Drafting capabilities

This commit is contained in:
Emilio Pinna
2018-09-12 21:29:53 +01:00
parent 6e11e36a91
commit 1afd9ec9ec
3 changed files with 13 additions and 0 deletions

View File

@@ -62,6 +62,13 @@ load-library:
It loads shared libraries that may be used to run code in the binary
execution context.
capabilities-enabled:
label: Capabilities
description: |
It can manipulate its process UID and in Linux systems it can be set with the
`CAP_SETUID` capability to make it work as a backdoor to maintain elevated privileges.
This also works if the binary is invoked by another binary with the capability set.
suid-enabled:
label: SUID
description: |