From b9a2444b1bcaca177ee0fcec449d54d96b632e0e Mon Sep 17 00:00:00 2001 From: Adam Shih Date: Thu, 1 Dec 2022 08:47:12 +0800 Subject: [PATCH] update error on ROM Bug: 260922186 Bug: 260921736 Bug: 260921579 Bug: 260921340 Bug: 260922184 Bug: 260922162 Bug: 260922442 Bug: 260922187 Bug: 260922048 Bug: 260922185 Test: pts-tradefed run pts -m PtsSELinuxTest Change-Id: I062c00075e09874ede185ab1f114aa1ade16991b --- tracking_denials/euiccpixel_app.te | 7 +++++++ tracking_denials/hal_graphics_composer_default.te | 8 ++++++++ tracking_denials/hal_neuralnetworks_armnn.te | 5 +++++ tracking_denials/hal_nfc_default.te | 5 +++++ tracking_denials/hal_power_stats_default.te | 11 +++++++++++ tracking_denials/platform_app.te | 2 ++ tracking_denials/priv_app.te | 3 +++ tracking_denials/secure_element.te | 2 ++ tracking_denials/system_app.te | 5 +++++ tracking_denials/zygote.te | 6 ++++++ 10 files changed, 54 insertions(+) diff --git a/tracking_denials/euiccpixel_app.te b/tracking_denials/euiccpixel_app.te index 20f0dcac..6874c630 100644 --- a/tracking_denials/euiccpixel_app.te +++ b/tracking_denials/euiccpixel_app.te @@ -40,3 +40,10 @@ dontaudit euiccpixel_app priv_app:binder { call }; dontaudit euiccpixel_app priv_app:binder { transfer }; dontaudit euiccpixel_app secure_element:binder { call }; dontaudit euiccpixel_app secure_element:binder { transfer }; +# b/260922186 +dontaudit euiccpixel_app init:unix_stream_socket { connectto }; +dontaudit euiccpixel_app priv_app:binder { call }; +dontaudit euiccpixel_app priv_app:binder { transfer }; +dontaudit euiccpixel_app property_socket:sock_file { write }; +dontaudit euiccpixel_app secure_element:binder { call }; +dontaudit euiccpixel_app secure_element:binder { transfer }; diff --git a/tracking_denials/hal_graphics_composer_default.te b/tracking_denials/hal_graphics_composer_default.te index e23513c7..daec6471 100644 --- a/tracking_denials/hal_graphics_composer_default.te +++ b/tracking_denials/hal_graphics_composer_default.te @@ -6,3 +6,11 @@ dontaudit hal_graphics_composer_default sysfs_leds:file { getattr }; dontaudit hal_graphics_composer_default sysfs_leds:file { open }; dontaudit hal_graphics_composer_default sysfs_leds:file { read }; dontaudit hal_graphics_composer_default vndbinder_device:chr_file { ioctl }; +# b/260921736 +dontaudit hal_graphics_composer_default hal_graphics_composer_default:netlink_kobject_uevent_socket { read }; +dontaudit hal_graphics_composer_default hal_power_default:binder { call }; +dontaudit hal_graphics_composer_default sysfs_leds:dir { search }; +dontaudit hal_graphics_composer_default sysfs_leds:file { getattr }; +dontaudit hal_graphics_composer_default sysfs_leds:file { open }; +dontaudit hal_graphics_composer_default sysfs_leds:file { read }; +dontaudit hal_graphics_composer_default vndbinder_device:chr_file { ioctl }; diff --git a/tracking_denials/hal_neuralnetworks_armnn.te b/tracking_denials/hal_neuralnetworks_armnn.te index 5f8b8438..cdf97659 100644 --- a/tracking_denials/hal_neuralnetworks_armnn.te +++ b/tracking_denials/hal_neuralnetworks_armnn.te @@ -5,3 +5,8 @@ dontaudit hal_neuralnetworks_armnn default_prop:file { getattr }; dontaudit hal_neuralnetworks_armnn default_prop:file { map }; dontaudit hal_neuralnetworks_armnn default_prop:file { open }; dontaudit hal_neuralnetworks_armnn default_prop:file { read }; +# b/260921579 +dontaudit hal_neuralnetworks_armnn default_prop:file { getattr }; +dontaudit hal_neuralnetworks_armnn default_prop:file { map }; +dontaudit hal_neuralnetworks_armnn default_prop:file { open }; +dontaudit hal_neuralnetworks_armnn default_prop:file { read }; diff --git a/tracking_denials/hal_nfc_default.te b/tracking_denials/hal_nfc_default.te index eecee98a..8333fe6f 100644 --- a/tracking_denials/hal_nfc_default.te +++ b/tracking_denials/hal_nfc_default.te @@ -3,3 +3,8 @@ dontaudit hal_nfc_default vendor_nfc_prop:file { getattr }; dontaudit hal_nfc_default vendor_nfc_prop:file { map }; dontaudit hal_nfc_default vendor_nfc_prop:file { open }; dontaudit hal_nfc_default vendor_nfc_prop:file { read }; +# b/260921340 +dontaudit hal_nfc_default vendor_nfc_prop:file { getattr }; +dontaudit hal_nfc_default vendor_nfc_prop:file { map }; +dontaudit hal_nfc_default vendor_nfc_prop:file { open }; +dontaudit hal_nfc_default vendor_nfc_prop:file { read }; diff --git a/tracking_denials/hal_power_stats_default.te b/tracking_denials/hal_power_stats_default.te index 3a601722..d507ef93 100644 --- a/tracking_denials/hal_power_stats_default.te +++ b/tracking_denials/hal_power_stats_default.te @@ -13,3 +13,14 @@ dontaudit hal_power_stats_default sysfs_iio_devices:dir { search }; dontaudit hal_power_stats_default sysfs_leds:dir { search }; dontaudit hal_power_stats_default sysfs_leds:file { open }; dontaudit hal_power_stats_default sysfs_leds:file { read }; +# b/260922184 +dontaudit hal_power_stats_default powerstats_vendor_data_file:dir { search }; +dontaudit hal_power_stats_default sysfs_cpu:file { getattr }; +dontaudit hal_power_stats_default sysfs_cpu:file { open }; +dontaudit hal_power_stats_default sysfs_cpu:file { read }; +dontaudit hal_power_stats_default sysfs_iio_devices:dir { open }; +dontaudit hal_power_stats_default sysfs_iio_devices:dir { read }; +dontaudit hal_power_stats_default sysfs_iio_devices:dir { search }; +dontaudit hal_power_stats_default sysfs_leds:dir { search }; +dontaudit hal_power_stats_default sysfs_leds:file { open }; +dontaudit hal_power_stats_default sysfs_leds:file { read }; diff --git a/tracking_denials/platform_app.te b/tracking_denials/platform_app.te index 327822ad..4a540388 100644 --- a/tracking_denials/platform_app.te +++ b/tracking_denials/platform_app.te @@ -1,2 +1,4 @@ # b/260768402 dontaudit platform_app default_android_service:service_manager { find }; +# b/260922162 +dontaudit platform_app default_android_service:service_manager { find }; diff --git a/tracking_denials/priv_app.te b/tracking_denials/priv_app.te index 86f04c9c..85b3527b 100644 --- a/tracking_denials/priv_app.te +++ b/tracking_denials/priv_app.te @@ -10,3 +10,6 @@ dontaudit priv_app privapp_data_file:file { setattr }; # b/260768358 dontaudit priv_app default_android_service:service_manager { find }; dontaudit priv_app euiccpixel_app:binder { transfer }; +# b/260922442 +dontaudit priv_app default_android_service:service_manager { find }; +dontaudit priv_app euiccpixel_app:binder { transfer }; diff --git a/tracking_denials/secure_element.te b/tracking_denials/secure_element.te index 1edd5210..c5599af5 100644 --- a/tracking_denials/secure_element.te +++ b/tracking_denials/secure_element.te @@ -1,2 +1,4 @@ # b/260768672 dontaudit secure_element euiccpixel_app:binder { transfer }; +# b/260922187 +dontaudit secure_element euiccpixel_app:binder { transfer }; diff --git a/tracking_denials/system_app.te b/tracking_denials/system_app.te index a80647c6..4eb305fc 100644 --- a/tracking_denials/system_app.te +++ b/tracking_denials/system_app.te @@ -4,3 +4,8 @@ dontaudit system_app hal_wlc_hwservice:hwservice_manager { find }; # b/260768379 dontaudit system_app default_android_service:service_manager { find }; dontaudit system_app vendor_default_prop:file { open }; +# b/260922048 +dontaudit system_app default_android_service:service_manager { find }; +dontaudit system_app vendor_default_prop:file { getattr }; +dontaudit system_app vendor_default_prop:file { map }; +dontaudit system_app vendor_default_prop:file { open }; diff --git a/tracking_denials/zygote.te b/tracking_denials/zygote.te index fae90907..d9733764 100644 --- a/tracking_denials/zygote.te +++ b/tracking_denials/zygote.te @@ -6,3 +6,9 @@ dontaudit zygote vendor_file:file { getattr }; dontaudit zygote vendor_file:file { map }; dontaudit zygote vendor_file:file { open }; dontaudit zygote vendor_file:file { read }; +# b/260922185 +dontaudit zygote vendor_file:file { execute }; +dontaudit zygote vendor_file:file { getattr }; +dontaudit zygote vendor_file:file { map }; +dontaudit zygote vendor_file:file { open }; +dontaudit zygote vendor_file:file { read };