Searched refs:CAP_SYS_PTRACE (Results 1 – 11 of 11) sorted by relevance
/linux/security/yama/ |
A D | yama_lsm.c | 371 !ns_capable(__task_cred(child)->user_ns, CAP_SYS_PTRACE)) in yama_ptrace_access_check() 377 if (!ns_capable(__task_cred(child)->user_ns, CAP_SYS_PTRACE)) in yama_ptrace_access_check() 407 if (!has_ns_capability(parent, current_user_ns(), CAP_SYS_PTRACE)) in yama_ptrace_traceme() 437 if (write && !capable(CAP_SYS_PTRACE)) in yama_dointvec_minmax()
|
/linux/Documentation/admin-guide/LSM/ |
A D | Yama.rst | 34 work), or with ``CAP_SYS_PTRACE`` (i.e. "gdb --pid=PID", and "strace -p PID" 49 The sysctl settings (writable only with ``CAP_SYS_PTRACE``) are: 68 only processes with ``CAP_SYS_PTRACE`` may use ptrace, either with
|
A D | Smack.rst | 299 ``PTRACE_READ`` is not affected. Can be overridden with ``CAP_SYS_PTRACE``. 303 exception that it can't be overridden with ``CAP_SYS_PTRACE``.
|
/linux/include/uapi/linux/ |
A D | capability.h | 235 #define CAP_SYS_PTRACE 19 macro
|
/linux/security/apparmor/ |
A D | ipc.c | 104 aad(sa)->error = aa_capable(&tracer->label, CAP_SYS_PTRACE, in profile_tracer_perm()
|
/linux/kernel/ |
A D | capability.c | 530 ret = security_capable(cred, ns, CAP_SYS_PTRACE, in ptracer_capable()
|
A D | ptrace.c | 287 return ns_capable_noaudit(ns, CAP_SYS_PTRACE); in ptrace_has_cap() 288 return ns_capable(ns, CAP_SYS_PTRACE); in ptrace_has_cap()
|
/linux/security/ |
A D | commoncap.c | 149 if (ns_capable(child_cred->user_ns, CAP_SYS_PTRACE)) in cap_ptrace_access_check() 181 if (has_ns_capability(parent, child_cred->user_ns, CAP_SYS_PTRACE)) in cap_ptrace_traceme()
|
/linux/Documentation/admin-guide/ |
A D | perf-security.rst | 90 So unprivileged processes provided with CAP_SYS_PTRACE capability are 92 CAP_SYS_PTRACE capability is not required and CAP_PERFMON is enough to
|
/linux/fs/ |
A D | userfaultfd.c | 1941 if ((features & UFFD_FEATURE_EVENT_FORK) && !capable(CAP_SYS_PTRACE)) in userfaultfd_api() 2069 !capable(CAP_SYS_PTRACE)) { in SYSCALL_DEFINE1()
|
/linux/security/smack/ |
A D | smack_lsm.c | 445 else if (smack_privileged_cred(CAP_SYS_PTRACE, tracercred)) in smk_ptrace_rule_check()
|
Completed in 24 milliseconds