DO NOT MERGE: Context#startInstrumentation could be started from SHELL only now. am: 0bf31e3efc

Original change: https://googleplex-android-review.googlesource.com/c/platform/frameworks/base/+/20322501

Change-Id: Ia8a05617d2774f3a0cea048b127da8efbe12db46
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
This commit is contained in:
Jing Ji
2023-02-01 23:09:43 +00:00
committed by Automerger Merge Worker

View File

@@ -14605,6 +14605,17 @@ public class ActivityManagerService extends IActivityManager.Stub
throw new SecurityException(msg); throw new SecurityException(msg);
} }
} }
if (!Build.IS_DEBUGGABLE && callingUid != ROOT_UID && callingUid != SHELL_UID
&& callingUid != SYSTEM_UID && !hasActiveInstrumentationLocked(callingPid)) {
// If it's not debug build and not called from root/shell/system uid, reject it.
final String msg = "Permission Denial: instrumentation test "
+ className + " from pid=" + callingPid + ", uid=" + callingUid
+ ", pkgName=" + getPackageNameByPid(callingPid)
+ " not allowed because it's not started from SHELL";
Slog.wtfQuiet(TAG, msg);
reportStartInstrumentationFailureLocked(watcher, className, msg);
throw new SecurityException(msg);
}
boolean disableHiddenApiChecks = ai.usesNonSdkApi() boolean disableHiddenApiChecks = ai.usesNonSdkApi()
|| (flags & INSTR_FLAG_DISABLE_HIDDEN_API_CHECKS) != 0; || (flags & INSTR_FLAG_DISABLE_HIDDEN_API_CHECKS) != 0;
@@ -14827,6 +14838,29 @@ public class ActivityManagerService extends IActivityManager.Stub
} }
} }
@GuardedBy("this")
private boolean hasActiveInstrumentationLocked(int pid) {
if (pid == 0) {
return false;
}
synchronized (mPidsSelfLocked) {
ProcessRecord process = mPidsSelfLocked.get(pid);
return process != null && process.getActiveInstrumentation() != null;
}
}
private String getPackageNameByPid(int pid) {
synchronized (mPidsSelfLocked) {
final ProcessRecord app = mPidsSelfLocked.get(pid);
if (app != null && app.info != null) {
return app.info.packageName;
}
return null;
}
}
private boolean isCallerShell() { private boolean isCallerShell() {
final int callingUid = Binder.getCallingUid(); final int callingUid = Binder.getCallingUid();
return callingUid == SHELL_UID || callingUid == ROOT_UID; return callingUid == SHELL_UID || callingUid == ROOT_UID;