Merge "Remove world writable sysfs files" into stage-aosp-master

This commit is contained in:
Jeffrey Vander Stoep 2017-10-06 00:20:10 +00:00 committed by Android (Google) Code Review
commit 8d7af382bb
3 changed files with 0 additions and 5 deletions

View file

@ -1,6 +1,3 @@
# For /sys/qemu_trace files in the emulator.
allow domain sysfs_writable:dir search;
allow domain sysfs_writable:file rw_file_perms;
allow domain qemu_device:chr_file rw_file_perms;
get_prop(domain, qemu_prop)

View file

@ -1,2 +1 @@
type qemud_socket, file_type;
type sysfs_writable, fs_type, sysfs_type, mlstrustedobject;

View file

@ -15,7 +15,6 @@
/dev/ttyGF[0-9]* u:object_r:serial_device:s0
/dev/ttyS2 u:object_r:console_device:s0
/system/bin/qemud u:object_r:qemud_exec:s0
/sys/qemu_trace(/.*)? u:object_r:sysfs_writable:s0
/system/etc/init.goldfish.sh u:object_r:goldfish_setup_exec:s0
/system/vendor/bin/init.ranchu-core.sh u:object_r:goldfish_setup_exec:s0
/system/vendor/bin/init.ranchu-net.sh u:object_r:goldfish_setup_exec:s0