sepolicy: qti: Address fsck denial
type=1400 audit(1662729171.862:3274): avc: denied { sys_admin } for comm="e2fsck" capability=21 scontext=u:r:fsck:s0 tcontext=u:r:fsck:s0 tclass=capability permissive=0
type=1400 audit(0.0:9): avc: denied { kill } for capability=5 scontext=u:r:fsck:s0 tcontext=u:r:fsck:s0 tclass=capability permissive=0
This commit is contained in:
1
sepolicy/qti/vendor/fsck.te
vendored
1
sepolicy/qti/vendor/fsck.te
vendored
@@ -1 +1,2 @@
|
|||||||
|
allow fsck self:capability { sys_admin kill };
|
||||||
dontaudit fsck self:capability { dac_override dac_read_search };
|
dontaudit fsck self:capability { dac_override dac_read_search };
|
||||||
|
|||||||
Reference in New Issue
Block a user