-
- Downloads
Explicitly label filesystem files in /proc
proc files needed by fwk that were labeled: /proc/filesystems -> proc_filesystems /proc/mounts -> proc_mounts /proc/swaps -> proc_mounts Removed access to proc label from these domains: e2fs, fsck, fsck_untrusted, sdcardd e2fs: added access to proc_filesystems, proc_mounts, proc_swaps fsck: added access to proc_mounts, proc_swaps fsck_untrusted: added access to proc_mounts sdcardd: added access to proc_filesystems vold: added access to proc_filesystems, proc_mounts Bug: 66199084 Test: device boots without selinux denials to new labels or proc label. Change-Id: If0f19e22074419dab0b3a0c6f3a300ea8cb94523
Showing
- private/app_neverallows.te 3 additions, 0 deletionsprivate/app_neverallows.te
- private/compat/26.0/26.0.cil 1 addition, 1 deletionprivate/compat/26.0/26.0.cil
- private/genfs_contexts 3 additions, 0 deletionsprivate/genfs_contexts
- public/e2fs.te 5 additions, 2 deletionspublic/e2fs.te
- public/file.te 3 additions, 0 deletionspublic/file.te
- public/fsck.te 4 additions, 1 deletionpublic/fsck.te
- public/fsck_untrusted.te 1 addition, 1 deletionpublic/fsck_untrusted.te
- public/sdcardd.te 1 addition, 1 deletionpublic/sdcardd.te
- public/vold.te 5 additions, 1 deletionpublic/vold.te
Loading
Please register or sign in to comment