From 81b7675e8cfcc84561f6f702059ee7caebe1c6b6 Mon Sep 17 00:00:00 2001 From: Jeff Vander Stoep <jeffv@google.com> Date: Tue, 26 Apr 2016 10:21:51 -0700 Subject: [PATCH] Whitelist additional unix socket ioctl TIOCGWINSZ = 0x00005413 avc: denied { ioctl } for comm="ls" path="socket:[362628]" dev="sockfs" ino=362628 ioctlcmd=5413 scontext=u:r:shell:s0 tcontext=u:r:adbd:s0 tclass=unix_stream_socket permissive=0 Bug: 28171804 Change-Id: I460e2469730d0cd90d714f30803ef849317d4be7 --- ioctl_macros | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/ioctl_macros b/ioctl_macros index 2b5db3175..0831db8c7 100644 --- a/ioctl_macros +++ b/ioctl_macros @@ -41,7 +41,7 @@ SIOCIWFIRSTPRIV-SIOCIWLASTPRIV }') # commonly used ioctls on unix sockets -define(`unpriv_unix_sock_ioctls', `{TIOCOUTQ FIOCLEX TCGETS TIOCSWINSZ FIONREAD }') +define(`unpriv_unix_sock_ioctls', `{TIOCOUTQ FIOCLEX TCGETS TIOCGWINSZ TIOCSWINSZ FIONREAD }') # commonly used TTY ioctls define(`unpriv_tty_ioctls', `{ TIOCOUTQ FIOCLEX }') -- GitLab