am 29d0d406
: Add the ability to write shell files to the untrusted_app domain.
* commit '29d0d40668e686adc91cdfbf0d083e71ed82bac6': Add the ability to write shell files to the untrusted_app domain.
This commit is contained in:
commit
553bafeff9
1 changed files with 4 additions and 1 deletions
|
@ -44,5 +44,8 @@ allow untrusted_app devpts:chr_file rw_file_perms;
|
|||
# running "adb install foo.apk".
|
||||
# TODO: Long term, we don't want apps probing into shell data files.
|
||||
# Figure out a way to remove these rules.
|
||||
allow untrusted_app shell_data_file:file r_file_perms;
|
||||
# XXX Adding writing to shell_data_file to fix 10290009; this needs a real fix,
|
||||
# as allowing apps to write shell data files is a significant possible security
|
||||
# vuln
|
||||
allow untrusted_app shell_data_file:file rw_file_perms;
|
||||
allow untrusted_app shell_data_file:dir r_dir_perms;
|
||||
|
|
Loading…
Reference in a new issue