Sepolicy : Do not audit untrusted_app_27 to fix avc denials
Add do not audit rule for unrusted_app_27 to fix AVC denials for gpubusy and max_gpuclk props Change-Id: Idc541a0effc6812c12c1ff5024dfd0b6d4171180
This commit is contained in:
		
							
								
								
									
										3
									
								
								generic/vendor/test/untrusted_app_27.te
									
									
									
									
										vendored
									
									
								
							
							
						
						
									
										3
									
								
								generic/vendor/test/untrusted_app_27.te
									
									
									
									
										vendored
									
									
								
							@@ -28,6 +28,9 @@
 | 
			
		||||
#allow untrusted_app_27 clients to access configuration settings
 | 
			
		||||
userdebug_or_eng(`
 | 
			
		||||
allow untrusted_app_27 sysfs_kgsl:dir search;
 | 
			
		||||
dontaudit {
 | 
			
		||||
    untrusted_app_27
 | 
			
		||||
} sysfs_kgsl:dir read;
 | 
			
		||||
r_dir_file(untrusted_app_27, sysfs_kgsl_snapshot);
 | 
			
		||||
r_dir_file(untrusted_app_27, vendor_gles_data_file);
 | 
			
		||||
allow untrusted_app_27 vendor_gles_data_file:dir rw_dir_perms;
 | 
			
		||||
 
 | 
			
		||||
		Reference in New Issue
	
	Block a user