Skip to content
Snippets Groups Projects
  • Luis Hector Chavez's avatar
    64a05038
    Restrict /proc/sys/vm/mmap_rnd_bits · 64a05038
    Luis Hector Chavez authored
    Label /proc/sys/vm/mmap_rnd_bits so it is only readable and writable by
    init. This also tightens the neverallow restrictions for proc_security.
    
    Bug: 33563834
    Test: run cts -m CtsPermissionTestCases -t \
          android.permission.cts.FileSystemPermissionTest#testProcfsMmapRndBitsExistsAndSane
    
    Change-Id: Ie7af39ddbf23806d4ffa35e7b19d30fec7b6d410
    64a05038
    History
    Restrict /proc/sys/vm/mmap_rnd_bits
    Luis Hector Chavez authored
    Label /proc/sys/vm/mmap_rnd_bits so it is only readable and writable by
    init. This also tightens the neverallow restrictions for proc_security.
    
    Bug: 33563834
    Test: run cts -m CtsPermissionTestCases -t \
          android.permission.cts.FileSystemPermissionTest#testProcfsMmapRndBitsExistsAndSane
    
    Change-Id: Ie7af39ddbf23806d4ffa35e7b19d30fec7b6d410