crash_dump: don't allow CAP_SYS_PTRACE or CAP_KILL. am: 4d140237b5

am: d583a83327

Change-Id: I40a8da8b67dc54552cae42529c9b51cb25da6290
This commit is contained in:
Josh Gao 2017-02-06 18:53:12 +00:00 committed by android-build-merger
commit 9805f2cde3

View file

@ -1,7 +1,6 @@
type crash_dump, domain;
type crash_dump_exec, exec_type, file_type;
allow crash_dump self:capability { sys_ptrace kill };
allow crash_dump {
domain
-init