From 1581326a313f568a44b01f5abd90223d80737e03 Mon Sep 17 00:00:00 2001 From: Eva Huang Date: Wed, 14 Jul 2021 22:58:48 +0800 Subject: system_app: fix avc errors avc: denied { read } for comm="Binder:6457_1" name="u:object_r:vendor_aware_available_prop:s0" dev="tmpfs" ino=21989 scontext=u:r:system_app:s0 tcontext=u:object_r:vendor_aware_available_prop:s0 tclass=file permissive=0 Bug: 191214116 Test: pts-tradefed run pts -m PtsSELinuxTest -t com.google.android.selinux.pts.SELinuxTest#scanBugreport Change-Id: I25cc16019d60e1a191cbf132ee6b1a2ef92b42a9 --- tracking_denials/system_app.te | 2 -- vendor/google/property.te | 4 +++- vendor/google/system_app.te | 1 + 3 files changed, 4 insertions(+), 3 deletions(-) delete mode 100644 tracking_denials/system_app.te create mode 100644 vendor/google/system_app.te diff --git a/tracking_denials/system_app.te b/tracking_denials/system_app.te deleted file mode 100644 index f5d58cd..0000000 --- a/tracking_denials/system_app.te +++ /dev/null @@ -1,2 +0,0 @@ -# b/191214116 -dontaudit system_app vendor_aware_available_prop:file read; diff --git a/vendor/google/property.te b/vendor/google/property.te index 4687980..3268abc 100644 --- a/vendor/google/property.te +++ b/vendor/google/property.te @@ -1,5 +1,4 @@ vendor_internal_prop(ecoservice_prop) -vendor_internal_prop(vendor_aware_available_prop) vendor_internal_prop(vendor_battery_defender_prop) vendor_internal_prop(vendor_battery_profile_prop) vendor_internal_prop(vendor_build_type_prop) @@ -14,3 +13,6 @@ vendor_internal_prop(vendor_device_prop) vendor_internal_prop(vendor_logging_prop) vendor_restricted_prop(camera_ro_prop) + +# Vendor aware available type +vendor_restricted_prop(vendor_aware_available_prop) diff --git a/vendor/google/system_app.te b/vendor/google/system_app.te new file mode 100644 index 0000000..326d9fd --- /dev/null +++ b/vendor/google/system_app.te @@ -0,0 +1 @@ +get_prop(system_app, vendor_aware_available_prop) -- cgit v1.2.3