Verify PR_SET_NO_NEW_PRIVS is enabled

On kernels which support it, verify that PR_SET_NO_NEW_PRIVS
is enabled. Generally, kernels >= Linux 3.5 will support
this feature.

On kernels which don't support it, it's not a fatal error (yet).

Change-Id: I4465a2916d40b804219c24ca2e8c126b8c1fc0a8
5 files changed