entirely different semantics for such kernels.) CAP_SETUID • Make arbitrary manipulations of process UIDs ( setuid ... saved set, and filesystem user IDs (using setuid (2), setresu…modify its user and group IDs: setuid (2) ( setgid (2)) Modify the process's real ... user or group credentials (e.g., calls to setuid (2), setresuid (2)) is carried throughwriting process must have the CAP_SETUID ( CAP_SETGID ) capability in the user namespace ... Either the writing process has the CAP_SETUID ( CAP_SETGID ) capability in the parent u…setpgid (2) setsid (2) setsockopt (2) setuid (2) shutdown (2) sigaction (2) sigaddset (3) sigdelsetSETPCAP systemd-nspawn (1) CAP_SETUID systemd-nspawn (1) CAP_SYSLOG systemd.execaffected: exec () kill () seteuid () setegid () setgid () setuid () SEM - _POSIX_SEMAPHORES - _SC_SEMAPHORES The include fileuser-ID (unless it has CAP_SETUID ), and its real group ID, effective groupthis technique are provided for setgid (2), setuid (2), setegid (2), seteuid (2), setregidsetgid set-user-ID set-UID, setuid superuser super user, super-user superblock super blockthread has the CAP_SETUID capability, the persistent keyring corresponding to some other