From cf5550fe6ad39ae1633f78eff985ec1e44786613 Mon Sep 17 00:00:00 2001 From: Tri Vo Date: Tue, 7 Nov 2017 14:18:21 -0800 Subject: [PATCH] Label /sys/devices/soc/{ c179000.i2c c1b5000.i2c } as sysfs_msm_subsys On taimen some of the files under /sys/class/power_supply are symlinks to these dirs. Addresses these denials on taimen: avc: denied { read } for comm="android.hardwar" name="type" dev="sysfs" ino=50110 scontext=u:r:hal_health_default:s0 tcontext=u:object_r:sysfs:s0 tclass=file permissive=0 avc: denied { read } for comm="android.hardwar" name="type" dev="sysfs" ino=48182 scontext=u:r:hal_health_default:s0 tcontext=u:object_r:sysfs:s0 tclass=file permissive=0 Bug: 68962942 Test: builds, boots, files are correctly labeled. Change-Id: I2b972f4f471b54097354d3e490a02300182a8e9a --- sepolicy/vendor/genfs_contexts | 2 ++ 1 file changed, 2 insertions(+) diff --git a/sepolicy/vendor/genfs_contexts b/sepolicy/vendor/genfs_contexts index eac549fe..c5a915c3 100644 --- a/sepolicy/vendor/genfs_contexts +++ b/sepolicy/vendor/genfs_contexts @@ -20,6 +20,8 @@ genfscon sysfs /devices/soc/1da4000.ufshc/clkscale_enable u:object genfscon sysfs /devices/soc/soc:bt_wcn3990 u:object_r:sysfs_bluetooth_writable:s0 genfscon sysfs /devices/soc/a1800000.qcom,rmtfs_rtel_sharedmem u:object_r:sysfs_rmtfs:s0 genfscon sysfs /devices/soc/c17a000.i2c u:object_r:sysfs_msm_subsys:s0 +genfscon sysfs /devices/soc/c179000.i2c u:object_r:sysfs_msm_subsys:s0 +genfscon sysfs /devices/soc/c1b5000.i2c u:object_r:sysfs_msm_subsys:s0 genfscon sysfs /devices/soc/soc:qcom,gpubw u:object_r:sysfs_msm_subsys:s0 genfscon sysfs /devices/soc/800f000.qcom,spmi u:object_r:sysfs_msm_subsys:s0 genfscon sysfs /devices/soc/4080000.qcom,mss u:object_r:sysfs_msm_subsys:s0