vermeer: sepolicy: Resolve binder neverallow violations in citsensors

- Android 16 QPR1 introduces stricter neverallow rules that prohibit
  binder interactions (call/impersonate/transfer/set_context_mgr) between
  vendor_hal_citsensorservice_xiaomi_default and
  vendor_hal_display_config_hwservice.

Change-Id: Id7acd7b2976c214a4963f59857d9e60836e19137
Signed-off-by: Lunark :3 <jvillaltamatos3007@gmail.com>
This commit is contained in:
Lunark :3
2025-11-25 22:19:51 -05:00
parent 0bea191370
commit 19713be803
2 changed files with 0 additions and 2 deletions

View File

@@ -26,7 +26,6 @@ allow vendor_hal_citsensorservice_xiaomi_default vendor_sysfs_displayfeature:fil
allow vendor_hal_citsensorservice_xiaomi_default vendor_displayfeature_device:chr_file { ioctl open read write };
allow vendor_hal_citsensorservice_xiaomi_default hal_graphics_mapper_hwservice:hwservice_manager find;
allow vendor_hal_citsensorservice_xiaomi_default vendor_hal_display_config_hwservice:hwservice_manager find;
allow vendor_hal_citsensorservice_xiaomi_default vendor_hal_display_config_hwservice:binder { call transfer };
allow vendor_hal_citsensorservice_xiaomi_default vendor_hal_display_config_hwservice:fd *;
allow vendor_hal_citsensorservice_xiaomi_default hal_graphics_composer:binder { call transfer };
allow vendor_hal_citsensorservice_xiaomi_default hal_graphics_composer:fd *;

View File

@@ -1 +0,0 @@
allow vendor_hal_display_config_hwservice vendor_hal_citsensorservice_xiaomi_default:binder transfer;