Skip to content

Commit

Permalink
clarify that EL-perm is only stripped if unsealed
Browse files Browse the repository at this point in the history
  • Loading branch information
tariqkurd-repo committed Dec 3, 2024
1 parent be4860d commit 6bfe29b
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion src/level-ext.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -49,7 +49,7 @@ NOTE: For `LVLBITS=1` this permission is equivalent to _StoreLocal_ in CHERI v9,

[#el_perm,reftext="EL-permission"]
Elevate Level Permission (EL):: Any unsealed capability with its tag set to 1 that is loaded from memory has its <<el_perm>> cleared and its <<section_cap_level>> restricted to the authorizing capability's <<section_cap_level>> if the authorizing capability does not grant <<el_perm>>.
If sealed, then only <<section_cap_level,CL>> is modified, <<el_perm>> is retained.
If sealed, then only <<section_cap_level,CL>> is modified, <<el_perm>> is unchanged.
This permission is similar to the existing <<lm_perm>>, but instead of applying to the <<w_perm>> on the loaded capability it restricts the <<section_cap_level,CL>> field.


Expand Down

0 comments on commit 6bfe29b

Please sign in to comment.