summaryrefslogtreecommitdiff
path: root/libs/androidfw/ConfigDescription.cpp
diff options
context:
space:
mode:
author Jackal Guo <jackalguo@google.com> 2022-11-21 14:17:32 +0800
committer Jackal Guo <jackalguo@google.com> 2022-11-24 14:58:00 +0800
commit54a9045190c3b0b8e21581ad2a9bd485af11b360 (patch)
treeb0740621318780e7c4309722cdae6d1c6c346d62 /libs/androidfw/ConfigDescription.cpp
parenta890b22d3a35e6e0728c9b9231421cc5e39a41ad (diff)
Validate EXTRA_INSTALLER_PACKAGE_NAME
When installing an app via ACTION_INSTALL_PACKAGE, the caller could use this extra field to specify the installer package name. As using PackageInstaller APIs, we should limit setting the installer package name that is not the caller only when apps with INSTALL_PACKAGES permission. Bug: 236687884 Test: atest CtsPackageInstallTestCases Test: manually using the PoC in the buganizer to ensure the symptom no longer exists. Merged-In: I74eb4ea2e2733321b5fbf328a9835a3ca7d0dfa9 Change-Id: I99af469730756e9b5bc6ea4af51b1ea796164ce7
Diffstat (limited to 'libs/androidfw/ConfigDescription.cpp')
0 files changed, 0 insertions, 0 deletions