Skip to content
Commit 70169420 authored by Eric W. Biederman's avatar Eric W. Biederman
Browse files

exec: Don't reset euid and egid when the tracee has CAP_SETUID



Don't reset euid and egid when the tracee has CAP_SETUID in
it's user namespace.  I punted on relaxing this permission check
long ago but now that I have read this code closely it is clear
it is safe to test against CAP_SETUID in the user namespace.

Signed-off-by: default avatar"Eric W. Biederman" <ebiederm@xmission.com>
parent 1cce1eea
Loading
Loading
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment