GPU Linux sandbox: block clone() and *kill

- Restrict *kill to the current process
- EPERM process creation with clone()
- Restrict thread creation flags to the standard pthread_create()
flags.

BUG=367986
R=jorgelo@chromium.org

Review URL: https://codereview.chromium.org/273963003

git-svn-id: svn://svn.chromium.org/chrome/trunk/src@269174 0039d316-1c4b-4281-b951-d872f2087c98
1 file changed