Remove access to /proc/net/{tcp,udp}
Remove these files from proc_net_type. Domains that need access must have permission explicitly granted. Neverallow app access except the shell domain. Bug: 114475727 Test: atest CtsLibcoreOjTestCases Test: netstat, lsof Test: adb bugreport Change-Id: I2304e3e98c0d637af78a361569466aa2fbe79fa0
Showing
- private/compat/26.0/26.0.cil 1 addition, 1 deletionprivate/compat/26.0/26.0.cil
- private/compat/27.0/27.0.cil 1 addition, 1 deletionprivate/compat/27.0/27.0.cil
- private/compat/28.0/28.0.cil 1 addition, 1 deletionprivate/compat/28.0/28.0.cil
- private/dumpstate.te 1 addition, 0 deletionsprivate/dumpstate.te
- private/genfs_contexts 2 additions, 2 deletionsprivate/genfs_contexts
- private/shell.te 3 additions, 0 deletionsprivate/shell.te
- public/app.te 5 additions, 0 deletionspublic/app.te
- public/file.te 1 addition, 1 deletionpublic/file.te
Loading
Please register or sign in to comment