Another Qualcomm kernel buffer overflow not included in the August security update: https://www.codeaurora.org/buffer-overflow-vulnerability-wcnsswlanwrite-cve-2016-5342 …. Including this for 5X/6P too.
Maybe it's something that could be done incrementally as a project to use phones for non-phone/non-Android purposes.
-
-
Little can be done about the inability to update radio/bootloader/TrustZone and proprietary userspace blobs after EOL though.
-
Lack of support for firmware after a few months is already the norm for desktops/laptops so perhaps no one actually cares...
-
Lots of the kernel drivers are really just shims for userspace blobs where the real work is done. Upstreaming those is one step.
-
Are the drivers just proprietary userspace processes that run effectively with kernel privs via their shims?
-
Some of them are close to root, but in many cases there's a privilege boundary or at least there's supposed to be a boundary.
-
For example, the kernel OpenGL drivers are a tiny part of the overall picture. Pixel C uses Nouveau, but paired with huge blobs.
-
For GL that's typical; in theory it's something you can completely do without, though.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.