)]}'
{
  "commit": "79f0713d403c800db9d89134e2fd7f846e68d6ee",
  "tree": "0c59c69742d70080f08d3c42febdf51b8db236ad",
  "parents": [
    "9bbad7da76b3dd578fb55c862624366a8c9ccd22"
  ],
  "author": {
    "name": "Cyrill Gorcunov",
    "email": "gorcunov@openvz.org",
    "time": "Thu Mar 15 15:17:10 2012 -0700"
  },
  "committer": {
    "name": "Linus Torvalds",
    "email": "torvalds@linux-foundation.org",
    "time": "Thu Mar 15 17:03:03 2012 -0700"
  },
  "message": "prctl: use CAP_SYS_RESOURCE for PR_SET_MM option\n\nCAP_SYS_ADMIN is already overloaded left and right, so to have more\nfine-grained access control use CAP_SYS_RESOURCE here.\n\nThe CAP_SYS_RESOUCE is chosen because this prctl option allows a current\nprocess to adjust some fields of memory map descriptor which rather\nrepresents what the process owns: pointers to code, data, stack\nsegments, command line, auxiliary vector data and etc.\n\nSuggested-by: Michael Kerrisk \u003cmtk.manpages@gmail.com\u003e\nAcked-by: Kees Cook \u003ckeescook@chromium.org\u003e\nAcked-by: Michael Kerrisk \u003cmtk.manpages@gmail.com\u003e\nCc: Pavel Emelyanov \u003cxemul@parallels.com\u003e\nCc: Tejun Heo \u003ctj@kernel.org\u003e\nCc: Oleg Nesterov \u003coleg@redhat.com\u003e\nCc: Paul Bolle \u003cpebolle@tiscali.nl\u003e\nCc: KOSAKI Motohiro \u003ckosaki.motohiro@jp.fujitsu.com\u003e\nSigned-off-by: Cyrill Gorcunov \u003cgorcunov@openvz.org\u003e\nSigned-off-by: Andrew Morton \u003cakpm@linux-foundation.org\u003e\nSigned-off-by: Linus Torvalds \u003ctorvalds@linux-foundation.org\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "40701538fbd168db2de95315ac5c512a79686f52",
      "old_mode": 33188,
      "old_path": "kernel/sys.c",
      "new_id": "888d227fd19599becd391eee8c35f96601b6bfc2",
      "new_mode": 33188,
      "new_path": "kernel/sys.c"
    }
  ]
}
