Add a function to load seccomp filters from a file descriptor.

This allows for easier unit testing, since we don't need to rely on
data files. It will also allow using Minijail for seccomp testing in
CTS.

Refactor seccomp filter parsing in libminijail.c to avoid
duplicating code.

Bug: 25949727

Change-Id: Iff21591cecc1783d141df912dafbe341ac83ed50
diff --git a/libminijail.h b/libminijail.h
index a25c01a..62005c8 100644
--- a/libminijail.h
+++ b/libminijail.h
@@ -51,6 +51,7 @@
 void minijail_no_new_privs(struct minijail *j);
 void minijail_use_seccomp_filter(struct minijail *j);
 void minijail_parse_seccomp_filters(struct minijail *j, const char *path);
+void minijail_parse_seccomp_filters_from_fd(struct minijail *j, int fd);
 void minijail_log_seccomp_filter_failures(struct minijail *j);
 /* 'minijail_use_caps' and 'minijail_capbset_drop' are mutually exclusive. */
 void minijail_use_caps(struct minijail *j, uint64_t capmask);