am 29d0d406: Add the ability to write shell files to the untrusted_app domain.

* commit '29d0d40668e686adc91cdfbf0d083e71ed82bac6':
  Add the ability to write shell files to the untrusted_app domain.
This commit is contained in:
Geremy Condra 2013-08-16 17:14:13 -07:00 committed by Android Git Automerger
commit 553bafeff9

View file

@ -44,5 +44,8 @@ allow untrusted_app devpts:chr_file rw_file_perms;
# running "adb install foo.apk".
# TODO: Long term, we don't want apps probing into shell data files.
# Figure out a way to remove these rules.
allow untrusted_app shell_data_file:file r_file_perms;
# XXX Adding writing to shell_data_file to fix 10290009; this needs a real fix,
# as allowing apps to write shell data files is a significant possible security
# vuln
allow untrusted_app shell_data_file:file rw_file_perms;
allow untrusted_app shell_data_file:dir r_dir_perms;