Backport ChooserTarget package source check from N
am: 82b9565bd1
* commit '82b9565bd13e2c5dac20b3221b7be28c5afe57ea':
Backport ChooserTarget package source check from N
Change-Id: Ic7e4a8e80829ccb0b2f60c572eea15d18d6658ec
This commit is contained in:
@@ -656,7 +656,19 @@ public class ChooserActivity extends ResolverActivity {
|
|||||||
}
|
}
|
||||||
intent.setComponent(mChooserTarget.getComponentName());
|
intent.setComponent(mChooserTarget.getComponentName());
|
||||||
intent.putExtras(mChooserTarget.getIntentExtras());
|
intent.putExtras(mChooserTarget.getIntentExtras());
|
||||||
activity.startActivityAsCaller(intent, options, true, userId);
|
|
||||||
|
// Important: we will ignore the target security checks in ActivityManager
|
||||||
|
// if and only if the ChooserTarget's target package is the same package
|
||||||
|
// where we got the ChooserTargetService that provided it. This lets a
|
||||||
|
// ChooserTargetService provide a non-exported or permission-guarded target
|
||||||
|
// to the chooser for the user to pick.
|
||||||
|
//
|
||||||
|
// If mSourceInfo is null, we got this ChooserTarget from the caller or elsewhere
|
||||||
|
// so we'll obey the caller's normal security checks.
|
||||||
|
final boolean ignoreTargetSecurity = mSourceInfo != null
|
||||||
|
&& mSourceInfo.getResolvedComponentName().getPackageName()
|
||||||
|
.equals(mChooserTarget.getComponentName().getPackageName());
|
||||||
|
activity.startActivityAsCaller(intent, options, ignoreTargetSecurity, userId);
|
||||||
return true;
|
return true;
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user