commit | 669a97730376e919813411fcfdddac35bd7236ae | [log] [tgz] |
---|---|---|
author | Stephen Smalley <sds@tycho.nsa.gov> | Fri Oct 03 09:53:45 2014 -0400 |
committer | Nick Kralevich <nnk@google.com> | Mon Oct 06 23:31:18 2014 +0000 |
tree | 6beb4b2b8dc563b18136246b9405c72a4ac2e9ce | |
parent | 59bc00ab898bc4d06593051b0fe4e702ca2569e2 [diff] |
Do not allow isolated_app to directly open app data files. Only allow it to read/write/stat already open app data files received via Binder or local socket IPC. Change-Id: I3c096607a74fd0f360d41f3e6f06535ca00c58ec Signed-off-by: Stephen Smalley <sds@tycho.nsa.gov>