdfa64fe3ccffa628c51173",
      "parents": [
        "d569b1e6c811ddd39fcb46a74f386ae63af650de"
      ],
      "author": {
        "name": "Jeff Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Wed Feb 03 23:48:06 2016"
      },
      "committer": {
        "name": "Jeff Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Thu Feb 04 00:20:12 2016"
      },
      "message": "call abort() on sigsys\n\nTells debuggerd to attach to the process and send crash data\nto logcat.\n\nBug: 26580739\nChange-Id: I9df09f044e56cf250963d4e4cf5959642fe2ee2f\n"
    },
    {
      "commit": "ac9e342ef745e9057edc4e1b02a52d8943ea608a",
      "tree": "a3ddb164dc2d0e984bb58058b9ce5aba17119f18",
      "parents": [
        "d569b1e6c811ddd39fcb46a74f386ae63af650de"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Feb 03 23:00:42 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Feb 03 23:04:12 2016"
      },
      "message": "Add libminijail test executable.\n\nThis is useful to test basic Minijail functionality and will be used by\nfuture Autotest tests. The code is currently very similar to\n\u0027drop_privs.cpp\u0027, but I expect that to change in the future.\n\nBug: 25368607\nChange-Id: I4db3359b07c3b37fa4ac9e24598a5d21623383d5\n"
    },
    {
      "commit": "d569b1e6c811ddd39fcb46a74f386ae63af650de",
      "tree": "48df689cce7391e75b042ff373ef18def4588696",
      "parents": [
        "7c6899c198c3a3c68268243a2f46050d13bf622f",
        "6c755d2e50ac66fff04148386c29fb851122422f"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Jan 28 23:55:41 2016"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Thu Jan 28 23:55:41 2016"
      },
      "message": "Merge \"Don\u0027t die() on bind mounts.\""
    },
    {
      "commit": "6c755d2e50ac66fff04148386c29fb851122422f",
      "tree": "b75bf91da1bb658106c21c4417cbfe5be7ffde6d",
      "parents": [
        "e7a5908f5200e84259686fba8dc82fec9ac8f4f7"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Jan 28 23:24:40 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Jan 28 23:40:41 2016"
      },
      "message": "Don\u0027t die() on bind mounts.\n\nBy the time we get to the removed lines, |mounts_head| will be valid\nin the parent (Minijail) process, but |flags.chroot| and\n|flags.pivot_root| will have been cleared by minijail_preexec().\nThe removed lines were then incorrectly aborting the process too early.\n\nThe flags *will* be set in the minijail struct used by the\nchild (jailed) process, so the bind mounts will happen correctly.\n\nA follow-up CL will make sure |mounts_head| is never valid when\nboth flags are cleared, so that we can correctly check for this.\n\nWhile in there, fix a comment and an info() message.\n\nsecurity_Minijail0 now passes.\n\nBug: 25368607\nChange-Id: I5ac85ee62560ba8957bdab3fc84689ed06d106f0\n"
    },
    {
      "commit": "7c6899c198c3a3c68268243a2f46050d13bf622f",
      "tree": "302cdca680811b7acd4a2fd72255d6d483745b70",
      "parents": [
        "e7a5908f5200e84259686fba8dc82fec9ac8f4f7"
      ],
      "author": {
        "name": "Alex Deymo",
        "email": "deymo@google.com",
        "time": "Thu Jan 28 02:24:19 2016"
      },
      "committer": {
        "name": "Alex Deymo",
        "email": "deymo@google.com",
        "time": "Thu Jan 28 02:24:46 2016"
      },
      "message": "Fix build in x86_64.\n\nThe recently added #elif should be an #else.\n\nBug: None\nTEST\u003demerge-link chromeos-minijail\n\nChange-Id: I5fcbaa4e51c6cf111a61fb33b7a90c9aa37398ca\n"
    },
    {
      "commit": "e7a5908f5200e84259686fba8dc82fec9ac8f4f7",
      "tree": "8523ca29365096f1600abd8825409b4f25c9eb98",
      "parents": [
        "2b12ba490431f312099163c476d30fb39e9428d7",
        "d99a40d2176032b783716007ff49ebdcbdfcb4fa"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Jan 26 23:04:40 2016"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Tue Jan 26 23:04:40 2016"
      },
      "message": "Merge \"Compile \u0027minijail0\u0027 on Brillo/Android.\""
    },
    {
      "commit": "2b12ba490431f312099163c476d30fb39e9428d7",
      "tree": "f122a430d9228b19426eca34686c5f70bd056bc9",
      "parents": [
        "b8a5138a451e183debbce56f3fa031e1880ff901"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Jan 26 18:37:51 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Jan 26 22:54:22 2016"
      },
      "message": "Print an error when attempting to use bind mounts without chroot.\n\nBind mounts should be used with chroot or pivot_root. Print an error\nand exit when that\u0027s not the case.\n\nClean up some comments and error messages while in there.\n\nBug: 26784268\nChange-Id: I4e384a989e1aef5b2989c4f17e047a9ac7cadbc8\n"
    },
    {
      "commit": "d99a40d2176032b783716007ff49ebdcbdfcb4fa",
      "tree": "d2519cfe769d163ebc0c672b2d5c94cc3871e3ca",
      "parents": [
        "b98ad29bc07149cc8ffa29b986c7bc4339c9ad82"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Jan 26 21:50:44 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Jan 26 21:55:55 2016"
      },
      "message": "Compile \u0027minijail0\u0027 on Brillo/Android.\n\nWe\u0027re not currently using the \u0027minijail0\u0027 executable on Brillo or\nAndroid, but given that upstream Minijail is in AOSP, it\u0027s useful to\nbe able to build all Minijail targets in a Brillo or Android checkout.\nMake it an \"optional\" target so that it doesn\u0027t get included on regular\nbuilds.\n\nThis requires fixing one case of assigning \u0027const char*\u0027 to \u0027char*\u0027,\nsetting an invalid PRELOADPATH variable, and disabling\n\u0027missing-field-initializers\u0027 warnings.\n\nBug: 26798535\nChange-Id: I1fe61f5ac2687d3a185d971a699fa4237a4b6a10\n"
    },
    {
      "commit": "b8a5138a451e183debbce56f3fa031e1880ff901",
      "tree": "1092bb69acdac47871fe1011ce63d57cfbe85cbc",
      "parents": [
        "b98ad29bc07149cc8ffa29b986c7bc4339c9ad82"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Jan 26 04:08:22 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Jan 26 19:30:07 2016"
      },
      "message": "Add \u0027cgroups\u0027 flag.\n\nCgroups ended up being the only feature that doesn\u0027t have a flag.\nFix that, and fix some comments while we\u0027re there.\n\nBug: 26782393\nChange-Id: I83e56b6d7fb4a5668ffecc2b597902ee663fdab6\n"
    },
    {
      "commit": "b98ad29bc07149cc8ffa29b986c7bc4339c9ad82",
      "tree": "63deadb895b1278e0803e9aadccfd32cb0387112",
      "parents": [
        "be351a294d36bd90f8bd4d887a7ad323d6441a67"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Mon Jan 25 23:07:30 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Mon Jan 25 23:11:29 2016"
      },
      "message": "Add syscall logging support for x86_64 architectures on Android.\n\nBug: 26776934\nChange-Id: I54d62bb74e4359beca4852484a77a3a007f17c42\n"
    },
    {
      "commit": "be351a294d36bd90f8bd4d887a7ad323d6441a67",
      "tree": "273c4bfb92da4ab16ff30207770574c1aad5dcf5",
      "parents": [
        "605ce7f5ccda3597305f7ca8e21ba16e254cf96c"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Sat Jan 23 01:18:51 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Sat Jan 23 01:18:51 2016"
      },
      "message": "Don\u0027t fail on invalid syscalls.\n\nWhen putting together a new policy, it\u0027s useful to get a list\nof all the invalid syscalls. Don\u0027t fail on invalid syscalls if\nthe user requested logging failures.\n\nBug: None\nChange-Id: Ib2d9bbb3e41a1eeb44a41fd2ab32b50ab4efcddf\n"
    },
    {
      "commit": "605ce7f5ccda3597305f7ca8e21ba16e254cf96c",
      "tree": "bad108bf865961640b9e8a18c0af12334a2e4dcd",
      "parents": [
        "ce5b55eb48f276951b6c4d1bbfc667240c1e8f2f"
      ],
      "author": {
        "name": "Dylan Reid",
        "email": "dgreid@chromium.org",
        "time": "Wed Jan 20 03:21:00 2016"
      },
      "committer": {
        "name": "Dylan Reid",
        "email": "dgreid@google.com",
        "time": "Wed Jan 20 20:59:12 2016"
      },
      "message": "Add ability to put jailed process in cgroups\n\nThis adds an API that allows the jailed process to be added to a given\ncgroup.  This API can be called repeatedly to add the process to many\ncgroups.  The process will be added after fork but before it is exec\u0027d.\n\nBUG\u003db/26549867\nTEST\u003dset cgroups and inspect that pid is in tasks file\n\nChange-Id: I87a9897c1dc741c726873e872eeae32692088979\nSigned-off-by: Dylan Reid \u003cdgreid@chromium.org\u003e\n"
    },
    {
      "commit": "ce5b55eb48f276951b6c4d1bbfc667240c1e8f2f",
      "tree": "0154d1b200f05909670470cfcc220b07b1be344d",
      "parents": [
        "33b967df36fe2b3997ead2c139efb4775946a612"
      ],
      "author": {
        "name": "Dylan Reid",
        "email": "dgreid@chromium.org",
        "time": "Wed Jan 13 19:04:16 2016"
      },
      "committer": {
        "name": "Dylan Reid",
        "email": "dgreid@google.com",
        "time": "Wed Jan 20 19:46:48 2016"
      },
      "message": "Separate child process sync from user namespace\n\nSyncing the child and parent was only done so that the uid/gid maps\ncould be setup.  Make this more general so that the next commit can add setting\nof cgroups which also wants to happen after the child forks but before the\njailed process is run similar top uid/gid map setting.\n\nBUG\u003db/26549867\nTEST\u003dsecurity_Minijail0\n\nChange-Id: I81d512f351cfe459cd7af4c55263504d22b929fa\nSigned-off-by: Dylan Reid \u003cdgreid@chromium.org\u003e\n"
    },
    {
      "commit": "33b967df36fe2b3997ead2c139efb4775946a612",
      "tree": "a5d99b30b6f289a9cbdeba601da6c8bd23058d47",
      "parents": [
        "c4b0fdc4bf008115c9d7a2589de38ed007ca8138"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Jan 14 04:18:51 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Jan 14 04:30:52 2016"
      },
      "message": "Set HAVE_SECUREBITS_H define.\n\nAndroid/Brillo have \u0027linux/securebits.h\u0027 available.\n\nBug: None\nChange-Id: I43ac60aa1cdafd7ff6d4579b335519e512c08f77\n"
    },
    {
      "commit": "c4b0fdc4bf008115c9d7a2589de38ed007ca8138",
      "tree": "52229246905a1484ed0717786c773fc2c2820b53",
      "parents": [
        "272e3ab72da543c3ed3cb1cf312e45796b149d19"
      ],
      "author": {
        "name": "Dylan Reid",
        "email": "dgreid@chromium.org",
        "time": "Thu Jan 14 02:28:29 2016"
      },
      "committer": {
        "name": "Dylan Reid",
        "email": "dgreid@google.com",
        "time": "Thu Jan 14 02:29:48 2016"
      },
      "message": "Make is_android static\n\nutil.h gets included from more than one place on Chrome OS builds.\n\nChange-Id: I021235738115782fc2966d51fe356364953db169\nSigned-off-by: Dylan Reid \u003cdgreid@chromium.org\u003e\n"
    },
    {
      "commit": "272e3ab72da543c3ed3cb1cf312e45796b149d19",
      "tree": "cba2a5de8b3d94075ab9e71b2c83c44084438e7b",
      "parents": [
        "c31391e80af7fbdb7fe06ac9bb99a85cb7542be0"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Jan 13 05:18:59 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Jan 13 05:26:34 2016"
      },
      "message": "Fix Minijail build.\n\nRemove \u0027static\u0027 qualifier from helper functions to fix the build.\n\nBug: None\nChange-Id: I03cf18a415961ee6a32f05262b2925f6e5a8a8e5\n"
    },
    {
      "commit": "c31391e80af7fbdb7fe06ac9bb99a85cb7542be0",
      "tree": "0cd1a00ee8d65560e834bb93a7e40f8ce0e0ca6d",
      "parents": [
        "0e080262030f07821eb2c66377eec0ab1e3ef1a5",
        "2885befc0941a8283846b83ef111dce6dd880159"
      ],
      "author": {
        "name": "Jeffrey Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Wed Jan 13 04:27:26 2016"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Wed Jan 13 04:27:26 2016"
      },
      "message": "Merge \"softfail on older kernels that lack seccomp support\""
    },
    {
      "commit": "2885befc0941a8283846b83ef111dce6dd880159",
      "tree": "900e0be17758c658c2b6c34ceb37a8b0bb2b9ce0",
      "parents": [
        "fd5fc562f3c609d13b80b6b93c381a3ba8dc92b0"
      ],
      "author": {
        "name": "Jeff Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Mon Jan 11 23:22:42 2016"
      },
      "committer": {
        "name": "Jeff Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Wed Jan 13 02:42:55 2016"
      },
      "message": "softfail on older kernels that lack seccomp support\n\nAttempt to set up a seccomp filter. If seccomp not supported\non an Android device and kernel version \u003c 3.8 fail softly\ni.e. allow process to run without seccomp protections.\n\nBug: 26435980\nChange-Id: Ied6ac053908b6b0b81ba822621b1969bdedce4af\n"
    },
    {
      "commit": "0e080262030f07821eb2c66377eec0ab1e3ef1a5",
      "tree": "2d5b40810ac32d03f81814808598d2352151a80b",
      "parents": [
        "4c0e6307875b9d278cf5e94baa3217ce1ce9dadf",
        "bc67f44aa22f8f31c3386409e6f3fd0fdcbcffbe"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Mon Jan 11 21:40:43 2016"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Mon Jan 11 21:40:43 2016"
      },
      "message": "Merge \"Make set_supplementary_gids return \u0027void\u0027.\""
    },
    {
      "commit": "4c0e6307875b9d278cf5e94baa3217ce1ce9dadf",
      "tree": "4efc5a7d788d11dfc85d28b3e1ba31dde6ab746f",
      "parents": [
        "fd5fc562f3c609d13b80b6b93c381a3ba8dc92b0",
        "d2045acc79c9b1d2b1a8420f05d9890b144a341e"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Jan 08 23:46:58 2016"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Fri Jan 08 23:46:58 2016"
      },
      "message": "Merge \"Fix libminijail static build.\""
    },
    {
      "commit": "bc67f44aa22f8f31c3386409e6f3fd0fdcbcffbe",
      "tree": "9308bc930bcdc7fc0b54bbe3656f6bb9ec8082c9",
      "parents": [
        "fd5fc562f3c609d13b80b6b93c381a3ba8dc92b0"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Jan 08 22:43:45 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Jan 08 22:43:45 2016"
      },
      "message": "Make set_supplementary_gids return \u0027void\u0027.\n\nAfter https://android-review.googlesource.com/#/c/195351 lands,\nno callers expect this function to return a result. Change the\nsignature to avoid errors.\n\nBug: 26099611\nChange-Id: Id9c80350a0ce1f80ce5b5691117e68e37dd6c10e\n"
    },
    {
      "commit": "d2045acc79c9b1d2b1a8420f05d9890b144a341e",
      "tree": "1538940fa8ac2d38c5562feca4db646a3d241c23",
      "parents": [
        "47bdb8a150b75a4619cec41d10046868b168acaa"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Jan 08 21:21:48 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Jan 08 21:21:48 2016"
      },
      "message": "Fix libminijail static build.\n\nUsing LOCAL_WHOLE_STATIC_LIBRARIES prevents targets including a static\nlibminijail from having to also include its dependencies.\n\nBug: 26099611\nChange-Id: I7f569b9228a5a3a66f7a36ade8e9584ad5b7d8c0\n"
    },
    {
      "commit": "fd5fc562f3c609d13b80b6b93c381a3ba8dc92b0",
      "tree": "a41761e0618abcb8d39302bd9667205c72cbe24d",
      "parents": [
        "47bdb8a150b75a4619cec41d10046868b168acaa"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Jan 08 18:29:27 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Jan 08 20:58:39 2016"
      },
      "message": "Make set_supplementary_gids abort on memory errors.\n\nConsumers of this API usually cannot continue if this function fails,\nsince not adding supplementary groups would prevent the caller from\naccessing resources. Simplify callers by aborting instead of returning\nan error.\n\nThis will also prevent callers from forgetting to check the return\nvalue of the function and not actually setting supplementary groups\nwhen they expected to.\n\nOnce the callers are updated, we can change this function to return\nvoid.\n\nBug: 26099611\nChange-Id: Ib470e913d734ab4eac01b2aef3cdd4922d98e15a\n"
    },
    {
      "commit": "47bdb8a150b75a4619cec41d10046868b168acaa",
      "tree": "0d3919269943753c89948baff286d9973674f83d",
      "parents": [
        "f184b72940e6dd3c744ef6b53243ad559f9bd8e7",
        "4b276a6c643cee568b9b623b1ce00fd41db9e8b9"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Jan 08 01:32:42 2016"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Fri Jan 08 01:32:42 2016"
      },
      "message": "Merge \"Use prctl(PR_CAPBSET_READ) to get the last valid cap on Android.\""
    },
    {
      "commit": "4b276a6c643cee568b9b623b1ce00fd41db9e8b9",
      "tree": "4451e70574c9d1157ed0fd7ed68fdfa2db37f0b2",
      "parents": [
        "f1891ab65ec95895b59253a069d2dce1e44edf73"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Jan 07 22:31:33 2016"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Jan 07 22:31:33 2016"
      },
      "message": "Use prctl(PR_CAPBSET_READ) to get the last valid cap on Android.\n\nNot all Android processes will have access to \u0027/proc/sys/kernel/cap_last_cap\u0027,\nso use prctl() to get the last valid cap on Android.\n\nBug: 26217031\nChange-Id: I7dffc8facca30a2e32c5c310c383e82a07b0519e\n"
    },
    {
      "commit": "f184b72940e6dd3c744ef6b53243ad559f9bd8e7",
      "tree": "47b4f63607a2ac41e5ca9281f0da087a2e08073f",
      "parents": [
        "f1891ab65ec95895b59253a069d2dce1e44edf73",
        "1482f20e0553817edbbb9c4e93d50f82f74ad62b"
      ],
      "author": {
        "name": "Jeffrey Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Thu Jan 07 21:28:33 2016"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Thu Jan 07 21:28:33 2016"
      },
      "message": "Merge \"x86: add syscalls for logging on Android\""
    },
    {
      "commit": "1482f20e0553817edbbb9c4e93d50f82f74ad62b",
      "tree": "d90e0c0fd436d08276657032a8c33e1ff9cea213",
      "parents": [
        "08fd9ea25302047316f5d4398a869c3d551a1561"
      ],
      "author": {
        "name": "Jeff Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Thu Jan 07 19:21:31 2016"
      },
      "committer": {
        "name": "Jeff Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Thu Jan 07 19:21:31 2016"
      },
      "message": "x86: add syscalls for logging on Android\n\nChange-Id: If038734bf683c86b196f83a358ae38dee3654a08\n"
    },
    {
      "commit": "f1891ab65ec95895b59253a069d2dce1e44edf73",
      "tree": "b44250a223483bcda161d7b585078095fe936204",
      "parents": [
        "c38a20bcc7d985aeb0613fa09ffb1983afd6f92e",
        "7943da9ead852722a3badefc196519ce5bef451d"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Mon Jan 04 23:29:53 2016"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Mon Jan 04 23:29:53 2016"
      },
      "message": "Merge \"Pass arch-specific global flags into generate scripts\""
    },
    {
      "commit": "7943da9ead852722a3badefc196519ce5bef451d",
      "tree": "aa724992be355e069b448b2def1bfff46a59045b",
      "parents": [
        "08fd9ea25302047316f5d4398a869c3d551a1561"
      ],
      "author": {
        "name": "Jeff Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Fri Dec 18 21:19:53 2015"
      },
      "committer": {
        "name": "Jeffrey Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Mon Jan 04 20:47:04 2016"
      },
      "message": "Pass arch-specific global flags into generate scripts\n\nWithout this change x86_64 system calls are incorrectly added\nto libsyscalls.c on x86 builds.\n\nBug: 26384149\nChange-Id: I036565f65ce8a26554fe2a9f00a4d22834abea81\n"
    },
    {
      "commit": "c38a20bcc7d985aeb0613fa09ffb1983afd6f92e",
      "tree": "3070321b4dd3a26ea8d876101e0f221fd31bbecd",
      "parents": [
        "08fd9ea25302047316f5d4398a869c3d551a1561"
      ],
      "author": {
        "name": "Jeff Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Tue Dec 22 15:55:19 2015"
      },
      "committer": {
        "name": "Jeff Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Mon Jan 04 19:24:45 2016"
      },
      "message": "Make genearation of libconstants.c more robust\n\nChanges to the clang build flags passed into gen_constants.sh\ncan cause compile errors for the generated libconstants.c. Make\nthis process more robust by:\n\n1. Typecasting values to unsigned long to address compiler failures\n   when other integer types are added to libconstants.c.\n2. Making the grep statement filter out constants defined\n   without a value but with trailing whitespace e.g.\n   \"#define ANDROID_API_H \".\n\nChange-Id: I91d65db70b9e267882a8f381a836bbd7caded22e\n"
    },
    {
      "commit": "08fd9ea25302047316f5d4398a869c3d551a1561",
      "tree": "3f11fb3ef1e674ed71c8e0fbf32701a9fb2ba0c4",
      "parents": [
        "5e5e784c7f1a02c7431a15c57ff3dd3ba389b9ae"
      ],
      "author": {
        "name": "Colin Cross",
        "email": "ccross@android.com",
        "time": "Mon Dec 21 22:31:34 2015"
      },
      "committer": {
        "name": "Colin Cross",
        "email": "ccross@android.com",
        "time": "Mon Dec 21 22:31:34 2015"
      },
      "message": "minijail: fix duplicate generated sources rules\n\nThe TARGET_ARCH and TARGET_2ND_ARCH sections in Android.mk for\nlibminijail_generated were both writing to the same files in\n$(generated_sources_dir).  Put the files in $(TARGET_ARCH) and\n$(TARGET_2ND_ARCH) subdirectories so they don\u0027t collide.\n\nPrevents:\n./external/minijail/Android.mk:53: warning: overriding commands for target `out/target/product/bullhead/gen/STATIC_LIBRARIES/libminijail_generated_intermediates/libsyscalls.c\u0027\n./external/minijail/Android.mk:41: warning: ignoring old commands for target `out/target/product/bullhead/gen/STATIC_LIBRARIES/libminijail_generated_intermediates/libsyscalls.c\u0027\n./external/minijail/Android.mk:58: warning: overriding commands for target `out/target/product/bullhead/gen/STATIC_LIBRARIES/libminijail_generated_intermediates/libconstants.c\u0027\n./external/minijail/Android.mk:46: warning: ignoring old commands for target `out/target/product/bullhead/gen/STATIC_LIBRARIES/libminijail_generated_intermediates/libconstants.c\u0027\n\nChange-Id: I892bd6998c44f0bce5358d7e71a584284beac02f\n"
    },
    {
      "commit": "5e5e784c7f1a02c7431a15c57ff3dd3ba389b9ae",
      "tree": "099e13df7ad9c7288c32211b3fa54b33164c317a",
      "parents": [
        "c0b6958a05bf1a2cb221bcc3dc79acd3cbd20004",
        "2860c4693ea5f40b44e4b2eb2f0b6970ffcd7f27"
      ],
      "author": {
        "name": "Peter Qiu",
        "email": "zqiu@google.com",
        "time": "Thu Dec 17 22:39:57 2015"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Thu Dec 17 22:39:57 2015"
      },
      "message": "Merge \"Add support for resetting signal masks\""
    },
    {
      "commit": "2860c4693ea5f40b44e4b2eb2f0b6970ffcd7f27",
      "tree": "17142d8c0e5b3ea0e23d75c91dc55d06dc05cc3e",
      "parents": [
        "6fd82bdeeeb399a96ed82ca00ab657e9e2e3d503"
      ],
      "author": {
        "name": "Peter Qiu",
        "email": "zqiu@google.com",
        "time": "Wed Dec 16 23:13:06 2015"
      },
      "committer": {
        "name": "Peter Qiu",
        "email": "zqiu@google.com",
        "time": "Thu Dec 17 22:25:25 2015"
      },
      "message": "Add support for resetting signal masks\n\nBy default, child process will inherit signal masks (blocked signals)\nfrom its parent process.  Once the signal is blocked, the child process\nwill not be able to receive notifications for those signals.\n\nSome parent processes (such as system daemons implemented using\nbrillo::Daemon) will block signals such as SIGTERM and SIGINT, so that\nthey can use signalfd to monitor those signals instead.  In this case,\nthe child process will not be able to receive notification for these\nsignals.\n\nTo fix it, allow the caller to specify a flag to indicate if child\nprocess should reset the signal mask or not.\n\nBug: None\nBUG\u003dchrome-os-partner:47785\nTEST\u003dManual test\n\nChange-Id: I7d32c50e67af0dadbfeca8316f85b9a542e952c0\n"
    },
    {
      "commit": "c0b6958a05bf1a2cb221bcc3dc79acd3cbd20004",
      "tree": "3ef68f4a5d5a7b87af66c7b129c8ac6eae6ff358",
      "parents": [
        "6fd82bdeeeb399a96ed82ca00ab657e9e2e3d503"
      ],
      "author": {
        "name": "Jeff Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Wed Dec 16 23:50:21 2015"
      },
      "committer": {
        "name": "Jeffrey Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Thu Dec 17 04:30:31 2015"
      },
      "message": "libminijail_generated: Use 32 bit syscalls in compat mode\n\nOn 64 bit architectures, 32 and 64 bit versions of libraries are\ncompiled to support compatibility with processes running in 32 bit\ncompatibility mode. Currently libminijail_generated.a is being created\nwith the 64 bit syscalls in both the 32 and 64 bit versions of the\nlibrary. Add target for TARGET_2ND_ARCH to use 32 bit syscalls in\nthe 32 bit libminijail_generated.a.\n\nChange-Id: I34e22257b61a5c50deda2348e9cedc3304da0677\n"
    },
    {
      "commit": "6fd82bdeeeb399a96ed82ca00ab657e9e2e3d503",
      "tree": "00d9701eee991f46e21f47f6587ab2d8d1c20876",
      "parents": [
        "de02a5ba3578e0c3fb1d664d7109cd61e3d30e4c"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Dec 15 17:28:52 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Dec 15 17:28:52 2015"
      },
      "message": "Make library dependencies clearer.\n\nThe static library should not depend on a shared library.\n\nBug: 26099386\nChange-Id: Ic4e2eb83ef68c9320053b50f8b28b101d99e5912\n"
    },
    {
      "commit": "de02a5ba3578e0c3fb1d664d7109cd61e3d30e4c",
      "tree": "a215aa37e460225e983f09f859c665165a54db33",
      "parents": [
        "43e29b3551479dd6d989b830eacd1abbd83592cc"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Dec 11 23:28:52 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Dec 11 23:33:14 2015"
      },
      "message": "Fix marshaling for supplementary gid list.\n\nWe were not marshaling the supplementary gid list at all.\nWhile in there, make unmarshaling seccomp filters more robust.\n\nBug: 25870500\nChange-Id: I8b7d832ae62eaa3d859863b3fdd7f9772732239f\n"
    },
    {
      "commit": "43e29b3551479dd6d989b830eacd1abbd83592cc",
      "tree": "ee48a871ff2c83e74998caadbfe43579f6d12aee",
      "parents": [
        "b845b15da9d2611608b6492abebdb25e12b55c73"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Dec 09 05:07:14 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Dec 09 21:28:13 2015"
      },
      "message": "Add libminijail static library target.\n\nThis will be used for statically-linked binaries on Android.\n\nAlso, fix the call to get_last_valid_cap() to only happen when we\u0027re\ndropping capabilities.\n\nBug: 26099386\nChange-Id: I741390b6b356592ec9bdfe54b04d23feab5702aa\n"
    },
    {
      "commit": "b845b15da9d2611608b6492abebdb25e12b55c73",
      "tree": "c1f69a69074905b54c2f292488ab8b2f3e89cf94",
      "parents": [
        "8fbee418bcf38eeb53ed620c32bc8191d2c37892"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Dec 09 04:52:41 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Dec 09 04:58:25 2015"
      },
      "message": "Minijail: Clean up Makefile.\n\nWe don\u0027t need to call \u0027local-generated-sources-dir\u0027 in the libminijail\ntarget anymore.\n\nAlso fix a path in one comment.\n\nBug: None\nChange-Id: Id56dd59379209ece8835d6978a8bae90be50df7d\n"
    },
    {
      "commit": "8fbee418bcf38eeb53ed620c32bc8191d2c37892",
      "tree": "86107586c13b14b7f7a8afc3faa77a94aa55e7d2",
      "parents": [
        "580ce03c473abddfd6d1a71643a0a05ba070662d",
        "ce7e7c349d84f9eb5059ebe8a3914117f8b59f2b"
      ],
      "author": {
        "name": "Elliott Hughes",
        "email": "enh@google.com",
        "time": "Tue Dec 08 16:55:08 2015"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Tue Dec 08 16:55:08 2015"
      },
      "message": "Merge \"Track rename from base/ to android-base/.\""
    },
    {
      "commit": "ce7e7c349d84f9eb5059ebe8a3914117f8b59f2b",
      "tree": "d4473c8854c404c293b1d0cb341ef89aa7f212f9",
      "parents": [
        "06940beabdb45d34cfaf9880eb8e793122c10abd"
      ],
      "author": {
        "name": "Elliott Hughes",
        "email": "enh@google.com",
        "time": "Tue Dec 08 16:54:43 2015"
      },
      "committer": {
        "name": "Elliott Hughes",
        "email": "enh@google.com",
        "time": "Tue Dec 08 16:54:43 2015"
      },
      "message": "Track rename from base/ to android-base/.\n\nChange-Id: If3a83674cf10a370610069612903190992f29830\n"
    },
    {
      "commit": "580ce03c473abddfd6d1a71643a0a05ba070662d",
      "tree": "f9c88ab90cdb8000f50be21b0e37c383adab083c",
      "parents": [
        "06940beabdb45d34cfaf9880eb8e793122c10abd"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Dec 08 00:08:07 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Dec 08 00:09:06 2015"
      },
      "message": "Minijail: add kernel-style-based .clang-format file.\n\nBased on http://clang.llvm.org/docs/ClangFormatStyleOptions.html\n\nRunning clang-format on the entire Minijail codebase suggests\na few changes, but individual code sections can use this format\njust fine.\n\nBug: None\nChange-Id: I8067b2a0e200697064a0c17c9c8042d785bea92c\n"
    },
    {
      "commit": "06940beabdb45d34cfaf9880eb8e793122c10abd",
      "tree": "9c1a4a942a922d21cef167f0379e3ebdfc6eb76e",
      "parents": [
        "6f967c545e8383ebe1f9331e0208468bff883f2e"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Sat Dec 05 02:09:21 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Sat Dec 05 02:22:21 2015"
      },
      "message": "Fix C99 declaration.\n\nBug: 26040155\nChange-Id: I5779d447d0c4917b30093a435db680fe3f66c8b3\n"
    },
    {
      "commit": "6f967c545e8383ebe1f9331e0208468bff883f2e",
      "tree": "bf67ca734c27665347a25ae6186a7f9ba6087e0f",
      "parents": [
        "cac4fa70f4570bdac3c11196e1dc98bfdc68ef40"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Dec 04 22:44:53 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Sat Dec 05 02:02:24 2015"
      },
      "message": "Add short libminijail example.\n\nNow that the filesystem on the emulators can be remounted RW,\nhaving an executable that can be compiled and pushed to the system\nto test functionality is very convenient.\n\nBug: None\nChange-Id: I72f64ffe137cf5b24c1c74204986817a5929825d\n"
    },
    {
      "commit": "cac4fa70f4570bdac3c11196e1dc98bfdc68ef40",
      "tree": "057c5543fb0ae86422d6c3ff8d18c092bd970cf7",
      "parents": [
        "43a6a864491b6209192936d66d6a2e50e66deee2",
        "e81a52f36e9d283ba162180136eb5ac81f37440c"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Sat Dec 05 01:49:36 2015"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Sat Dec 05 01:49:36 2015"
      },
      "message": "Merge \"Free \u0027suppl_gid_list\u0027.\""
    },
    {
      "commit": "43a6a864491b6209192936d66d6a2e50e66deee2",
      "tree": "2c7f1953309ff338a5a74a808d8c0911cf8b32ad",
      "parents": [
        "f7a3868cc0f6fc8de945e4f9e9e6fcae5bf1e645"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Dec 04 22:53:36 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Sat Dec 05 01:28:18 2015"
      },
      "message": "Fix some long lines.\n\nBug: None\nChange-Id: I2364bf07991b2a5be23502cd011a6cc8d35471d6\n"
    },
    {
      "commit": "e81a52f36e9d283ba162180136eb5ac81f37440c",
      "tree": "5d69599480979166e547151da7b97eef1108380d",
      "parents": [
        "f7a3868cc0f6fc8de945e4f9e9e6fcae5bf1e645"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Sat Dec 05 00:05:23 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Sat Dec 05 00:08:00 2015"
      },
      "message": "Free \u0027suppl_gid_list\u0027.\n\nBug: 25870500\n\nChange-Id: I20e4c87d303d6b2fb11b00b43c88536a6244fe18\n"
    },
    {
      "commit": "f7a3868cc0f6fc8de945e4f9e9e6fcae5bf1e645",
      "tree": "4337a8937b8b2786ddbc1e1adb6e8c8aba0ce698",
      "parents": [
        "d7728b814333c62a52c213d0d89a3f345bb914eb"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Dec 04 23:43:30 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Dec 04 23:43:30 2015"
      },
      "message": "Fix indentation.\n\nChange-Id: Ibd7a20bd3e943b13499b084eefa7ec66bef66bb6\n"
    },
    {
      "commit": "d7728b814333c62a52c213d0d89a3f345bb914eb",
      "tree": "c257ae620169c5580c796e026ebdcd75a8b89c6c",
      "parents": [
        "d38f3997beb35a63652579289d0898fc71ccc86f",
        "d16ac49c9866b94ea74dcdaff2a7ebc9d05246dc"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Dec 04 21:45:50 2015"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Fri Dec 04 21:45:50 2015"
      },
      "message": "Merge \"Allow setting supplementary GIDs directly.\""
    },
    {
      "commit": "d16ac49c9866b94ea74dcdaff2a7ebc9d05246dc",
      "tree": "bf28fdf6ea59f0ce6413e7961886b47e9b58af4d",
      "parents": [
        "53495fe01458a51ceeb66c03eab25c8020b53c1d"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Thu Dec 03 22:44:35 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Fri Dec 04 21:44:11 2015"
      },
      "message": "Allow setting supplementary GIDs directly.\n\nThis is used on Android where initgroups(3) is not applicable.\n\nBug: 25870500\nChange-Id: I6bdf3342ac8bfc532d33bd0446af2801d1108461\n"
    },
    {
      "commit": "d38f3997beb35a63652579289d0898fc71ccc86f",
      "tree": "ebf0846cf4a26aa59fff0c9489cd4b490866e91d",
      "parents": [
        "53495fe01458a51ceeb66c03eab25c8020b53c1d"
      ],
      "author": {
        "name": "Jeff Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Wed Dec 02 18:54:51 2015"
      },
      "committer": {
        "name": "Jeff Vander Stoep",
        "email": "jeffv@google.com",
        "time": "Thu Dec 03 22:10:02 2015"
      },
      "message": "Add syscalls required for logging on Android arm/arm64\n\nThe following sycalls are required to write to syslog on Android\narm64: connect, fcntl, sendto, socket, writev\narm: clock_gettime, connect, fcntl64, socket, writev\n\nChange-Id: I3560a7e2ee1a38273e2a9ebe221f34c5bac67dde\n"
    },
    {
      "commit": "53495fe01458a51ceeb66c03eab25c8020b53c1d",
      "tree": "92c8cddcfbd90803f3da129c2c02a24ead1a68c8",
      "parents": [
        "af02ae7eb9dc8d2be7a35048f9b0034540f69765"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Dec 01 19:56:04 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Dec 01 19:56:04 2015"
      },
      "message": "Disable failing syscall filtering tests on Android temporarily.\n\nTests are failing because data files are not available.\n\nBug: 25892333\nChange-Id: I1f0c14005d8db78b570a7b88aa4648d66ecb735a\n"
    },
    {
      "commit": "af02ae7eb9dc8d2be7a35048f9b0034540f69765",
      "tree": "61708521d15bfd575c45c7718f1b92617e3411ef",
      "parents": [
        "c2ba9f5bf14b1e126efbf6c221dce2a93a01bc3a"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Dec 01 17:14:22 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Dec 01 17:14:22 2015"
      },
      "message": "Fix libminijail_unittest.\n\nExecutable paths were wrong.\n\nBug: 25892333\nChange-Id: Ice7f56c36f58969da52617daa89bca01abb47850\n"
    },
    {
      "commit": "c2ba9f5bf14b1e126efbf6c221dce2a93a01bc3a",
      "tree": "1d1df3edfc10c3b3acb3e8cc4c43c2e722bdd13d",
      "parents": [
        "d0a6e2fd0748110336fc6b28bb6fbf0bdfe1ddfa"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Dec 01 15:58:10 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Dec 01 16:03:47 2015"
      },
      "message": "Use size_t for size-related variables.\n\nBug: 25870500\nChange-Id: I42584ccd45c7c9390d9b5656831f4ba94ff27a4d\n"
    },
    {
      "commit": "d0a6e2fd0748110336fc6b28bb6fbf0bdfe1ddfa",
      "tree": "dc1c98e9b0421b703dd35bd70d1fddfd13b29034",
      "parents": [
        "6cae0b28a956ec37a05d3586c1aa41e8f1177100"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Nov 24 22:21:21 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Nov 24 22:22:15 2015"
      },
      "message": "Remove unused Minijail flag and make multi-line comments consistent.\n\nBug: 25870500\n\nChange-Id: Ic9306659ab2ae91c45a3062f08964ec8c0c15320\n"
    },
    {
      "commit": "6cae0b28a956ec37a05d3586c1aa41e8f1177100",
      "tree": "0ebcea78e8dde977207dd1bbd481f25982e34f00",
      "parents": [
        "f794247e0413fe36759a2bdcaa5bdd75cf3163a2"
      ],
      "author": {
        "name": "Dylan Reid",
        "email": "dgreid@chromium.org",
        "time": "Thu Nov 19 02:47:49 2015"
      },
      "committer": {
        "name": "Dylan Reid",
        "email": "dgreid@google.com",
        "time": "Mon Nov 23 18:15:41 2015"
      },
      "message": "minijail: Update man page\n\nWhen adding options recently, the man page had not been updated.  Add\nthe new options and fix a few issues such as -C and -t being inserted in\nthe middle of the description for -c.\n\nBUG\u003dnone\nTEST\u003dman ./minijail0.1\n\nChange-Id: I2fd9f30aba93a8a0db8e8c94a799ff96c672114e\nSigned-off-by: Dylan Reid \u003cdgreid@chromium.org\u003e\n"
    },
    {
      "commit": "f794247e0413fe36759a2bdcaa5bdd75cf3163a2",
      "tree": "c6d9d728af9bd92960491c6ed0473672462b45fc",
      "parents": [
        "eac2894b0b59ba1e33c3f173c00c26bdb0268afb"
      ],
      "author": {
        "name": "Dylan Reid",
        "email": "dgreid@chromium.org",
        "time": "Thu Nov 19 01:55:26 2015"
      },
      "committer": {
        "name": "Dylan Reid",
        "email": "dgreid@google.com",
        "time": "Mon Nov 23 18:15:35 2015"
      },
      "message": "minijail: Add option to enter a new IPC namespace\n\nExport this feature through the \u0027-l\u0027 option to minijail0.\n\nTEST\u003drun minijail0 with the -l option, check that the executed program\nis in a different ipc namesspace with /proc/self/ns/ipc.\nBUG\u003db/25770648\n\nChange-Id: Ia8f72cc59160fc736c8a58cb68d9894f9c92281c\nSigned-off-by: Dylan Reid \u003cdgreid@chromium.org\u003e\n"
    },
    {
      "commit": "eac2894b0b59ba1e33c3f173c00c26bdb0268afb",
      "tree": "29594918960f4b8b036e69bb18cfad76fd933f41",
      "parents": [
        "648b220346aaee74ffbab35be6129bdfa5aca3a5"
      ],
      "author": {
        "name": "Andrew Bresticker",
        "email": "abrestic@chromium.org",
        "time": "Thu Nov 12 00:04:46 2015"
      },
      "committer": {
        "name": "Andrew Bresticker",
        "email": "abrestic@chromium.org",
        "time": "Fri Nov 13 18:34:09 2015"
      },
      "message": "minijail: Support setting syscall table with PR_ALT_SYSCALL\n\nAdd support for setting the syscall table for a jailed process using\nprctl(PR_ALT_SYSCALL).  This adds the option \u0027-a \u003ctable\u003e\u0027 which\nchanges the jailed process\u0027s syscall table to the alt_syscall\ntable named \u003ctable\u003e.  alt_syscall tables must be registerd in the\nkernel (see crosreview.com/312137 for an example of how this is done).\n\nBug: 25649436\nTEST\u003dCreate a test blacklist that blocks write(2) and observe that\n\u0027minijail0 -a test -- /bin/echo hello\u0027 prints nothing to stdout.\n\nChange-Id: Idddafa1d0b81483a594e05d9d3390d4f9ad849c6\nSigned-off-by: Andrew Bresticker \u003cabrestic@chromium.org\u003e\n"
    },
    {
      "commit": "648b220346aaee74ffbab35be6129bdfa5aca3a5",
      "tree": "abec2be342a99c3eeb80961182b7f56db24874b7",
      "parents": [
        "6c7a45812a3fbd590a85bcc7fea84c614a851288"
      ],
      "author": {
        "name": "Dylan Reid",
        "email": "dgreid@chromium.org",
        "time": "Fri Oct 23 07:50:00 2015"
      },
      "committer": {
        "name": "Dylan Reid",
        "email": "dgreid@google.com",
        "time": "Wed Nov 04 23:58:42 2015"
      },
      "message": "minijail: Add ability to specify mounts\n\nIn addition to bind mounts, allow other mounts to be specified when\nrunning minijail.  Expose this as a -k option to minijail0.\n\nThis will allow for file systems such as proc, sysfs, and devpts to be\nmounted before taking away the permisison to mount from the target\nprogram.\n\nFor example \"-k sysfs,/sys,sysfs,0xe\" will mount /sys in the new vfs\nnamespace.\n\nBUG\u003db/24976046\nTEST\u003dMount sysfs, run a shell, check that sysfs is mounted.\n\nChange-Id: I9862e42e00ce76b1fab9cbac59c381f5270470ce\nSigned-off-by: Dylan Reid \u003cdgreid@google.com\u003e\n"
    },
    {
      "commit": "6c7a45812a3fbd590a85bcc7fea84c614a851288",
      "tree": "027bb3afb5e8a5c83dc12698c5dd2225d51da76a",
      "parents": [
        "a14e08dad428aaa934687e3636a84ca7a9711de2"
      ],
      "author": {
        "name": "Dylan Reid",
        "email": "dgreid@chromium.org",
        "time": "Fri Oct 30 19:47:36 2015"
      },
      "committer": {
        "name": "Dylan Reid",
        "email": "dgreid@google.com",
        "time": "Fri Oct 30 19:58:34 2015"
      },
      "message": "minijail: Remove has_bind_mounts API\n\nThis was added for minijail0 and minijail0 no longer uses it.  It hasn\u0027t\nhad any users added in the week or so it\u0027s been merged, remove it.\n\nChange-Id: I1893b47fa2bd543718c98bb3bfcf23ed67566a01\nSigned-off-by: Dylan Reid \u003cdgreid@chromium.org\u003e\n"
    },
    {
      "commit": "a14e08dad428aaa934687e3636a84ca7a9711de2",
      "tree": "ede75448407284bc641c6889e2cd712808355010",
      "parents": [
        "d6aedee6f0cdc53ad11af4f297297803bf95c96f"
      ],
      "author": {
        "name": "Dylan Reid",
        "email": "dgreid@chromium.org",
        "time": "Fri Oct 23 04:05:29 2015"
      },
      "committer": {
        "name": "Dylan Reid",
        "email": "dgreid@google.com",
        "time": "Thu Oct 29 17:00:10 2015"
      },
      "message": "minijail: Allow static binaries in a bind mount to run\n\nA previous commit placed a restriction on running static binaries and\nusing bind mounts.  Remove that restriction by checking if the binary\npath is in a bind mount and rebasing the path on to the bind mount\nsource path so that the executable can be accessed from outside the\nchroot.  This is needed so bind mounts can be specified when running a\nstatically linked init program for Android.\n\nBUG\u003db/25192613\nTEST\u003dsecurity_Minijail0, run a static init with bind mounts.\n\nChange-Id: I801909df67c1bf18d48efcfd54c11aafe4c75e54\nSigned-off-by: Dylan Reid \u003cdgreid@google.com\u003e\n"
    },
    {
      "commit": "d6aedee6f0cdc53ad11af4f297297803bf95c96f",
      "tree": "c2cf0b5847360fd765027277a4b50c9a1d415346",
      "parents": [
        "c37681ddf90209e4ca4741f25843dc11257e2030"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Oct 28 20:26:32 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Oct 28 20:26:32 2015"
      },
      "message": "Add syscall filtering unit tests.\n\nBug: 25130591\nChange-Id: I3cef5150cb0a192322197f0a8ff550d158e032ad\n"
    },
    {
      "commit": "c37681ddf90209e4ca4741f25843dc11257e2030",
      "tree": "4a57287fc9a120f1423626338d42c28643e76696",
      "parents": [
        "2034274edb55cf3717ca7fa49f614e69b0dc59c6"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Oct 28 17:41:39 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Wed Oct 28 18:45:31 2015"
      },
      "message": "Add Minijail unit tests.\n\nBug: 25130591\n\nChange-Id: Idff6ab35486db3c07c9805253cb61405dafb4a76\n"
    },
    {
      "commit": "2034274edb55cf3717ca7fa49f614e69b0dc59c6",
      "tree": "17ba18d7960c0d8d67aa11879d06e9239cfafa86",
      "parents": [
        "1102f5a58d539ed72defe40fcc1078840d1b3778"
      ],
      "author": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Oct 27 18:39:59 2015"
      },
      "committer": {
        "name": "Jorge Lucangeli Obes",
        "email": "jorgelo@google.com",
        "time": "Tue Oct 27 18:42:31 2015"
      },
      "message": "Remove warning suppressions.\n\nBug: None\nChange-Id: Ie0a2a3f5c5817b3db3e8613da1ef4d1cc3505048\n"
    },
    {
      "commit": "1102f5a58d539ed72defe40fcc1078840d1b3778",
      "tree": "be9197a68870b482e917606281bb6b42f83a7c09",
      "parents": [
        "bfcafa7167266ed0dd8ef66f0cb28b0600aaeab5"
      ],
      "author": {
        "name": "Dylan Reid",
        "email": "dgreid@chromium.org",
        "time": "Tue Sep 15 18:52:20 2015"
      },
      "committer": {
        "name": "Dylan Reid",
        "email": "dgreid@google.com",
        "time": "Wed Oct 21 21:31:27 2015"
      },
      "message": "minijail: Support entering an existing net namespace.\n\nWhen launching a full OS as the jailed process, it is useful to first be\nable to configure a network namespace and start the new process in that\nnamespace.\n\nThis adds the \"-e\u003cnet namespace file\u003e\" optional argument to -e.  It\nallows, for example, passing \"-e/var/run/netns/newns\" to minijail0.\n\nChange-Id: I0613162072a1d14f10c58444c514f6d052c3d1e5\nSigned-off-by: Dylan Reid \u003cdgreid@chromium.org\u003e\n"
    },
    {
      "commit": "bfcafa7167266ed0dd8ef66f0cb28b0600aaeab5",
      "tree": "41c22d859b1ef06a5876dfe443a49d2b02cea6f0",
      "parents": [
        "2fa7cb5366ca0cc45a9b82f8abedc42aad1bae32",
        "fa289da1a1c62d2cf45c5a4b56a573cdc2e30ca0"
      ],
      "author": {
        "name": "Samuel Tan",
        "email": "samueltan@google.com",
        "time": "Tue Oct 20 23:33:45 2015"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Tue Oct 20 23:33:45 2015"
      },
      "message": "Merge \"minijail: add no-preload run_pid_pipes unittest\""
    },
    {
      "commit": "2fa7cb5366ca0cc45a9b82f8abedc42aad1bae32",
      "tree": "ebc55280069d436896233980843aabfd69d501d7",
      "parents": [
        "360f3293dd53ed8ff4ded07587fb33002bc2b235",
        "b095d9ee51ae875771fda8f780e91eea1a9c533f"
      ],
      "author": {
        "name": "Mike Frysinger",
        "email": "vapier@google.com",
        "time": "Mon Oct 19 21:16:02 2015"
      },
      "committer": {
        "name": "Gerrit Code Review",
        "email": "noreply-gerritcodereview@google.com",
        "time": "Mon Oct 19 21:16:02 2015"
      },
      "message": "Merge changes I6d73bcad,I41775eb1,I53342db7,Id8046a4f\n\n* changes:\n  gen_constants: rewrite sed to be a bit more readable\n  gen_constants: combine sort|uniq\n  gen_constants: simplify grep by using ERE by default\n  gen_{constants,syscalls}: fix sed/grep locale issues\n"
    }
  ],
  "next": "fa289da1a1c62d2cf45c5a4b56a573cdc2e30ca0"
}
