PR_SET_MDWE
(2const)set the Memory-Deny-Write-Execute protection mask for the calling process
#include <linux/prctl.h> /* Definition of PR_* constants */ #include <sys/prctl.h> int prctl(PR_SET_MDWE, unsigned long mask, 0L, 0L, 0L);
LIBRARY
DESCRIPTION
Set the calling process' Memory-Deny-Write-Execute protection mask. Once protection bits are set, they can not be changed.
mask must be a bit mask of:
- PR_MDWE_REFUSE_EXEC_GAIN
- New memory mapping protections can't be writable and executable. Non-executable mappings can't become executable.
- PR_MDWE_NO_INHERIT (since Linux 6.6)
- Do not propagate MDWE protection to child processes on fork(2). Setting this bit requires setting PR_MDWE_REFUSE_EXEC_GAIN too.
RETURN VALUE
ERRORS
- EINVAL
- mask is not a valid value.