logo
Free, Micro AI Code Reviews That Run on Git Commit
git-lrc git-lrc GitHub Install Now We'd appreciate a star git-lrc - Free, Micro AI Code Reviews That Run on Git Commit | Product Hunt git-lrc - Free, Micro AI Code Reviews That Run on Git Commit | Product Hunt

PR_CAPBSET_DROP - drop a capability from the calling thread's capability bounding set

Description

Drop the capability specified by cap from the calling thread's capability bounding set. Any children of the calling thread will inherit the newly reduced bounding set.

Errors

EINVAL File capabilities are not enabled in the kernel. EINVALcap does not specify a valid capability. EPERM The caller does not have the CAP_SETPCAP capability.

History

Linux 2.6.25.

Library

Standard C library (libc, -lc)

Name

PR_CAPBSET_DROP - drop a capability from the calling thread's capability bounding set

Return Value

On success, 0 is returned. On error, -1 is returned, and errno is set to indicate the error.

See Also

prctl(2), PR_CAPBSET_READ(2const) libcap(3), cap_drop_bound(3) Linux man-pages 6.9.1 2024-06-02 PR_CAPBSET_DROP(2const)

Standards

Linux.

Synopsis

#include<linux/prctl.h> /* Definition of PR_* constants */ #include<sys/prctl.h>intprctl(PR_CAPBSET_DROP,longcap);

Versions

A higher-level interface layered on top of this operation is provided in the libcap(3) library in the form of cap_drop_bound(3).

See Also