[Android] Restrict ptrace() operations to just the read ones needed by Crashpad.

This adds a new RestrictPtrace() syscall_parameter_restrictions helper, which
is then used by the Android baseline Seccomp policy. Desktop Linux and ChromeOS
do not permit ptrace in their Seccomp filters.

Bug: 933418
Change-Id: Iceaf2c5c0f3f09f3fa4823de2bf01dd13a64cf43
Reviewed-on: https://chromium-review.googlesource.com/c/1479092
Reviewed-by: Jorge Lucangeli Obes <jorgelo@chromium.org>
Commit-Queue: Robert Sesek <rsesek@chromium.org>
Cr-Original-Commit-Position: refs/heads/master@{#633894}
Cr-Mirrored-From: https://chromium.googlesource.com/chromium/src
Cr-Mirrored-Commit: 508a907c86936e23e978960bf235338943388bf0
6 files changed