From: Anita Zhang Date: Thu, 16 Jul 2020 18:36:28 +0000 (-0700) Subject: analyze: CAP_RAWIO -> CAP_SYS_RAWIO X-Git-Tag: v246-rc2~54 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=b5ef66101a7b1126b67fa58c68fb3ef246327276;p=thirdparty%2Fsystemd.git analyze: CAP_RAWIO -> CAP_SYS_RAWIO Fixes #16489 --- diff --git a/src/analyze/analyze-security.c b/src/analyze/analyze-security.c index 441fb0075c8..d4996c3c655 100644 --- a/src/analyze/analyze-security.c +++ b/src/analyze/analyze-security.c @@ -914,7 +914,7 @@ static const struct security_assessor security_assessor_table[] = { .parameter = (UINT64_C(1) << CAP_NET_ADMIN), }, { - .id = "CapabilityBoundingSet=~CAP_RAWIO", + .id = "CapabilityBoundingSet=~CAP_SYS_RAWIO", .description_good = "Service has no raw I/O access", .description_bad = "Service has raw I/O access", .url = "https://www.freedesktop.org/software/systemd/man/systemd.exec.html#CapabilityBoundingSet=",