android_device_xiaomi_sdm66.../sepolicy/vendor/vendor_init.te
pix106 837f5ca200 sdm660-common: sepolicy: Address vendor_init persist_file denials
avc: denied { read } for comm="init" name="persist" dev="mmcblk0p13" ino=47 scontext=u:r:vendor_init:s0 tcontext=u:object_r:persist_file:s0 tclass=lnk_file permissive=0

Signed-off-by: pix106 <sbordenave@gmail.com>
2022-06-06 17:52:42 +02:00

17 lines
562 B
Text

typeattribute vendor_init data_between_core_and_vendor_violators;
allow vendor_init {
camera_data_file
system_data_file
tombstone_data_file
}:dir { create search getattr open read setattr ioctl write add_name remove_name rmdir relabelfrom };
allow vendor_init tee_device:chr_file getattr;
allow vendor_init persist_file:lnk_file r_file_perms;
allow vendor_init proc:file w_file_perms;
get_prop(vendor_init, hal_fingerprint_prop)
set_prop(vendor_init, vendor_camera_prop)
set_prop(vendor_init, vendor_freq_prop)
set_prop(vendor_init, vendor_power_prop)