diff --git a/tracking_denials/hal_uwb_vendor_default.te b/tracking_denials/hal_uwb_vendor_default.te index 2aa2dea0..7fd11e03 100644 --- a/tracking_denials/hal_uwb_vendor_default.te +++ b/tracking_denials/hal_uwb_vendor_default.te @@ -1,2 +1,6 @@ # b/204718220 dontaudit hal_uwb_vendor_default default_android_service:service_manager { add }; +# b/206045367 +dontaudit hal_uwb_vendor_default hal_uwb_vendor_default:capability { net_admin }; +dontaudit hal_uwb_vendor_default zygote:binder { call }; +dontaudit hal_uwb_vendor_default zygote:binder { transfer }; diff --git a/tracking_denials/logger_app.te b/tracking_denials/logger_app.te index e9513bad..134ed8db 100644 --- a/tracking_denials/logger_app.te +++ b/tracking_denials/logger_app.te @@ -13,3 +13,12 @@ dontaudit logger_app radio_vendor_data_file:dir { search }; dontaudit logger_app radio_vendor_data_file:dir { setattr }; dontaudit logger_app radio_vendor_data_file:dir { write }; dontaudit logger_app radio_vendor_data_file:file { unlink }; +# b/206045604 +dontaudit logger_app radio_vendor_data_file:dir { add_name }; +dontaudit logger_app radio_vendor_data_file:dir { create }; +dontaudit logger_app radio_vendor_data_file:dir { rmdir }; +dontaudit logger_app radio_vendor_data_file:file { create }; +dontaudit logger_app radio_vendor_data_file:file { getattr }; +dontaudit logger_app radio_vendor_data_file:file { setattr }; +dontaudit logger_app radio_vendor_data_file:file { write open }; +dontaudit logger_app vendor_gps_file:dir { search }; diff --git a/tracking_denials/system_server.te b/tracking_denials/system_server.te index 03229278..a00372c9 100644 --- a/tracking_denials/system_server.te +++ b/tracking_denials/system_server.te @@ -1,2 +1,4 @@ # b/205904404 dontaudit system_server zygote:binder { call }; +# b/206045368 +dontaudit system_server zygote:binder { transfer }; diff --git a/tracking_denials/vendor_init.te b/tracking_denials/vendor_init.te index ae8feca2..69593d59 100644 --- a/tracking_denials/vendor_init.te +++ b/tracking_denials/vendor_init.te @@ -3,3 +3,8 @@ dontaudit vendor_init vendor_nfc_prop:property_service { set }; dontaudit vendor_init vendor_secure_element_prop:property_service { set }; # b/205656950 dontaudit vendor_init thermal_link_device:file { create }; +# b/206045605 +dontaudit vendor_init vendor_modem_prop:file { getattr }; +dontaudit vendor_init vendor_modem_prop:file { map }; +dontaudit vendor_init vendor_modem_prop:file { open }; +dontaudit vendor_init vendor_modem_prop:file { read }; diff --git a/tracking_denials/zygote.te b/tracking_denials/zygote.te index 7ec594d4..328a954b 100644 --- a/tracking_denials/zygote.te +++ b/tracking_denials/zygote.te @@ -12,3 +12,13 @@ dontaudit zygote nfc:binder { call }; dontaudit zygote servicemanager:binder { call }; dontaudit zygote system_server:binder { call }; dontaudit zygote system_server:binder { transfer }; +# b/206045471 +dontaudit zygote hal_uwb_vendor_default:binder { call }; +dontaudit zygote hal_uwb_vendor_default:binder { transfer }; +dontaudit zygote radio:binder { call }; +dontaudit zygote user_profile_data_file:file { getattr }; +dontaudit zygote vendor_file:file { execute }; +dontaudit zygote vendor_file:file { getattr }; +dontaudit zygote vendor_file:file { map }; +dontaudit zygote vendor_file:file { open }; +dontaudit zygote vendor_file:file { read };