PR_CAP_AMBIENT_LOWER − lower the ambient capability set of the calling thread
Standard C library (libc, −lc)
#include
<linux/prctl.h> /* Definition of PR_*
constants */
#include <sys/prctl.h>
int prctl(PR_CAP_AMBIENT, PR_CAP_AMBIENT_LOWER, long cap, 0L, 0L);
The capability specified in cap is removed from the ambient capability set.
On success, 0 is returned. On error, −1 is returned, and errno is set to indicate the error.
|
EINVAL |
cap does not specify a valid capability. |
See PR_CAP_AMBIENT(2const).
Linux.
Linux 4.3.
prctl(2), PR_CAP_AMBIENT(2const), libcap(3)