Donate to e Foundation | Murena handsets with /e/OS | Own a part of Murena! Learn more

Commit 37fbb483 authored by Treehugger Robot's avatar Treehugger Robot Committed by Automerger Merge Worker
Browse files

Merge "Validate URI-based shortcut icon at creation time." into rvc-dev am:...

Merge "Validate URI-based shortcut icon at creation time." into rvc-dev am: bdcf6b3c am: bf3e2fd9

Original change: https://googleplex-android-review.googlesource.com/c/platform/frameworks/base/+/24046929



Change-Id: I8573f7aafec6212117fb63874c26de55b2253a09
Signed-off-by: default avatarAutomerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
parents 9b791f0b bf3e2fd9
Loading
Loading
Loading
Loading
+22 −0
Original line number Diff line number Diff line
@@ -34,6 +34,7 @@ import android.app.usage.UsageStatsManagerInternal;
import android.appwidget.AppWidgetProviderInfo;
import android.content.BroadcastReceiver;
import android.content.ComponentName;
import android.content.ContentProvider;
import android.content.Context;
import android.content.Intent;
import android.content.IntentFilter;
@@ -1900,11 +1901,32 @@ public class ShortcutService extends IShortcutService.Stub {
        }
        if (shortcut.getIcon() != null) {
            ShortcutInfo.validateIcon(shortcut.getIcon());
            validateIconURI(shortcut);
        }

        shortcut.replaceFlags(shortcut.getFlags() & ShortcutInfo.FLAG_LONG_LIVED);
    }

    // Validates the calling process has permission to access shortcut icon's image uri
    private void validateIconURI(@NonNull final ShortcutInfo si) {
        final int callingUid = injectBinderCallingUid();
        final Icon icon = si.getIcon();
        if (icon == null) {
            // There's no icon in this shortcut, nothing to validate here.
            return;
        }
        int iconType = icon.getType();
        if (iconType != Icon.TYPE_URI && iconType != Icon.TYPE_URI_ADAPTIVE_BITMAP) {
            // The icon is not URI-based, nothing to validate.
            return;
        }
        final Uri uri = icon.getUri();
        mUriGrantsManagerInternal.checkGrantUriPermission(callingUid, si.getPackage(),
                ContentProvider.getUriWithoutUserId(uri),
                Intent.FLAG_GRANT_READ_URI_PERMISSION,
                ContentProvider.getUserIdFromUri(uri, UserHandle.getUserId(callingUid)));
    }

    private void fixUpIncomingShortcutInfo(@NonNull ShortcutInfo shortcut, boolean forUpdate) {
        fixUpIncomingShortcutInfo(shortcut, forUpdate, /*forPinRequest=*/ false);
    }