public inbox for linux-kernel@vger.kernel.org
 help / color / mirror / Atom feed
* [BUG] capabilities
@ 2002-02-28 14:02 knobo
  0 siblings, 0 replies; only message in thread
From: knobo @ 2002-02-28 14:02 UTC (permalink / raw)
  To: linux-kernel


Hi,

Dropping the capability CAP_FSETID by itself does not work (and that
is probably correct), but when I drop CAP_CHOWN, CAP_FSETID works for
the group id, but not user id. I guess this is a bug (ref
include/linux/capability.h).


It does not look like dropping the CAP_SETGID (dropping CAP_SETGID
works in combination with dropping CAP_CHOWN) and CAP_SETUID works
either. Maybe they need to be dropped in combination with some other
capability? If so, it shod be more clear in the documentation
(cabability.h).

-- 
Knut Olav Bøhmer
         _   _
       / /  (_)__  __ ____  __
      / /__/ / _ \/ // /\ \/ /  ... The choice of a
     /____/_/_//_/\.,_/ /_/\.\         GNU generation

export PAGER="od -x |less"

^ permalink raw reply	[flat|nested] only message in thread

only message in thread, other threads:[~2002-02-28 14:07 UTC | newest]

Thread overview: (only message) (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2002-02-28 14:02 [BUG] capabilities knobo

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox