From 182d42df95eb7d9c054e50f30d724f22032e762a Mon Sep 17 00:00:00 2001 From: sreeshankark Date: Sat, 21 Oct 2023 19:21:54 +0530 Subject: [PATCH] sepolicy: qti: Allow fsck to get attribute from sysfs file type=1400 audit(0.0:7): avc: denied { getattr } for path="/sys/devices/platform/soc/1d84000.ufshc/host0/target0:0:0/0:0:0:0/block/sda/sda16/partition" dev="sysfs" ino=60454 scontext=u:r:fsck:s0 tcontext=u:object_r:sysfs:s0 tclass=file permissive=0 --- sepolicy/qti/vendor/fsck.te | 2 ++ 1 file changed, 2 insertions(+) diff --git a/sepolicy/qti/vendor/fsck.te b/sepolicy/qti/vendor/fsck.te index 9725b51..36e6f89 100644 --- a/sepolicy/qti/vendor/fsck.te +++ b/sepolicy/qti/vendor/fsck.te @@ -1,2 +1,4 @@ allow fsck self:capability { sys_admin kill }; +allow fsck sysfs:file getattr; + dontaudit fsck self:capability { dac_override dac_read_search };