commit | aa3ac9fafd693374f7c5c78f172d323103c74fa1 | [log] [tgz] |
---|---|---|
author | Kelvin Zhang <zhangkelvin@google.com> | Tue Sep 06 02:10:26 2022 +0000 |
committer | Kelvin Zhang <zhangkelvin@google.com> | Tue Sep 06 17:11:54 2022 +0000 |
tree | 08294492b20c7ab072b91b7c6b88f04fe9c570e4 | |
parent | 853085bd65fc4f68b4b3ad302ff575090bc41323 [diff] |
Fix io_uring permission denial for snapuserd Starting with https://github.com/torvalds/linux/commit/91a9ab7c942aaa40ac5957eebe71ddae30b2a49c , calling io_uring_setup will need selinux permission to create anon inodes. Test: th Bug: 244785938 Change-Id: I351983fefabe0f6fdaf9272506ea9dd24bc083a9
diff --git a/private/snapuserd.te b/private/snapuserd.te index 2e2c473..1be5a5e 100644 --- a/private/snapuserd.te +++ b/private/snapuserd.te
@@ -53,3 +53,5 @@ -snapuserd -init } snapuserd_prop:property_service set; + +allow snapuserd self:anon_inode create_file_perms;