update error on ROM 9420981

Bug: 263185135
Bug: 263184738
Bug: 263185136
Bug: 263185161
Bug: 263185431
Bug: 263185547
Bug: 263185432
Bug: 263185565
Bug: 263184920
Bug: 263185566
Test: pts-tradefed run pts -m PtsSELinuxTest
Change-Id: Ia305204ccda294f7ad38edb669c85907485e4db3
This commit is contained in:
Adam Shih 2022-12-20 08:38:41 +08:00
parent be72019a1c
commit 2682fc7fc4
10 changed files with 52 additions and 0 deletions

View file

@ -60,3 +60,5 @@ dontaudit hal_camera_default vndbinder_device:chr_file { open };
dontaudit hal_camera_default vndbinder_device:chr_file { read };
dontaudit hal_camera_default vndbinder_device:chr_file { write };
dontaudit hal_camera_default vndservicemanager:binder { call };
# b/263185135
dontaudit hal_camera_default system_server:binder { transfer };

View file

@ -0,0 +1,7 @@
# b/263184738
dontaudit hal_graphics_composer_default vendor_hwc_log_file:dir { search };
dontaudit hal_graphics_composer_default vendor_hwc_log_file:file { append };
dontaudit hal_graphics_composer_default vendor_hwc_log_file:file { getattr };
dontaudit hal_graphics_composer_default vendor_hwc_log_file:file { open };
dontaudit hal_graphics_composer_default vendor_hwc_log_file:file { write };
dontaudit hal_graphics_composer_default vendor_log_file:dir { search };

View file

@ -1,2 +1,4 @@
# b/262794939
dontaudit hbmsvmanager_app hal_pixel_display_service:service_manager { find };
# b/263185136
dontaudit hbmsvmanager_app hal_graphics_composer_default:binder { call };

View file

@ -18,3 +18,5 @@ dontaudit kernel system_bootstrap_lib_file:file { getattr };
dontaudit kernel system_dlkm_file:dir { getattr };
dontaudit kernel vendor_fw_file:dir { getattr };
dontaudit kernel vendor_fw_file:dir { read };
# b/263185161
dontaudit kernel kernel:capability { net_bind_service };

View file

@ -15,3 +15,5 @@ dontaudit mediacodec_google vndbinder_device:chr_file { map };
dontaudit mediacodec_google vndbinder_device:chr_file { open };
dontaudit mediacodec_google vndbinder_device:chr_file { read };
dontaudit mediacodec_google vndbinder_device:chr_file { write };
# b/263185431
dontaudit mediacodec_google nfc:binder { transfer };

3
tracking_denials/nfc.te Normal file
View file

@ -0,0 +1,3 @@
# b/263185547
dontaudit nfc mediacodec_google:binder { call };
dontaudit nfc mediacodec_google:binder { transfer };

View file

@ -20,3 +20,5 @@ dontaudit priv_app vendor_file:file { open };
dontaudit priv_app vendor_file:file { read };
# b/262455954
dontaudit priv_app euiccpixel_app:binder { call };
# b/263185432
dontaudit priv_app privapp_data_file:file { unlink };

View file

@ -0,0 +1,25 @@
# b/263185565
dontaudit rlsservice aoc_device:chr_file { getattr };
dontaudit rlsservice aoc_device:chr_file { open };
dontaudit rlsservice aoc_device:chr_file { read write };
dontaudit rlsservice apex_info_file:file { getattr };
dontaudit rlsservice apex_info_file:file { open };
dontaudit rlsservice apex_info_file:file { read };
dontaudit rlsservice apex_info_file:file { watch };
dontaudit rlsservice device:dir { read };
dontaudit rlsservice device:dir { watch };
dontaudit rlsservice rls_service:service_manager { add };
dontaudit rlsservice sysfs_leds:dir { search };
dontaudit rlsservice sysfs_leds:file { open };
dontaudit rlsservice sysfs_leds:file { read };
dontaudit rlsservice vendor_camera_prop:file { getattr };
dontaudit rlsservice vendor_camera_prop:file { map };
dontaudit rlsservice vendor_camera_prop:file { open };
dontaudit rlsservice vendor_camera_prop:file { read };
dontaudit rlsservice vndbinder_device:chr_file { ioctl };
dontaudit rlsservice vndbinder_device:chr_file { map };
dontaudit rlsservice vndbinder_device:chr_file { open };
dontaudit rlsservice vndbinder_device:chr_file { read };
dontaudit rlsservice vndbinder_device:chr_file { write };
dontaudit rlsservice vndservicemanager:binder { call };
dontaudit rlsservice vndservicemanager:binder { transfer };

View file

@ -21,3 +21,5 @@ dontaudit system_server mediacodec_google:binder { call };
dontaudit system_server mediacodec_google:binder { transfer };
dontaudit system_server mediacodec_samsung:binder { call };
dontaudit system_server mediacodec_samsung:binder { transfer };
# b/263184920
dontaudit system_server hal_camera_default:binder { transfer };

View file

@ -4,3 +4,8 @@ dontaudit vendor_init vendor_init:capability2 { block_suspend };
dontaudit vendor_init vendor_init:lockdown { integrity };
# b/260522244
dontaudit vendor_init sg_device:chr_file { getattr };
# b/263185566
dontaudit vendor_init bootdevice_sysdev:file { create };
dontaudit vendor_init modem_img_file:filesystem { getattr };
dontaudit vendor_init proc_dirty:file { write };
dontaudit vendor_init proc_sched:file { write };