From dde21fdf57f66bf7f46ebd90e9fc731c2ba87c7a Mon Sep 17 00:00:00 2001 From: Kyle Harrison Date: Thu, 12 Nov 2020 17:10:57 +0000 Subject: [PATCH] universal7580: sepolicy: Fix userspace_reboot prop denials - userspace_reboot_exported_prop - userspace_reboot_config_prop Change-Id: Ibec834df41345d1268b1eea4ae88b2fd5d37dd55 --- sepolicy/bootanim.te | 1 + sepolicy/system_server.te | 3 +++ 2 files changed, 4 insertions(+) create mode 100644 sepolicy/bootanim.te diff --git a/sepolicy/bootanim.te b/sepolicy/bootanim.te new file mode 100644 index 0000000..5fa3368 --- /dev/null +++ b/sepolicy/bootanim.te @@ -0,0 +1 @@ +get_prop(bootanim, userspace_reboot_exported_prop); \ No newline at end of file diff --git a/sepolicy/system_server.te b/sepolicy/system_server.te index 68aba79..f91df76 100644 --- a/sepolicy/system_server.te +++ b/sepolicy/system_server.te @@ -55,3 +55,6 @@ allow system_server sysfs_input:file rw_file_perms; allow system_server proc_input_devices:file r_file_perms; unix_socket_connect(system_server, property, gpsd) + +get_prop(system_server, userspace_reboot_exported_prop); +get_prop(system_server, userspace_reboot_config_prop); -- 2.20.1