From 350a603e6c53528444e7be1046cb5199c40aa2e8 Mon Sep 17 00:00:00 2001 From: Jeff Vander Stoep <jeffv@google.com> Date: Fri, 10 Feb 2017 13:20:52 -0800 Subject: [PATCH] hal_fingerprint: grant read access to /sys avc: denied { read } for name="modalias" dev="sysfs" ino=17624 scontext=u:r:hal_fingerprint_default:s0 tcontext=u:object_r:sysfs:s0 tclass=file Test: Marlin builds and boots without this denial. Bug: 35197529 Change-Id: I3b64db571ac10c843f3765ed557ceac07bc6580e --- public/hal_fingerprint.te | 1 + 1 file changed, 1 insertion(+) diff --git a/public/hal_fingerprint.te b/public/hal_fingerprint.te index aa5bf2bef..8405a7ea8 100644 --- a/public/hal_fingerprint.te +++ b/public/hal_fingerprint.te @@ -19,3 +19,4 @@ allow hal_fingerprint ion_device:chr_file r_file_perms; binder_use(hal_fingerprint); r_dir_file(hal_fingerprint, cgroup) +r_dir_file(hal_fingerprint, sysfs) -- GitLab