The Linux kernel never sets the Inheritable capability flag to anything other than empty. Non-empty values are always exclusively set by userspace code. [The kernel stopped defaulting this set of capability values to the full set in 2000 after a privilege escalation with Capabilities affecting Sendmail and others.] Signed-off-by: Andrew G. Morgan <morgan@kernel.org>
8.6 KiB
8.6 KiB