Merge "Adds caller check to getAllPackages()" into rvc-qpr-dev am: ec4ba204d8

Original change: https://googleplex-android-review.googlesource.com/c/platform/frameworks/base/+/13617976

MUST ONLY BE SUBMITTED BY AUTOMERGER

Change-Id: Iceb77ee1f663833202421151654151893b68ea72
This commit is contained in:
Patrick Baumann
2021-03-02 23:51:52 +00:00
committed by Automerger Merge Worker
2 changed files with 10 additions and 0 deletions

View File

@@ -206,6 +206,12 @@ public class Process {
*/
public static final int SE_UID = 1068;
/**
* Defines the UID/GID for the iorapd.
* @hide
*/
public static final int IORAPD_UID = 1071;
/**
* Defines the UID/GID for the NetworkStack app.
* @hide

View File

@@ -6205,6 +6205,10 @@ public class PackageManagerService extends IPackageManager.Stub
@Override
public List<String> getAllPackages() {
// Allow iorapd to call this method.
if (Binder.getCallingUid() != Process.IORAPD_UID) {
enforceSystemOrRootOrShell("getAllPackages is limited to privileged callers");
}
final int callingUid = Binder.getCallingUid();
final int callingUserId = UserHandle.getUserId(callingUid);
synchronized (mLock) {