Merge "fix package visibility for installed accessibility services" into sc-dev am: d616f1ed95
Original change: https://googleplex-android-review.googlesource.com/c/platform/frameworks/base/+/14972858 Change-Id: I859e0d4ef07de6283078f808c9765f384cdd886e
This commit is contained in:
@@ -880,18 +880,32 @@ public class AccessibilityManagerService extends IAccessibilityManager.Stub
|
||||
FLAGS_ACCESSIBILITY_MANAGER, "userId=" + userId);
|
||||
}
|
||||
|
||||
final int resolvedUserId;
|
||||
final List<AccessibilityServiceInfo> serviceInfos;
|
||||
synchronized (mLock) {
|
||||
// We treat calls from a profile as if made by its parent as profiles
|
||||
// share the accessibility state of the parent. The call below
|
||||
// performs the current profile parent resolution.
|
||||
final int resolvedUserId = mSecurityPolicy
|
||||
resolvedUserId = mSecurityPolicy
|
||||
.resolveCallingUserIdEnforcingPermissionsLocked(userId);
|
||||
|
||||
if (Binder.getCallingPid() == OWN_PROCESS_ID) {
|
||||
return new ArrayList<>(getUserStateLocked(resolvedUserId).mInstalledServices);
|
||||
}
|
||||
return getUserStateLocked(resolvedUserId).mInstalledServices;
|
||||
serviceInfos = new ArrayList<>(
|
||||
getUserStateLocked(resolvedUserId).mInstalledServices);
|
||||
}
|
||||
|
||||
if (Binder.getCallingPid() == OWN_PROCESS_ID) {
|
||||
return serviceInfos;
|
||||
}
|
||||
final PackageManagerInternal pm = LocalServices.getService(
|
||||
PackageManagerInternal.class);
|
||||
final int callingUid = Binder.getCallingUid();
|
||||
for (int i = serviceInfos.size() - 1; i >= 0; i--) {
|
||||
final AccessibilityServiceInfo serviceInfo = serviceInfos.get(i);
|
||||
if (pm.filterAppAccess(serviceInfo.getComponentName().getPackageName(), callingUid,
|
||||
resolvedUserId)) {
|
||||
serviceInfos.remove(i);
|
||||
}
|
||||
}
|
||||
return serviceInfos;
|
||||
}
|
||||
|
||||
@Override
|
||||
|
||||
Reference in New Issue
Block a user