commit | 25dd43a9a5073f0e59102750cb0410b8e9bc9847 | [log] [tgz] |
---|---|---|
author | Nick Kralevich <nnk@google.com> | Fri Jan 27 13:06:53 2012 -0800 |
committer | Nick Kralevich <nnk@google.com> | Fri Apr 27 14:18:02 2012 -0700 |
tree | 40a30dab41a4879b4282151dac6d893dfca91e1e | |
parent | a02ff986fc0fe5543bb2168814eee04eac8ef579 [diff] |
Restrict zygote to system user. CVE-2011-3918: Address denial of service attack against Android's zygote process. This change enforces that only UID=system can directly connect to zygote to spawn processes. Change-Id: I89f5f05fa44ba8582920b66854df3e79527ae067