From 240f50e8b3d069c5645b3ef04b382c24575136af Mon Sep 17 00:00:00 2001 From: Nick Kralevich <nnk@google.com> Date: Wed, 7 Dec 2016 15:58:39 -0800 Subject: [PATCH] Add TCSETS to unpriv_tty_ioctls Addresses the following denial: avc: denied { ioctl } for comm="top" path="/dev/pts/0" dev="devpts" ino=3 ioctlcmd=5402 scontext=u:r:shell:s0 tcontext=u:object_r:devpts:s0 tclass=chr_file permissive=0 Bug: 33073072 Bug: 7530569 Test: policy compiles. Change-Id: If9178d29f2295be46bb118df00ebf73a6ebc9f81 --- public/ioctl_macros | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/public/ioctl_macros b/public/ioctl_macros index e8cc08683..f7081d576 100644 --- a/public/ioctl_macros +++ b/public/ioctl_macros @@ -49,8 +49,8 @@ define(`unpriv_unix_sock_ioctls', `{ # commonly used TTY ioctls # merge with unpriv_unix_sock_ioctls? define(`unpriv_tty_ioctls', `{ - TIOCOUTQ FIOCLEX TCGETS TIOCGWINSZ TIOCSWINSZ TIOCSCTTY TCSETSW TCFLSH - TIOCSPGRP TIOCGPGRP + TIOCOUTQ FIOCLEX TCGETS TCSETS TIOCGWINSZ TIOCSWINSZ TIOCSCTTY TCSETSW + TCFLSH TIOCSPGRP TIOCGPGRP }') # point to point ioctls -- GitLab