bootanim: remove access to vendor_file type

This domain should instead depend on same_process_hal_file, to which all
domains already have access.

Bug: 70990973
Test: emulator -gpu guest; boots with no denials from bootanim.
Change-Id: Ic577dd3c3895f8471d68a0da245d37a17cd6a3f3
This commit is contained in:
Tri Vo 2018-01-10 09:09:00 -08:00
parent 9eba210e23
commit c727d6d40e
1 changed files with 0 additions and 1 deletions

View File

@ -3,7 +3,6 @@ allow bootanim ashmem_device:chr_file execute;
#TODO: This can safely be ignored until b/62954877 is fixed #TODO: This can safely be ignored until b/62954877 is fixed
dontaudit bootanim system_data_file:dir read; dontaudit bootanim system_data_file:dir read;
allow bootanim vendor_file:file { execute getattr open read };
allow bootanim graphics_device:chr_file { read ioctl open }; allow bootanim graphics_device:chr_file { read ioctl open };
set_prop(bootanim, qemu_prop) set_prop(bootanim, qemu_prop)