commit | 59972218f8c0d397fc50400a2b8b9be92ceeaf93 | [log] [tgz] |
---|---|---|
author | Josh Gao <jmgao@google.com> | Wed Jan 25 11:45:58 2017 -0800 |
committer | Josh Gao <jmgao@google.com> | Wed Jan 25 12:03:02 2017 -0800 |
tree | ce3fdda19432e4cce6b34bda9907db04ebf6093a | |
parent | 35c715332f9c5ea6bd91f4b26c954ef89026e814 [diff] |
zygote: don't drop CAP_SYS_PTRACE from the bounding set. crash_dump needs to acquire CAP_SYS_PTRACE to be able to ptrace processes with capabilities. selinux should hopefully be sufficient for restricting ptrace to processes that should do it. Bug: http://b/34694637 Test: debuggerd `pidof system_server` Change-Id: If46f0b9baa54529780f7767f309f76b102a42ab4