blob: 8176aff89fc00e3b05bdb4c8dd5cc8a745ea31eb [file] [log] [blame]
Svet Ganovadc1cf42015-06-15 16:36:24 -07001/*
2 * Copyright (C) 2015 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17package com.android.server.pm;
18
19import android.Manifest;
Dianne Hackbornca8e6da2015-06-24 15:19:17 -070020import android.app.DownloadManager;
Dianne Hackborn388cd2c2015-06-26 17:32:36 -070021import android.app.admin.DevicePolicyManager;
Svet Ganovadc1cf42015-06-15 16:36:24 -070022import android.content.Intent;
23import android.content.pm.ApplicationInfo;
24import android.content.pm.PackageManager;
25import android.content.pm.PackageManagerInternal.PackagesProvider;
Svetoslav0010b702015-06-30 18:05:26 -070026import android.content.pm.PackageManagerInternal.SyncAdapterPackagesProvider;
Svet Ganovadc1cf42015-06-15 16:36:24 -070027import android.content.pm.PackageParser;
Dianne Hackbornca8e6da2015-06-24 15:19:17 -070028import android.content.pm.ProviderInfo;
Svet Ganovadc1cf42015-06-15 16:36:24 -070029import android.content.pm.ResolveInfo;
30import android.net.Uri;
31import android.os.Build;
32import android.os.UserHandle;
Dianne Hackborn388cd2c2015-06-26 17:32:36 -070033import android.provider.CalendarContract;
34import android.provider.ContactsContract;
Svet Ganovadc1cf42015-06-15 16:36:24 -070035import android.provider.MediaStore;
Jack Yued79bf52015-07-06 17:23:52 -070036import android.provider.Telephony.Sms.Intents;
Svetoslav0e629522015-08-05 19:14:47 -070037import android.security.Credentials;
Svet Ganovadc1cf42015-06-15 16:36:24 -070038import android.util.ArraySet;
39import android.util.Log;
40
41import java.io.File;
42import java.util.ArrayList;
43import java.util.List;
44import java.util.Set;
45
46import static android.os.Process.FIRST_APPLICATION_UID;
47
48/**
49 * This class is the policy for granting runtime permissions to
50 * platform components and default handlers in the system such
51 * that the device is usable out-of-the-box. For example, the
52 * shell UID is a part of the system and the Phone app should
53 * have phone related permission by default.
54 */
55final class DefaultPermissionGrantPolicy {
Jeff Davidson2a880312015-06-22 16:54:34 -070056 private static final String TAG = "DefaultPermGrantPolicy"; // must be <= 23 chars
Svet Ganovadc1cf42015-06-15 16:36:24 -070057 private static final boolean DEBUG = false;
58
Jeff Sharkey7186dd32015-06-30 17:32:45 -070059 private static final String AUDIO_MIME_TYPE = "audio/mpeg";
Svet Ganovadc1cf42015-06-15 16:36:24 -070060
61 private static final Set<String> PHONE_PERMISSIONS = new ArraySet<>();
62 static {
63 PHONE_PERMISSIONS.add(Manifest.permission.READ_PHONE_STATE);
64 PHONE_PERMISSIONS.add(Manifest.permission.CALL_PHONE);
Dianne Hackborn388cd2c2015-06-26 17:32:36 -070065 PHONE_PERMISSIONS.add(Manifest.permission.READ_CALL_LOG);
Svet Ganovadc1cf42015-06-15 16:36:24 -070066 PHONE_PERMISSIONS.add(Manifest.permission.WRITE_CALL_LOG);
67 PHONE_PERMISSIONS.add(Manifest.permission.ADD_VOICEMAIL);
68 PHONE_PERMISSIONS.add(Manifest.permission.USE_SIP);
69 PHONE_PERMISSIONS.add(Manifest.permission.PROCESS_OUTGOING_CALLS);
70 }
71
72 private static final Set<String> CONTACTS_PERMISSIONS = new ArraySet<>();
73 static {
74 CONTACTS_PERMISSIONS.add(Manifest.permission.READ_CONTACTS);
75 CONTACTS_PERMISSIONS.add(Manifest.permission.WRITE_CONTACTS);
Svetoslav Ganov54a0cf12015-07-17 20:34:18 +000076 CONTACTS_PERMISSIONS.add(Manifest.permission.GET_ACCOUNTS);
Svet Ganovadc1cf42015-06-15 16:36:24 -070077 }
78
79 private static final Set<String> LOCATION_PERMISSIONS = new ArraySet<>();
80 static {
81 LOCATION_PERMISSIONS.add(Manifest.permission.ACCESS_FINE_LOCATION);
82 LOCATION_PERMISSIONS.add(Manifest.permission.ACCESS_COARSE_LOCATION);
83 }
84
85 private static final Set<String> CALENDAR_PERMISSIONS = new ArraySet<>();
86 static {
87 CALENDAR_PERMISSIONS.add(Manifest.permission.READ_CALENDAR);
88 CALENDAR_PERMISSIONS.add(Manifest.permission.WRITE_CALENDAR);
89 }
90
91 private static final Set<String> SMS_PERMISSIONS = new ArraySet<>();
92 static {
93 SMS_PERMISSIONS.add(Manifest.permission.SEND_SMS);
94 SMS_PERMISSIONS.add(Manifest.permission.RECEIVE_SMS);
95 SMS_PERMISSIONS.add(Manifest.permission.READ_SMS);
96 SMS_PERMISSIONS.add(Manifest.permission.RECEIVE_WAP_PUSH);
97 SMS_PERMISSIONS.add(Manifest.permission.RECEIVE_MMS);
98 SMS_PERMISSIONS.add(Manifest.permission.READ_CELL_BROADCASTS);
99 }
100
101 private static final Set<String> MICROPHONE_PERMISSIONS = new ArraySet<>();
102 static {
103 MICROPHONE_PERMISSIONS.add(Manifest.permission.RECORD_AUDIO);
104 }
105
106 private static final Set<String> CAMERA_PERMISSIONS = new ArraySet<>();
107 static {
108 CAMERA_PERMISSIONS.add(Manifest.permission.CAMERA);
109 }
110
111 private static final Set<String> SENSORS_PERMISSIONS = new ArraySet<>();
112 static {
113 SENSORS_PERMISSIONS.add(Manifest.permission.BODY_SENSORS);
114 }
115
116 private static final Set<String> STORAGE_PERMISSIONS = new ArraySet<>();
117 static {
Svet Ganov975fa472015-06-22 20:45:31 -0700118 STORAGE_PERMISSIONS.add(Manifest.permission.READ_EXTERNAL_STORAGE);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700119 STORAGE_PERMISSIONS.add(Manifest.permission.WRITE_EXTERNAL_STORAGE);
120 }
121
Svet Ganovadc1cf42015-06-15 16:36:24 -0700122 private final PackageManagerService mService;
123
124 private PackagesProvider mImePackagesProvider;
125 private PackagesProvider mLocationPackagesProvider;
126 private PackagesProvider mVoiceInteractionPackagesProvider;
Svetoslavcdfd2302015-06-25 19:07:31 -0700127 private PackagesProvider mSmsAppPackagesProvider;
128 private PackagesProvider mDialerAppPackagesProvider;
Sailesh Nepalcf855622015-07-28 19:22:14 -0700129 private PackagesProvider mSimCallManagerPackagesProvider;
Svetoslav0010b702015-06-30 18:05:26 -0700130 private SyncAdapterPackagesProvider mSyncAdapterPackagesProvider;
Svet Ganovadc1cf42015-06-15 16:36:24 -0700131
132 public DefaultPermissionGrantPolicy(PackageManagerService service) {
133 mService = service;
134 }
135
136 public void setImePackagesProviderLPr(PackagesProvider provider) {
137 mImePackagesProvider = provider;
138 }
139
140 public void setLocationPackagesProviderLPw(PackagesProvider provider) {
141 mLocationPackagesProvider = provider;
142 }
143
144 public void setVoiceInteractionPackagesProviderLPw(PackagesProvider provider) {
145 mVoiceInteractionPackagesProvider = provider;
146 }
147
Svetoslavcdfd2302015-06-25 19:07:31 -0700148 public void setSmsAppPackagesProviderLPw(PackagesProvider provider) {
149 mSmsAppPackagesProvider = provider;
150 }
151
152 public void setDialerAppPackagesProviderLPw(PackagesProvider provider) {
153 mDialerAppPackagesProvider = provider;
Jeff Davidson2a880312015-06-22 16:54:34 -0700154 }
155
Sailesh Nepalcf855622015-07-28 19:22:14 -0700156 public void setSimCallManagerPackagesProviderLPw(PackagesProvider provider) {
157 mSimCallManagerPackagesProvider = provider;
158 }
159
Svet Ganov50a8bf42015-07-15 11:04:18 -0700160 public void setSyncAdapterPackagesProviderLPw(SyncAdapterPackagesProvider provider) {
Svetoslav0010b702015-06-30 18:05:26 -0700161 mSyncAdapterPackagesProvider = provider;
162 }
163
Svet Ganovadc1cf42015-06-15 16:36:24 -0700164 public void grantDefaultPermissions(int userId) {
165 grantPermissionsToSysComponentsAndPrivApps(userId);
166 grantDefaultSystemHandlerPermissions(userId);
167 }
168
169 private void grantPermissionsToSysComponentsAndPrivApps(int userId) {
Jeff Sharkey7186dd32015-06-30 17:32:45 -0700170 Log.i(TAG, "Granting permissions to platform components for user " + userId);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700171
172 synchronized (mService.mPackages) {
173 for (PackageParser.Package pkg : mService.mPackages.values()) {
Svetoslav4aa97972015-07-29 14:00:18 -0700174 if (!isSysComponentOrPersistentPlatformSignedPrivAppLPr(pkg)
175 || !doesPackageSupportRuntimePermissions(pkg)
176 || pkg.requestedPermissions.isEmpty()) {
Svet Ganovadc1cf42015-06-15 16:36:24 -0700177 continue;
178 }
Svetoslav4aa97972015-07-29 14:00:18 -0700179 Set<String> permissions = new ArraySet<>();
Svet Ganovadc1cf42015-06-15 16:36:24 -0700180 final int permissionCount = pkg.requestedPermissions.size();
181 for (int i = 0; i < permissionCount; i++) {
182 String permission = pkg.requestedPermissions.get(i);
183 BasePermission bp = mService.mSettings.mPermissions.get(permission);
184 if (bp != null && bp.isRuntime()) {
Svetoslav4aa97972015-07-29 14:00:18 -0700185 permissions.add(permission);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700186 }
187 }
Svetoslav4aa97972015-07-29 14:00:18 -0700188 if (!permissions.isEmpty()) {
189 grantRuntimePermissionsLPw(pkg, permissions, true, userId);
190 }
Svet Ganovadc1cf42015-06-15 16:36:24 -0700191 }
192 }
193 }
194
195 private void grantDefaultSystemHandlerPermissions(int userId) {
Jeff Sharkey7186dd32015-06-30 17:32:45 -0700196 Log.i(TAG, "Granting permissions to default platform handlers for user " + userId);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700197
198 final PackagesProvider imePackagesProvider;
199 final PackagesProvider locationPackagesProvider;
200 final PackagesProvider voiceInteractionPackagesProvider;
Svetoslavcdfd2302015-06-25 19:07:31 -0700201 final PackagesProvider smsAppPackagesProvider;
202 final PackagesProvider dialerAppPackagesProvider;
Sailesh Nepalcf855622015-07-28 19:22:14 -0700203 final PackagesProvider simCallManagerPackagesProvider;
Svetoslav0010b702015-06-30 18:05:26 -0700204 final SyncAdapterPackagesProvider syncAdapterPackagesProvider;
Svet Ganovadc1cf42015-06-15 16:36:24 -0700205
206 synchronized (mService.mPackages) {
207 imePackagesProvider = mImePackagesProvider;
208 locationPackagesProvider = mLocationPackagesProvider;
209 voiceInteractionPackagesProvider = mVoiceInteractionPackagesProvider;
Svetoslavcdfd2302015-06-25 19:07:31 -0700210 smsAppPackagesProvider = mSmsAppPackagesProvider;
211 dialerAppPackagesProvider = mDialerAppPackagesProvider;
Sailesh Nepalcf855622015-07-28 19:22:14 -0700212 simCallManagerPackagesProvider = mSimCallManagerPackagesProvider;
Svetoslav0010b702015-06-30 18:05:26 -0700213 syncAdapterPackagesProvider = mSyncAdapterPackagesProvider;
Svet Ganovadc1cf42015-06-15 16:36:24 -0700214 }
215
216 String[] imePackageNames = (imePackagesProvider != null)
217 ? imePackagesProvider.getPackages(userId) : null;
218 String[] voiceInteractPackageNames = (voiceInteractionPackagesProvider != null)
219 ? voiceInteractionPackagesProvider.getPackages(userId) : null;
220 String[] locationPackageNames = (locationPackagesProvider != null)
221 ? locationPackagesProvider.getPackages(userId) : null;
Svetoslavcdfd2302015-06-25 19:07:31 -0700222 String[] smsAppPackageNames = (smsAppPackagesProvider != null)
223 ? smsAppPackagesProvider.getPackages(userId) : null;
224 String[] dialerAppPackageNames = (dialerAppPackagesProvider != null)
225 ? dialerAppPackagesProvider.getPackages(userId) : null;
Sailesh Nepalcf855622015-07-28 19:22:14 -0700226 String[] simCallManagerPackageNames = (simCallManagerPackagesProvider != null)
227 ? simCallManagerPackagesProvider.getPackages(userId) : null;
Svetoslav0010b702015-06-30 18:05:26 -0700228 String[] contactsSyncAdapterPackages = (syncAdapterPackagesProvider != null) ?
229 syncAdapterPackagesProvider.getPackages(ContactsContract.AUTHORITY, userId) : null;
230 String[] calendarSyncAdapterPackages = (syncAdapterPackagesProvider != null) ?
231 syncAdapterPackagesProvider.getPackages(CalendarContract.AUTHORITY, userId) : null;
Svet Ganovadc1cf42015-06-15 16:36:24 -0700232
233 synchronized (mService.mPackages) {
Svetoslav3e7d9772015-07-06 18:31:23 -0700234 // Installer
235 PackageParser.Package installerPackage = getSystemPackageLPr(
236 mService.mRequiredInstallerPackage);
237 if (installerPackage != null
238 && doesPackageSupportRuntimePermissions(installerPackage)) {
239 grantRuntimePermissionsLPw(installerPackage, STORAGE_PERMISSIONS, true, userId);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700240 }
241
Svetoslav3e7d9772015-07-06 18:31:23 -0700242 // Verifier
243 PackageParser.Package verifierPackage = getSystemPackageLPr(
244 mService.mRequiredVerifierPackage);
245 if (verifierPackage != null
246 && doesPackageSupportRuntimePermissions(verifierPackage)) {
247 grantRuntimePermissionsLPw(verifierPackage, STORAGE_PERMISSIONS, true, userId);
Svet Ganovcd946022015-09-12 10:19:54 -0700248 grantRuntimePermissionsLPw(verifierPackage, PHONE_PERMISSIONS, false, userId);
249 grantRuntimePermissionsLPw(verifierPackage, SMS_PERMISSIONS, false, userId);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700250 }
251
252 // SetupWizard
253 Intent setupIntent = new Intent(Intent.ACTION_MAIN);
Svet Ganov50a8bf42015-07-15 11:04:18 -0700254 setupIntent.addCategory(Intent.CATEGORY_SETUP_WIZARD);
Svetoslavcdfd2302015-06-25 19:07:31 -0700255 PackageParser.Package setupPackage = getDefaultSystemHandlerActivityPackageLPr(
Svet Ganovadc1cf42015-06-15 16:36:24 -0700256 setupIntent, userId);
257 if (setupPackage != null
258 && doesPackageSupportRuntimePermissions(setupPackage)) {
259 grantRuntimePermissionsLPw(setupPackage, PHONE_PERMISSIONS, userId);
260 grantRuntimePermissionsLPw(setupPackage, CONTACTS_PERMISSIONS, userId);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700261 }
262
Svet Ganovadc1cf42015-06-15 16:36:24 -0700263 // Camera
264 Intent cameraIntent = new Intent(MediaStore.ACTION_IMAGE_CAPTURE);
Svetoslavcdfd2302015-06-25 19:07:31 -0700265 PackageParser.Package cameraPackage = getDefaultSystemHandlerActivityPackageLPr(
Svet Ganovadc1cf42015-06-15 16:36:24 -0700266 cameraIntent, userId);
267 if (cameraPackage != null
268 && doesPackageSupportRuntimePermissions(cameraPackage)) {
269 grantRuntimePermissionsLPw(cameraPackage, CAMERA_PERMISSIONS, userId);
270 grantRuntimePermissionsLPw(cameraPackage, MICROPHONE_PERMISSIONS, userId);
Dianne Hackbornca8e6da2015-06-24 15:19:17 -0700271 grantRuntimePermissionsLPw(cameraPackage, STORAGE_PERMISSIONS, userId);
272 }
273
274 // Media provider
275 PackageParser.Package mediaStorePackage = getDefaultProviderAuthorityPackageLPr(
276 MediaStore.AUTHORITY, userId);
277 if (mediaStorePackage != null) {
Svetoslav0010b702015-06-30 18:05:26 -0700278 grantRuntimePermissionsLPw(mediaStorePackage, STORAGE_PERMISSIONS, true, userId);
Dianne Hackbornca8e6da2015-06-24 15:19:17 -0700279 }
280
281 // Downloads provider
282 PackageParser.Package downloadsPackage = getDefaultProviderAuthorityPackageLPr(
283 "downloads", userId);
284 if (downloadsPackage != null) {
Svetoslav0010b702015-06-30 18:05:26 -0700285 grantRuntimePermissionsLPw(downloadsPackage, STORAGE_PERMISSIONS, true, userId);
Dianne Hackbornca8e6da2015-06-24 15:19:17 -0700286 }
287
288 // Downloads UI
289 Intent downloadsUiIntent = new Intent(DownloadManager.ACTION_VIEW_DOWNLOADS);
Svetoslavcdfd2302015-06-25 19:07:31 -0700290 PackageParser.Package downloadsUiPackage = getDefaultSystemHandlerActivityPackageLPr(
Dianne Hackbornca8e6da2015-06-24 15:19:17 -0700291 downloadsUiIntent, userId);
292 if (downloadsUiPackage != null
293 && doesPackageSupportRuntimePermissions(downloadsUiPackage)) {
Svetoslav0010b702015-06-30 18:05:26 -0700294 grantRuntimePermissionsLPw(downloadsUiPackage, STORAGE_PERMISSIONS, true, userId);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700295 }
296
Jeff Sharkey7186dd32015-06-30 17:32:45 -0700297 // Storage provider
298 PackageParser.Package storagePackage = getDefaultProviderAuthorityPackageLPr(
299 "com.android.externalstorage.documents", userId);
300 if (storagePackage != null) {
Svet Ganov52153f42015-08-11 08:59:12 -0700301 grantRuntimePermissionsLPw(storagePackage, STORAGE_PERMISSIONS, true, userId);
Jeff Sharkey7186dd32015-06-30 17:32:45 -0700302 }
303
Svetoslav0e629522015-08-05 19:14:47 -0700304 // CertInstaller
305 Intent certInstallerIntent = new Intent(Credentials.INSTALL_ACTION);
306 PackageParser.Package certInstallerPackage = getDefaultSystemHandlerActivityPackageLPr(
307 certInstallerIntent, userId);
308 if (certInstallerPackage != null
309 && doesPackageSupportRuntimePermissions(certInstallerPackage)) {
310 grantRuntimePermissionsLPw(certInstallerPackage, STORAGE_PERMISSIONS, true, userId);
311 }
312
Svetoslava5a0d942015-07-01 19:49:58 -0700313 // Dialer
314 if (dialerAppPackageNames == null) {
315 Intent dialerIntent = new Intent(Intent.ACTION_DIAL);
316 PackageParser.Package dialerPackage = getDefaultSystemHandlerActivityPackageLPr(
317 dialerIntent, userId);
318 if (dialerPackage != null) {
319 grantDefaultPermissionsToDefaultSystemDialerAppLPr(dialerPackage, userId);
320 }
321 } else {
322 for (String dialerAppPackageName : dialerAppPackageNames) {
323 PackageParser.Package dialerPackage = getSystemPackageLPr(dialerAppPackageName);
324 if (dialerPackage != null) {
325 grantDefaultPermissionsToDefaultSystemDialerAppLPr(dialerPackage, userId);
326 }
327 }
328 }
329
Sailesh Nepalcf855622015-07-28 19:22:14 -0700330 // Sim call manager
331 if (simCallManagerPackageNames != null) {
332 for (String simCallManagerPackageName : simCallManagerPackageNames) {
333 PackageParser.Package simCallManagerPackage =
334 getSystemPackageLPr(simCallManagerPackageName);
335 if (simCallManagerPackage != null) {
336 grantDefaultPermissionsToDefaultSimCallManagerLPr(simCallManagerPackage,
337 userId);
338 }
339 }
340 }
341
Svetoslavcdfd2302015-06-25 19:07:31 -0700342 // SMS
Svetoslava5a0d942015-07-01 19:49:58 -0700343 if (smsAppPackageNames == null) {
344 Intent smsIntent = new Intent(Intent.ACTION_MAIN);
345 smsIntent.addCategory(Intent.CATEGORY_APP_MESSAGING);
346 PackageParser.Package smsPackage = getDefaultSystemHandlerActivityPackageLPr(
347 smsIntent, userId);
348 if (smsPackage != null) {
349 grantDefaultPermissionsToDefaultSystemSmsAppLPr(smsPackage, userId);
350 }
351 } else {
Svetoslavcdfd2302015-06-25 19:07:31 -0700352 for (String smsPackageName : smsAppPackageNames) {
Svetoslava5a0d942015-07-01 19:49:58 -0700353 PackageParser.Package smsPackage = getSystemPackageLPr(smsPackageName);
354 if (smsPackage != null) {
355 grantDefaultPermissionsToDefaultSystemSmsAppLPr(smsPackage, userId);
Svetoslavcdfd2302015-06-25 19:07:31 -0700356 }
357 }
Svet Ganovadc1cf42015-06-15 16:36:24 -0700358 }
359
Jack Yued79bf52015-07-06 17:23:52 -0700360 // Cell Broadcast Receiver
361 Intent cbrIntent = new Intent(Intents.SMS_CB_RECEIVED_ACTION);
362 PackageParser.Package cbrPackage =
363 getDefaultSystemHandlerActivityPackageLPr(cbrIntent, userId);
Jack Yued79bf52015-07-06 17:23:52 -0700364 if (cbrPackage != null && doesPackageSupportRuntimePermissions(cbrPackage)) {
Svet Ganov52153f42015-08-11 08:59:12 -0700365 grantRuntimePermissionsLPw(cbrPackage, SMS_PERMISSIONS, userId);
Jack Yued79bf52015-07-06 17:23:52 -0700366 }
367
Junda Liud878f532015-08-13 14:25:49 -0700368 // Carrier Provisioning Service
369 Intent carrierProvIntent = new Intent(Intents.SMS_CARRIER_PROVISION_ACTION);
370 PackageParser.Package carrierProvPackage =
371 getDefaultSystemHandlerServicePackageLPr(carrierProvIntent, userId);
372 if (carrierProvPackage != null && doesPackageSupportRuntimePermissions(carrierProvPackage)) {
373 grantRuntimePermissionsLPw(carrierProvPackage, SMS_PERMISSIONS, false, userId);
374 }
375
Svet Ganovadc1cf42015-06-15 16:36:24 -0700376 // Calendar
377 Intent calendarIntent = new Intent(Intent.ACTION_MAIN);
378 calendarIntent.addCategory(Intent.CATEGORY_APP_CALENDAR);
Svetoslavcdfd2302015-06-25 19:07:31 -0700379 PackageParser.Package calendarPackage = getDefaultSystemHandlerActivityPackageLPr(
Svet Ganovadc1cf42015-06-15 16:36:24 -0700380 calendarIntent, userId);
381 if (calendarPackage != null
382 && doesPackageSupportRuntimePermissions(calendarPackage)) {
383 grantRuntimePermissionsLPw(calendarPackage, CALENDAR_PERMISSIONS, userId);
384 grantRuntimePermissionsLPw(calendarPackage, CONTACTS_PERMISSIONS, userId);
Dianne Hackborn388cd2c2015-06-26 17:32:36 -0700385 }
386
387 // Calendar provider
388 PackageParser.Package calendarProviderPackage = getDefaultProviderAuthorityPackageLPr(
389 CalendarContract.AUTHORITY, userId);
390 if (calendarProviderPackage != null) {
391 grantRuntimePermissionsLPw(calendarProviderPackage, CONTACTS_PERMISSIONS, userId);
Svetoslav0010b702015-06-30 18:05:26 -0700392 grantRuntimePermissionsLPw(calendarProviderPackage, CALENDAR_PERMISSIONS,
393 true, userId);
Dianne Hackborn388cd2c2015-06-26 17:32:36 -0700394 grantRuntimePermissionsLPw(calendarProviderPackage, STORAGE_PERMISSIONS, userId);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700395 }
396
Svetoslav0010b702015-06-30 18:05:26 -0700397 // Calendar provider sync adapters
Svetoslava5a0d942015-07-01 19:49:58 -0700398 List<PackageParser.Package> calendarSyncAdapters = getHeadlessSyncAdapterPackagesLPr(
Svet Ganov50a8bf42015-07-15 11:04:18 -0700399 calendarSyncAdapterPackages, userId);
Svetoslav0010b702015-06-30 18:05:26 -0700400 final int calendarSyncAdapterCount = calendarSyncAdapters.size();
401 for (int i = 0; i < calendarSyncAdapterCount; i++) {
402 PackageParser.Package calendarSyncAdapter = calendarSyncAdapters.get(i);
403 if (doesPackageSupportRuntimePermissions(calendarSyncAdapter)) {
404 grantRuntimePermissionsLPw(calendarSyncAdapter, CALENDAR_PERMISSIONS, userId);
405 }
406 }
407
Svet Ganovadc1cf42015-06-15 16:36:24 -0700408 // Contacts
409 Intent contactsIntent = new Intent(Intent.ACTION_MAIN);
410 contactsIntent.addCategory(Intent.CATEGORY_APP_CONTACTS);
Svetoslavcdfd2302015-06-25 19:07:31 -0700411 PackageParser.Package contactsPackage = getDefaultSystemHandlerActivityPackageLPr(
Svet Ganovadc1cf42015-06-15 16:36:24 -0700412 contactsIntent, userId);
413 if (contactsPackage != null
414 && doesPackageSupportRuntimePermissions(contactsPackage)) {
415 grantRuntimePermissionsLPw(contactsPackage, CONTACTS_PERMISSIONS, userId);
416 grantRuntimePermissionsLPw(contactsPackage, PHONE_PERMISSIONS, userId);
Dianne Hackborn388cd2c2015-06-26 17:32:36 -0700417 }
418
Svetoslav0010b702015-06-30 18:05:26 -0700419 // Contacts provider sync adapters
Svetoslava5a0d942015-07-01 19:49:58 -0700420 List<PackageParser.Package> contactsSyncAdapters = getHeadlessSyncAdapterPackagesLPr(
Svet Ganov50a8bf42015-07-15 11:04:18 -0700421 contactsSyncAdapterPackages, userId);
Svetoslav0010b702015-06-30 18:05:26 -0700422 final int contactsSyncAdapterCount = contactsSyncAdapters.size();
423 for (int i = 0; i < contactsSyncAdapterCount; i++) {
424 PackageParser.Package contactsSyncAdapter = contactsSyncAdapters.get(i);
425 if (doesPackageSupportRuntimePermissions(contactsSyncAdapter)) {
426 grantRuntimePermissionsLPw(contactsSyncAdapter, CONTACTS_PERMISSIONS, userId);
427 }
428 }
429
Dianne Hackborn388cd2c2015-06-26 17:32:36 -0700430 // Contacts provider
431 PackageParser.Package contactsProviderPackage = getDefaultProviderAuthorityPackageLPr(
432 ContactsContract.AUTHORITY, userId);
433 if (contactsProviderPackage != null) {
Svetoslav0010b702015-06-30 18:05:26 -0700434 grantRuntimePermissionsLPw(contactsProviderPackage, CONTACTS_PERMISSIONS,
435 true, userId);
Makoto Onuki7a4082e2015-07-06 16:59:36 -0700436 grantRuntimePermissionsLPw(contactsProviderPackage, PHONE_PERMISSIONS,
437 true, userId);
Dianne Hackborn388cd2c2015-06-26 17:32:36 -0700438 grantRuntimePermissionsLPw(contactsProviderPackage, STORAGE_PERMISSIONS, userId);
439 }
440
441 // Device provisioning
442 Intent deviceProvisionIntent = new Intent(
443 DevicePolicyManager.ACTION_PROVISION_MANAGED_DEVICE);
Svet Ganovb6e00132015-06-29 20:19:25 -0700444 PackageParser.Package deviceProvisionPackage =
445 getDefaultSystemHandlerActivityPackageLPr(deviceProvisionIntent, userId);
Dianne Hackborn388cd2c2015-06-26 17:32:36 -0700446 if (deviceProvisionPackage != null
447 && doesPackageSupportRuntimePermissions(deviceProvisionPackage)) {
Makoto Onukibc924792015-07-16 11:38:00 -0700448 grantRuntimePermissionsLPw(deviceProvisionPackage, CONTACTS_PERMISSIONS, userId);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700449 }
450
451 // Maps
452 Intent mapsIntent = new Intent(Intent.ACTION_MAIN);
453 mapsIntent.addCategory(Intent.CATEGORY_APP_MAPS);
Svetoslavcdfd2302015-06-25 19:07:31 -0700454 PackageParser.Package mapsPackage = getDefaultSystemHandlerActivityPackageLPr(
Svet Ganovadc1cf42015-06-15 16:36:24 -0700455 mapsIntent, userId);
456 if (mapsPackage != null
457 && doesPackageSupportRuntimePermissions(mapsPackage)) {
458 grantRuntimePermissionsLPw(mapsPackage, LOCATION_PERMISSIONS, userId);
459 }
460
Svet Ganov200d4942015-07-01 20:46:02 -0700461 // Gallery
462 Intent galleryIntent = new Intent(Intent.ACTION_MAIN);
463 galleryIntent.addCategory(Intent.CATEGORY_APP_GALLERY);
464 PackageParser.Package galleryPackage = getDefaultSystemHandlerActivityPackageLPr(
465 galleryIntent, userId);
466 if (galleryPackage != null
467 && doesPackageSupportRuntimePermissions(galleryPackage)) {
468 grantRuntimePermissionsLPw(galleryPackage, STORAGE_PERMISSIONS, userId);
469 }
470
Svet Ganovadc1cf42015-06-15 16:36:24 -0700471 // Email
472 Intent emailIntent = new Intent(Intent.ACTION_MAIN);
473 emailIntent.addCategory(Intent.CATEGORY_APP_EMAIL);
Svetoslavcdfd2302015-06-25 19:07:31 -0700474 PackageParser.Package emailPackage = getDefaultSystemHandlerActivityPackageLPr(
Svet Ganovadc1cf42015-06-15 16:36:24 -0700475 emailIntent, userId);
476 if (emailPackage != null
477 && doesPackageSupportRuntimePermissions(emailPackage)) {
478 grantRuntimePermissionsLPw(emailPackage, CONTACTS_PERMISSIONS, userId);
479 }
480
481 // Browser
Svetoslavcdfd2302015-06-25 19:07:31 -0700482 PackageParser.Package browserPackage = null;
483 String defaultBrowserPackage = mService.getDefaultBrowserPackageName(userId);
484 if (defaultBrowserPackage != null) {
485 browserPackage = getPackageLPr(defaultBrowserPackage);
486 }
487 if (browserPackage == null) {
488 Intent browserIntent = new Intent(Intent.ACTION_MAIN);
489 browserIntent.addCategory(Intent.CATEGORY_APP_BROWSER);
490 browserPackage = getDefaultSystemHandlerActivityPackageLPr(
491 browserIntent, userId);
492 }
Svet Ganovadc1cf42015-06-15 16:36:24 -0700493 if (browserPackage != null
494 && doesPackageSupportRuntimePermissions(browserPackage)) {
495 grantRuntimePermissionsLPw(browserPackage, LOCATION_PERMISSIONS, userId);
496 }
497
498 // IME
499 if (imePackageNames != null) {
500 for (String imePackageName : imePackageNames) {
501 PackageParser.Package imePackage = getSystemPackageLPr(imePackageName);
502 if (imePackage != null
503 && doesPackageSupportRuntimePermissions(imePackage)) {
504 grantRuntimePermissionsLPw(imePackage, CONTACTS_PERMISSIONS, userId);
505 }
506 }
507 }
508
509 // Voice interaction
510 if (voiceInteractPackageNames != null) {
511 for (String voiceInteractPackageName : voiceInteractPackageNames) {
512 PackageParser.Package voiceInteractPackage = getSystemPackageLPr(
513 voiceInteractPackageName);
514 if (voiceInteractPackage != null
515 && doesPackageSupportRuntimePermissions(voiceInteractPackage)) {
516 grantRuntimePermissionsLPw(voiceInteractPackage,
517 CONTACTS_PERMISSIONS, userId);
518 grantRuntimePermissionsLPw(voiceInteractPackage,
519 CALENDAR_PERMISSIONS, userId);
520 grantRuntimePermissionsLPw(voiceInteractPackage,
521 MICROPHONE_PERMISSIONS, userId);
522 grantRuntimePermissionsLPw(voiceInteractPackage,
523 PHONE_PERMISSIONS, userId);
524 grantRuntimePermissionsLPw(voiceInteractPackage,
525 SMS_PERMISSIONS, userId);
526 grantRuntimePermissionsLPw(voiceInteractPackage,
527 LOCATION_PERMISSIONS, userId);
528 }
529 }
530 }
531
Svetoslavc6ab8b92015-07-22 17:34:12 -0700532 // Voice recognition
533 Intent voiceRecoIntent = new Intent("android.speech.RecognitionService");
534 voiceRecoIntent.addCategory(Intent.CATEGORY_DEFAULT);
535 PackageParser.Package voiceRecoPackage = getDefaultSystemHandlerServicePackageLPr(
536 voiceRecoIntent, userId);
537 if (voiceRecoPackage != null
538 && doesPackageSupportRuntimePermissions(voiceRecoPackage)) {
539 grantRuntimePermissionsLPw(voiceRecoPackage, MICROPHONE_PERMISSIONS, userId);
540 }
541
Svet Ganovadc1cf42015-06-15 16:36:24 -0700542 // Location
543 if (locationPackageNames != null) {
544 for (String packageName : locationPackageNames) {
545 PackageParser.Package locationPackage = getSystemPackageLPr(packageName);
546 if (locationPackage != null
547 && doesPackageSupportRuntimePermissions(locationPackage)) {
548 grantRuntimePermissionsLPw(locationPackage, CONTACTS_PERMISSIONS, userId);
549 grantRuntimePermissionsLPw(locationPackage, CALENDAR_PERMISSIONS, userId);
550 grantRuntimePermissionsLPw(locationPackage, MICROPHONE_PERMISSIONS, userId);
551 grantRuntimePermissionsLPw(locationPackage, PHONE_PERMISSIONS, userId);
552 grantRuntimePermissionsLPw(locationPackage, SMS_PERMISSIONS, userId);
Svetoslav0010b702015-06-30 18:05:26 -0700553 grantRuntimePermissionsLPw(locationPackage, LOCATION_PERMISSIONS,
554 true, userId);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700555 grantRuntimePermissionsLPw(locationPackage, CAMERA_PERMISSIONS, userId);
556 grantRuntimePermissionsLPw(locationPackage, SENSORS_PERMISSIONS, userId);
557 grantRuntimePermissionsLPw(locationPackage, STORAGE_PERMISSIONS, userId);
558 }
559 }
560 }
Jeff Davidson2a880312015-06-22 16:54:34 -0700561
Jeff Sharkey7186dd32015-06-30 17:32:45 -0700562 // Music
563 Intent musicIntent = new Intent(Intent.ACTION_VIEW);
564 musicIntent.addCategory(Intent.CATEGORY_DEFAULT);
565 musicIntent.setDataAndType(Uri.fromFile(new File("foo.mp3")),
566 AUDIO_MIME_TYPE);
567 PackageParser.Package musicPackage = getDefaultSystemHandlerActivityPackageLPr(
568 musicIntent, userId);
569 if (musicPackage != null
570 && doesPackageSupportRuntimePermissions(musicPackage)) {
571 grantRuntimePermissionsLPw(musicPackage, STORAGE_PERMISSIONS, userId);
572 }
573
Anthony Hugh979b81a2015-09-29 16:50:35 -0700574 // Android Wear Home
575 if (mService.hasSystemFeature(PackageManager.FEATURE_WATCH)) {
576 Intent homeIntent = new Intent(Intent.ACTION_MAIN);
577 homeIntent.addCategory(Intent.CATEGORY_HOME_MAIN);
578
579 PackageParser.Package wearHomePackage = getDefaultSystemHandlerActivityPackageLPr(
580 homeIntent, userId);
581
582 if (wearHomePackage != null
583 && doesPackageSupportRuntimePermissions(wearHomePackage)) {
584 grantRuntimePermissionsLPw(wearHomePackage, CONTACTS_PERMISSIONS, false,
585 userId);
586 grantRuntimePermissionsLPw(wearHomePackage, PHONE_PERMISSIONS, true, userId);
587 grantRuntimePermissionsLPw(wearHomePackage, MICROPHONE_PERMISSIONS, false,
588 userId);
589 }
590 }
591
Svet Ganovba3ba812015-06-26 10:54:06 -0700592 mService.mSettings.onDefaultRuntimePermissionsGrantedLPr(userId);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700593 }
594 }
595
Svetoslava5a0d942015-07-01 19:49:58 -0700596 private void grantDefaultPermissionsToDefaultSystemDialerAppLPr(
597 PackageParser.Package dialerPackage, int userId) {
598 if (doesPackageSupportRuntimePermissions(dialerPackage)) {
599 grantRuntimePermissionsLPw(dialerPackage, PHONE_PERMISSIONS, userId);
600 grantRuntimePermissionsLPw(dialerPackage, CONTACTS_PERMISSIONS, userId);
601 grantRuntimePermissionsLPw(dialerPackage, SMS_PERMISSIONS, userId);
602 grantRuntimePermissionsLPw(dialerPackage, MICROPHONE_PERMISSIONS, userId);
603 }
604 }
605
606
607 private void grantDefaultPermissionsToDefaultSystemSmsAppLPr(
608 PackageParser.Package smsPackage, int userId) {
609 if (doesPackageSupportRuntimePermissions(smsPackage)) {
610 grantRuntimePermissionsLPw(smsPackage, PHONE_PERMISSIONS, userId);
611 grantRuntimePermissionsLPw(smsPackage, CONTACTS_PERMISSIONS, userId);
612 grantRuntimePermissionsLPw(smsPackage, SMS_PERMISSIONS, userId);
613 }
614 }
615
616
Svetoslavcdfd2302015-06-25 19:07:31 -0700617 public void grantDefaultPermissionsToDefaultSmsAppLPr(String packageName, int userId) {
618 Log.i(TAG, "Granting permissions to default sms app for user:" + userId);
619 if (packageName == null) {
620 return;
621 }
622 PackageParser.Package smsPackage = getPackageLPr(packageName);
623 if (smsPackage != null && doesPackageSupportRuntimePermissions(smsPackage)) {
Svet Ganov4bb51872015-07-16 18:56:16 -0700624 grantRuntimePermissionsLPw(smsPackage, PHONE_PERMISSIONS, false, true, userId);
625 grantRuntimePermissionsLPw(smsPackage, CONTACTS_PERMISSIONS, false, true, userId);
626 grantRuntimePermissionsLPw(smsPackage, SMS_PERMISSIONS, false, true, userId);
Svetoslavcdfd2302015-06-25 19:07:31 -0700627 }
628 }
629
630 public void grantDefaultPermissionsToDefaultDialerAppLPr(String packageName, int userId) {
631 Log.i(TAG, "Granting permissions to default dialer app for user:" + userId);
632 if (packageName == null) {
633 return;
634 }
635 PackageParser.Package dialerPackage = getPackageLPr(packageName);
636 if (dialerPackage != null
637 && doesPackageSupportRuntimePermissions(dialerPackage)) {
Svet Ganov4bb51872015-07-16 18:56:16 -0700638 grantRuntimePermissionsLPw(dialerPackage, PHONE_PERMISSIONS, false, true, userId);
639 grantRuntimePermissionsLPw(dialerPackage, CONTACTS_PERMISSIONS, false, true, userId);
640 grantRuntimePermissionsLPw(dialerPackage, SMS_PERMISSIONS, false, true, userId);
641 grantRuntimePermissionsLPw(dialerPackage, MICROPHONE_PERMISSIONS, false, true, userId);
Svetoslavcdfd2302015-06-25 19:07:31 -0700642 }
643 }
644
Sailesh Nepalcf855622015-07-28 19:22:14 -0700645 private void grantDefaultPermissionsToDefaultSimCallManagerLPr(
646 PackageParser.Package simCallManagerPackage, int userId) {
647 Log.i(TAG, "Granting permissions to sim call manager for user:" + userId);
648 if (doesPackageSupportRuntimePermissions(simCallManagerPackage)) {
649 grantRuntimePermissionsLPw(simCallManagerPackage, PHONE_PERMISSIONS, userId);
650 grantRuntimePermissionsLPw(simCallManagerPackage, MICROPHONE_PERMISSIONS, userId);
651 }
652 }
653
654 public void grantDefaultPermissionsToDefaultSimCallManagerLPr(String packageName, int userId) {
655 if (packageName == null) {
656 return;
657 }
658 PackageParser.Package simCallManagerPackage = getPackageLPr(packageName);
659 if (simCallManagerPackage != null) {
660 grantDefaultPermissionsToDefaultSimCallManagerLPr(simCallManagerPackage, userId);
661 }
662 }
663
Svetoslavcdfd2302015-06-25 19:07:31 -0700664 public void grantDefaultPermissionsToEnabledCarrierAppsLPr(String[] packageNames, int userId) {
665 Log.i(TAG, "Granting permissions to enabled carrier apps for user:" + userId);
666 if (packageNames == null) {
667 return;
668 }
669 for (String packageName : packageNames) {
670 PackageParser.Package carrierPackage = getSystemPackageLPr(packageName);
671 if (carrierPackage != null
672 && doesPackageSupportRuntimePermissions(carrierPackage)) {
673 grantRuntimePermissionsLPw(carrierPackage, PHONE_PERMISSIONS, userId);
674 grantRuntimePermissionsLPw(carrierPackage, LOCATION_PERMISSIONS, userId);
Shishir Agrawalad632472015-07-29 16:54:07 -0700675 grantRuntimePermissionsLPw(carrierPackage, SMS_PERMISSIONS, userId);
Svetoslavcdfd2302015-06-25 19:07:31 -0700676 }
677 }
678 }
679
680 public void grantDefaultPermissionsToDefaultBrowserLPr(String packageName, int userId) {
681 Log.i(TAG, "Granting permissions to default browser for user:" + userId);
682 if (packageName == null) {
683 return;
684 }
685 PackageParser.Package browserPackage = getSystemPackageLPr(packageName);
686 if (browserPackage != null
687 && doesPackageSupportRuntimePermissions(browserPackage)) {
Svet Ganov4bb51872015-07-16 18:56:16 -0700688 grantRuntimePermissionsLPw(browserPackage, LOCATION_PERMISSIONS, false, false, userId);
Svetoslavcdfd2302015-06-25 19:07:31 -0700689 }
690 }
691
Svetoslavcdfd2302015-06-25 19:07:31 -0700692 private PackageParser.Package getDefaultSystemHandlerActivityPackageLPr(
Svet Ganovadc1cf42015-06-15 16:36:24 -0700693 Intent intent, int userId) {
Svetoslav8b24a1d2015-07-13 17:37:32 -0700694 List<ResolveInfo> handlers = mService.mActivities.queryIntent(intent,
695 intent.resolveType(mService.mContext.getContentResolver()),
696 PackageManager.GET_DISABLED_COMPONENTS, userId);
Svet Ganov50a8bf42015-07-15 11:04:18 -0700697 if (handlers == null) {
698 return null;
699 }
Svet Ganovadc1cf42015-06-15 16:36:24 -0700700 final int handlerCount = handlers.size();
701 for (int i = 0; i < handlerCount; i++) {
702 ResolveInfo handler = handlers.get(i);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700703 PackageParser.Package handlerPackage = getSystemPackageLPr(
704 handler.activityInfo.packageName);
705 if (handlerPackage != null) {
706 return handlerPackage;
707 }
708 }
709 return null;
710 }
711
Svetoslavc6ab8b92015-07-22 17:34:12 -0700712 private PackageParser.Package getDefaultSystemHandlerServicePackageLPr(
713 Intent intent, int userId) {
714 List<ResolveInfo> handlers = mService.queryIntentServices(intent,
715 intent.resolveType(mService.mContext.getContentResolver()),
716 PackageManager.GET_DISABLED_COMPONENTS, userId);
717 if (handlers == null) {
718 return null;
719 }
720 final int handlerCount = handlers.size();
721 for (int i = 0; i < handlerCount; i++) {
722 ResolveInfo handler = handlers.get(i);
723 PackageParser.Package handlerPackage = getSystemPackageLPr(
724 handler.serviceInfo.packageName);
725 if (handlerPackage != null) {
726 return handlerPackage;
727 }
728 }
729 return null;
730 }
731
Svetoslav0010b702015-06-30 18:05:26 -0700732 private List<PackageParser.Package> getHeadlessSyncAdapterPackagesLPr(
733 String[] syncAdapterPackageNames, int userId) {
734 List<PackageParser.Package> syncAdapterPackages = new ArrayList<>();
735
736 Intent homeIntent = new Intent(Intent.ACTION_MAIN);
Svet Ganov05069b92015-08-01 12:19:26 -0700737 homeIntent.addCategory(Intent.CATEGORY_LAUNCHER);
Svetoslav0010b702015-06-30 18:05:26 -0700738
739 for (String syncAdapterPackageName : syncAdapterPackageNames) {
740 homeIntent.setPackage(syncAdapterPackageName);
741
Svetoslav8b24a1d2015-07-13 17:37:32 -0700742 List<ResolveInfo> homeActivities = mService.mActivities.queryIntent(homeIntent,
743 homeIntent.resolveType(mService.mContext.getContentResolver()),
744 PackageManager.GET_DISABLED_COMPONENTS, userId);
Svetoslav0010b702015-06-30 18:05:26 -0700745 if (!homeActivities.isEmpty()) {
746 continue;
747 }
748
749 PackageParser.Package syncAdapterPackage = getSystemPackageLPr(syncAdapterPackageName);
750 if (syncAdapterPackage != null) {
751 syncAdapterPackages.add(syncAdapterPackage);
752 }
753 }
754
755 return syncAdapterPackages;
756 }
757
Dianne Hackbornca8e6da2015-06-24 15:19:17 -0700758 private PackageParser.Package getDefaultProviderAuthorityPackageLPr(
759 String authority, int userId) {
760 ProviderInfo provider = mService.resolveContentProvider(authority, 0, userId);
761 if (provider != null) {
762 return getSystemPackageLPr(provider.packageName);
763 }
764 return null;
765 }
766
Svetoslavcdfd2302015-06-25 19:07:31 -0700767 private PackageParser.Package getPackageLPr(String packageName) {
768 return mService.mPackages.get(packageName);
769 }
770
Svet Ganovadc1cf42015-06-15 16:36:24 -0700771 private PackageParser.Package getSystemPackageLPr(String packageName) {
Svetoslavcdfd2302015-06-25 19:07:31 -0700772 PackageParser.Package pkg = getPackageLPr(packageName);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700773 if (pkg != null && pkg.isSystemApp()) {
Svetoslav4aa97972015-07-29 14:00:18 -0700774 return !isSysComponentOrPersistentPlatformSignedPrivAppLPr(pkg) ? pkg : null;
Svet Ganovadc1cf42015-06-15 16:36:24 -0700775 }
776 return null;
777 }
778
Svet Ganovadc1cf42015-06-15 16:36:24 -0700779 private void grantRuntimePermissionsLPw(PackageParser.Package pkg, Set<String> permissions,
780 int userId) {
Svet Ganov4bb51872015-07-16 18:56:16 -0700781 grantRuntimePermissionsLPw(pkg, permissions, false, false, userId);
Svet Ganov6a166af2015-06-30 10:15:44 -0700782 }
783
784 private void grantRuntimePermissionsLPw(PackageParser.Package pkg, Set<String> permissions,
785 boolean systemFixed, int userId) {
Svet Ganov4bb51872015-07-16 18:56:16 -0700786 grantRuntimePermissionsLPw(pkg, permissions, systemFixed, false, userId);
787 }
788
789 private void grantRuntimePermissionsLPw(PackageParser.Package pkg, Set<String> permissions,
790 boolean systemFixed, boolean overrideUserChoice, int userId) {
Svetoslav4aa97972015-07-29 14:00:18 -0700791 if (pkg.requestedPermissions.isEmpty()) {
792 return;
793 }
794
Svet Ganovadc1cf42015-06-15 16:36:24 -0700795 List<String> requestedPermissions = pkg.requestedPermissions;
Svetoslav4aa97972015-07-29 14:00:18 -0700796 Set<String> grantablePermissions = null;
Svet Ganovadc1cf42015-06-15 16:36:24 -0700797
798 if (pkg.isUpdatedSystemApp()) {
799 PackageSetting sysPs = mService.mSettings.getDisabledSystemPkgLPr(pkg.packageName);
800 if (sysPs != null) {
Svetoslav4aa97972015-07-29 14:00:18 -0700801 if (sysPs.pkg.requestedPermissions.isEmpty()) {
802 return;
803 }
804 if (!requestedPermissions.equals(sysPs.pkg.requestedPermissions)) {
805 grantablePermissions = new ArraySet<>(requestedPermissions);
806 requestedPermissions = sysPs.pkg.requestedPermissions;
807 }
Svet Ganovadc1cf42015-06-15 16:36:24 -0700808 }
809 }
810
Svetoslav4aa97972015-07-29 14:00:18 -0700811 final int grantablePermissionCount = requestedPermissions.size();
812 for (int i = 0; i < grantablePermissionCount; i++) {
Svet Ganovadc1cf42015-06-15 16:36:24 -0700813 String permission = requestedPermissions.get(i);
Svetoslav4aa97972015-07-29 14:00:18 -0700814
815 // If there is a disabled system app it may request a permission the updated
816 // version ot the data partition doesn't, In this case skip the permission.
817 if (grantablePermissions != null && !grantablePermissions.contains(permission)) {
818 continue;
819 }
820
Svet Ganovadc1cf42015-06-15 16:36:24 -0700821 if (permissions.contains(permission)) {
822 final int flags = mService.getPermissionFlags(permission, pkg.packageName, userId);
823
824 // If any flags are set to the permission, then it is either set in
825 // its current state by the system or device/profile owner or the user.
826 // In all these cases we do not want to clobber the current state.
Svet Ganov4bb51872015-07-16 18:56:16 -0700827 // Unless the caller wants to override user choices. The override is
828 // to make sure we can grant the needed permission to the default
829 // sms and phone apps after the user chooses this in the UI.
830 if (flags == 0 || overrideUserChoice) {
831 // Never clobber policy or system.
832 final int fixedFlags = PackageManager.FLAG_PERMISSION_SYSTEM_FIXED
833 | PackageManager.FLAG_PERMISSION_POLICY_FIXED;
834 if ((flags & fixedFlags) != 0) {
835 continue;
836 }
837
Svet Ganovadc1cf42015-06-15 16:36:24 -0700838 mService.grantRuntimePermission(pkg.packageName, permission, userId);
839 if (DEBUG) {
840 Log.i(TAG, "Granted " + permission + " to default handler "
841 + pkg.packageName);
842 }
Svet Ganov6a166af2015-06-30 10:15:44 -0700843
Svet Ganov77ab6a82015-07-03 12:03:02 -0700844 int newFlags = PackageManager.FLAG_PERMISSION_GRANTED_BY_DEFAULT;
Svet Ganov6a166af2015-06-30 10:15:44 -0700845 if (systemFixed) {
Svet Ganov77ab6a82015-07-03 12:03:02 -0700846 newFlags |= PackageManager.FLAG_PERMISSION_SYSTEM_FIXED;
Svet Ganov6a166af2015-06-30 10:15:44 -0700847 }
Svet Ganov77ab6a82015-07-03 12:03:02 -0700848
849 mService.updatePermissionFlags(permission, pkg.packageName,
850 newFlags, newFlags, userId);
Svet Ganovadc1cf42015-06-15 16:36:24 -0700851 }
852 }
853 }
854 }
855
Svetoslav4aa97972015-07-29 14:00:18 -0700856 private boolean isSysComponentOrPersistentPlatformSignedPrivAppLPr(PackageParser.Package pkg) {
Svet Ganov824d4532015-07-10 18:25:48 -0700857 if (UserHandle.getAppId(pkg.applicationInfo.uid) < FIRST_APPLICATION_UID) {
858 return true;
859 }
Svetoslav4aa97972015-07-29 14:00:18 -0700860 if (!pkg.isPrivilegedApp()) {
861 return false;
862 }
863 PackageSetting sysPkg = mService.mSettings.getDisabledSystemPkgLPr(pkg.packageName);
864 if (sysPkg != null) {
865 if ((sysPkg.pkg.applicationInfo.flags & ApplicationInfo.FLAG_PERSISTENT) == 0) {
866 return false;
867 }
868 } else if ((pkg.applicationInfo.flags & ApplicationInfo.FLAG_PERSISTENT) == 0) {
Svet Ganov824d4532015-07-10 18:25:48 -0700869 return false;
870 }
871 return PackageManagerService.compareSignatures(mService.mPlatformPackage.mSignatures,
872 pkg.mSignatures) == PackageManager.SIGNATURE_MATCH;
Svet Ganovadc1cf42015-06-15 16:36:24 -0700873 }
874
875 private static boolean doesPackageSupportRuntimePermissions(PackageParser.Package pkg) {
876 return pkg.applicationInfo.targetSdkVersion > Build.VERSION_CODES.LOLLIPOP_MR1;
877 }
878}