1. seandroid
  2. Untitled project
  3. external/sepolicy
  4. Pull requests

Pull requests

#4 Declined
Repository
Deleted repository
Branch
seandroid-security-debuggerd-zygote (d37e419c5d04)
Repository
external/sepolicy
Branch
seandroid

Allow zygote/debuggerd search access to policy dir

Author
  1. William Roberts
Reviewers
Description

Looks like Zygote and debuggerd go down when you deny them any access.

Comments (3)

  1. seandroid repo owner

    Possibly just allow domain security_file:dir { search getattr }; so that anything can search/stat the directory. And likewise allow domain security_file:file getattr; to allow stating any files within it for things that like to walk the filesystem.