From 6c3fdf8a05d03e0773d19d539fab172a90f2955c Mon Sep 17 00:00:00 2001 From: Allen Chu Date: Sat, 18 Jan 2020 09:30:03 +0800 Subject: [PATCH] [ALPS03804621] [P Migration] Fix SEPolicy violated [Detail] Remove read/write system_data and radio_data declaration MTK-Commit-Id: 35a543208e84f95989f7f01f9c2ed766c5aab457 Change-Id: I135686e96cf214ca67523256aaa21e96f4fca3f0 CR-Id: ALPS03804621 Feature: DSDS (Dual SIM Dual Standby) Framework-Common Framework(RIL) --- non_plat/mtkfusionrild.te | 11 ++++++----- non_plat/mtkrild.te | 11 ++++++----- 2 files changed, 12 insertions(+), 10 deletions(-) diff --git a/non_plat/mtkfusionrild.te b/non_plat/mtkfusionrild.te index 20561bd..229cc53 100644 --- a/non_plat/mtkfusionrild.te +++ b/non_plat/mtkfusionrild.te @@ -45,12 +45,13 @@ allow rild bluetooth_efs_file:dir r_dir_perms; # Allow access permission to dir/files # (radio data/system data/proc/etc) -typeattribute rild data_between_core_and_vendor_violators; -allow rild radio_data_file:dir rw_dir_perms; -allow rild radio_data_file:file create_file_perms; +# Violate Android P rule +#allow rild radio_data_file:dir rw_dir_perms; +#allow rild radio_data_file:file create_file_perms; allow rild sdcard_type:dir r_dir_perms; -allow rild system_data_file:dir r_dir_perms; -allow rild system_data_file:file r_file_perms; +# Violate Android P rule +#allow rild system_data_file:dir r_dir_perms; +#allow rild system_data_file:file r_file_perms; allow rild system_file:file x_file_perms; allow rild proc:file rw_file_perms; allow rild proc_net:file w_file_perms; diff --git a/non_plat/mtkrild.te b/non_plat/mtkrild.te index 69d9500..922fa10 100644 --- a/non_plat/mtkrild.te +++ b/non_plat/mtkrild.te @@ -52,12 +52,13 @@ allow mtkrild bluetooth_efs_file:dir r_dir_perms; # Allow access permission to dir/files # (radio data/system data/proc/etc) -typeattribute mtkrild data_between_core_and_vendor_violators; -allow mtkrild radio_data_file:dir rw_dir_perms; -allow mtkrild radio_data_file:file create_file_perms; +# Violate Android P rule +#allow mtkrild radio_data_file:dir rw_dir_perms; +#allow mtkrild radio_data_file:file create_file_perms; allow mtkrild sdcard_type:dir r_dir_perms; -allow mtkrild system_data_file:dir r_dir_perms; -allow mtkrild system_data_file:file r_file_perms; +# Violate Android P rule +#allow mtkrild system_data_file:dir r_dir_perms; +#allow mtkrild system_data_file:file r_file_perms; allow mtkrild system_file:file x_file_perms; allow mtkrild proc:file rw_file_perms; allow mtkrild proc_net:file w_file_perms;