sweet: sepolicy: Address more battery secret denials
[ 19.924855] type=1400 audit(1617105165.784:140): avc: denied { getattr } for comm="batterysecret" path="/dev/kmsg" dev="tmpfs" ino=12292 scontext=u:r:batterysecret:s0 tcontext=u:object_r:kmsg_device:s0 tclass=chr_file permissive=0 Signed-off-by: Kuba Wojciechowski <nullbytepl@gmail.com> Change-Id: Icee6cc5f3dfc84864d0bb9bb8af59731f33d64be
This commit is contained in:
parent
7c4b20bb8b
commit
c1b697fec7
2
sepolicy/vendor/batterysecret.te
vendored
2
sepolicy/vendor/batterysecret.te
vendored
@ -27,7 +27,7 @@ allow batterysecret {
|
||||
vendor_sysfs_usbpd_device
|
||||
}:file w_file_perms;
|
||||
|
||||
allow batterysecret kmsg_device:chr_file w_file_perms;
|
||||
allow batterysecret kmsg_device:chr_file rw_file_perms;
|
||||
|
||||
allow batterysecret self:netlink_kobject_uevent_socket create_socket_perms_no_ioctl;
|
||||
|
||||
|
Loading…
Reference in New Issue
Block a user