From 4de8dd15b35bf44d74831cb461b61f3756e325d3 Mon Sep 17 00:00:00 2001 From: boedhack99 Date: Fri, 15 Jul 2022 21:48:31 +0700 Subject: [PATCH] sdm660-common: sepolicy: More fix Iorap denials * W FinalizerDaemon: type=1400 audit(0.0:10): avc: denied { getopt } for path=/dev/socket/usap_pool_primary scontext=u:r:permissioncontroller_app:s0:c122,c256,c512,c768 tcontext=u:r:zygote:s0 tclass=unix_stream_socket permissive=0 app=com.android.permissioncontroller Change-Id: Idc9cf242578412846e3f770a118fefc6fb5eda29 Signed-off-by: pix106 --- sepolicy/private/permissioncontroller_app.te | 1 + 1 file changed, 1 insertion(+) create mode 100755 sepolicy/private/permissioncontroller_app.te diff --git a/sepolicy/private/permissioncontroller_app.te b/sepolicy/private/permissioncontroller_app.te new file mode 100755 index 00000000..e915b9da --- /dev/null +++ b/sepolicy/private/permissioncontroller_app.te @@ -0,0 +1 @@ +allow permissioncontroller_app zygote:unix_stream_socket { getopt };