From 79d8593fd76e6b3d2fb10c89c47dde55b5138487 Mon Sep 17 00:00:00 2001 From: Karel Zak Date: Mon, 14 Mar 2016 16:15:04 +0100 Subject: unshare: tiny change Signed-off-by: Karel Zak --- sys-utils/unshare.1 | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'sys-utils/unshare.1') diff --git a/sys-utils/unshare.1 b/sys-utils/unshare.1 index c62d24c69..ba47c6733 100644 --- a/sys-utils/unshare.1 +++ b/sys-utils/unshare.1 @@ -118,7 +118,7 @@ syscall in user namespaces. .BR setgroups (2) is only callable with CAP_SETGID and CAP_SETGID in a user -namespace. Linux kernel since 3.19 does not give you permission to call setgroups(2) +namespace. Linux kernel (since 3.19) does not give you permission to call setgroups(2) until after GID map has been set. The GID map is writable by root when .BR setgroups (2) is enabled and the GID map becomes writable by unprivileged processes when -- cgit v1.2.3-55-g7522