From 8a4d5bd3b523a5e5dce45bdffc94bb1c3500efeb Mon Sep 17 00:00:00 2001 From: George Chang Date: Mon, 22 Nov 2021 14:33:14 +0800 Subject: [PATCH] Fix nfc avc denials for sysfs_vendor_sched 11-19 12:38:54.416 2631 2631 I com.android.nfc: type=1400 audit(0.0:404): avc: denied { search } for comm=4173796E635461736B202331 name="vendor_sched" dev="sysfs" ino=45736 scontext=u:r:nfc:s0 tcontext=u:object_r:sysfs_vendor_sched:s0 tclass=dir permissive=1 Bug: 207062484 Test: check avc without nfc Change-Id: I50507934c071745e257434f512d9dc835790e669 --- tracking_denials/nfc.te | 2 -- whitechapel_pro/nfc.te | 2 ++ 2 files changed, 2 insertions(+), 2 deletions(-) create mode 100644 whitechapel_pro/nfc.te diff --git a/tracking_denials/nfc.te b/tracking_denials/nfc.te index 5033047c..3e17ff52 100644 --- a/tracking_denials/nfc.te +++ b/tracking_denials/nfc.te @@ -1,4 +1,2 @@ # b/205904208 dontaudit nfc zygote:binder { transfer }; -# b/207062484 -dontaudit nfc sysfs_vendor_sched:dir { search }; diff --git a/whitechapel_pro/nfc.te b/whitechapel_pro/nfc.te new file mode 100644 index 00000000..febd851a --- /dev/null +++ b/whitechapel_pro/nfc.te @@ -0,0 +1,2 @@ +allow nfc sysfs_vendor_sched:dir r_dir_perms; +allow nfc sysfs_vendor_sched:file w_file_perms;