From ba1439d10aad8295d11922087e2f3f6c8c6faac3 Mon Sep 17 00:00:00 2001 From: Siqi Lin Date: Fri, 2 Mar 2018 15:06:23 -0800 Subject: [PATCH] sepolicy: allow vendor_init to write to /proc/sysrq-trigger Bug: 73088609 Test: manual - trigger crash from app Change-Id: I045169d7ea6a38d681dc6826117e505cd20aadd0 --- sepolicy/vendor/vendor_init.te | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/sepolicy/vendor/vendor_init.te b/sepolicy/vendor/vendor_init.te index dbc56673..549a668f 100644 --- a/sepolicy/vendor/vendor_init.te +++ b/sepolicy/vendor/vendor_init.te @@ -19,6 +19,11 @@ allow vendor_init debugfs_clk:file w_file_perms; allow vendor_init proc_uid_cpupower:file write; dontaudit vendor_init kernel:system module_request; +# Allow vendor_init to write to /proc/sysrq-trigger on userdebug and eng builds +userdebug_or_eng(` + allow vendor_init proc_sysrq:file w_file_perms; +') + set_prop(vendor_init, bluetooth_prop) set_prop(vendor_init, camera_prop) set_prop(vendor_init, modem_diag_prop)