app_process: don't use PR_SET_NO_NEW_PRIVS.
selinux should provide equivalent protection, and this prevents transitioning to a helper binary for crash dumping. Bug: http://b/30705528 Change-Id: I64b05236931d418f268b193418e937ab6b0985e0
This commit is contained in:
@@ -184,10 +184,6 @@ static const char ZYGOTE_NICE_NAME[] = "zygote";
|
|||||||
|
|
||||||
int main(int argc, char* const argv[])
|
int main(int argc, char* const argv[])
|
||||||
{
|
{
|
||||||
if (prctl(PR_SET_NO_NEW_PRIVS, 1, 0, 0, 0) < 0) {
|
|
||||||
LOG_ALWAYS_FATAL("PR_SET_NO_NEW_PRIVS failed: %s", strerror(errno));
|
|
||||||
}
|
|
||||||
|
|
||||||
if (!LOG_NDEBUG) {
|
if (!LOG_NDEBUG) {
|
||||||
String8 argv_String;
|
String8 argv_String;
|
||||||
for (int i = 0; i < argc; ++i) {
|
for (int i = 0; i < argc; ++i) {
|
||||||
|
|||||||
Reference in New Issue
Block a user