Enforce permission before checking OEM unlocking setting

Bug: 28783495
Change-Id: Idb7b191dd8c50a687c8e910656c0325414ecd544
This commit is contained in:
Steven Ng
2016-05-16 11:20:57 +01:00
parent 8cb18342cb
commit bfe1b04f8b

View File

@@ -443,13 +443,15 @@ public class PersistentDataBlockService extends SystemService {
if (ActivityManager.isUserAMonkey()) {
return;
}
enforceOemUnlockPermission();
enforceIsAdmin();
// Do not allow oem unlock modification if it has been disallowed.
if (Settings.Global.getInt(getContext().getContentResolver(),
Settings.Global.OEM_UNLOCK_DISALLOWED, 0) == 1) {
throw new SecurityException("OEM unlock has been disallowed.");
}
enforceOemUnlockPermission();
enforceIsAdmin();
synchronized (mLock) {
doSetOemUnlockEnabledLocked(enabled);