From 065046fd6da83cdc3c685f84091a4680fca1ffdf Mon Sep 17 00:00:00 2001 From: "Kevin F. Haggerty" Date: Sun, 6 Sep 2020 04:00:02 -0600 Subject: [PATCH] msm8974-common: sepolicy: Allow fsck_untrusted appropriate access to sysfs_dm avc: denied { search } for name="dm-0" dev="sysfs" ino=33209 scontext=u:r:fsck_untrusted:s0 tcontext=u:object_r:sysfs_dm:s0 tclass=dir permissive=0 avc: denied { read } for name="name" dev="sysfs" ino=33374 scontext=u:r:fsck_untrusted:s0 tcontext=u:object_r:sysfs_dm:s0 tclass=file permissive=0 Change-Id: I38d74974d23f94ddac4c45f1d5470288d4ee8a6f --- sepolicy/common/fsck_untrusted.te | 2 ++ 1 file changed, 2 insertions(+) diff --git a/sepolicy/common/fsck_untrusted.te b/sepolicy/common/fsck_untrusted.te index 84a914d..933d82d 100644 --- a/sepolicy/common/fsck_untrusted.te +++ b/sepolicy/common/fsck_untrusted.te @@ -1,3 +1,5 @@ +r_dir_file(fsck_untrusted, sysfs_dm) + allow fsck_untrusted block_device:dir getattr; # /data/media