libseccomp before 2.4.0 did not correctly generate 64-bit syscall argument comparisons using the arithmetic operators (LT, GT, LE, GE), which might able to lead to bypassing seccomp filters and potential privilege escalations.
https://www.cisa.gov/news-events/ics-advisories/icsa-24-284-16
https://usn.ubuntu.com/4001-2/
https://usn.ubuntu.com/4001-1/
https://security.gentoo.org/glsa/201904-18
https://seclists.org/oss-sec/2019/q1/179
https://github.com/seccomp/libseccomp/issues/139
https://access.redhat.com/errata/RHSA-2019:3624
http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00027.html
http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00022.html