aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorTri Vo <trong@google.com>2019-04-13 17:46:48 -0700
committerTri Vo <trong@google.com>2019-05-08 15:52:01 -0700
commit8c617be05f35d15a0f774fcf3d57f92b2a7f67fc (patch)
treef5230046dcf47792b3b24533975ba02649d625a5
parentc8aa75946c452714a701609ebbcbc232778def35 (diff)
downloadcuttlefish-8c617be05f35d15a0f774fcf3d57f92b2a7f67fc.tar.gz
ueventd: allow /metadata dir search
avc: denied { search } for name="metadata" dev="vda" ino=31 scontext=u:r:ueventd:s0 tcontext=u:object_r:metadata_file:s0 tclass=dir permissive=0 Bug: 129497117 Test: boot cuttlefish without above denial Change-Id: I4baf54d2cfb58935c3d7452c2c5e8a27d9073d06 Merged-In: I4baf54d2cfb58935c3d7452c2c5e8a27d9073d06 (cherry picked from commit 4385ee7441f4add63e189486566237a52805e219)
-rw-r--r--shared/sepolicy/ueventd.te1
1 files changed, 1 insertions, 0 deletions
diff --git a/shared/sepolicy/ueventd.te b/shared/sepolicy/ueventd.te
new file mode 100644
index 000000000..985c8ec4d
--- /dev/null
+++ b/shared/sepolicy/ueventd.te
@@ -0,0 +1 @@
+allow ueventd metadata_file:dir search;