syzbot is the hardest working researcher in the industry, and doesn’t even ask for cves https://googleprojectzero.blogspot.com/2019/11/bad-binder-android-in-wild-exploit.html …
-
-
Because Android devices never upgrade to a newer kernel version than they ship with and get the bare minimum of security fixes cherry picked to old kernels. It would be a ton of work to backport every syzkaller bug.
-
would it be that much work to just ship the same kernel they’re shipping with newer devices? i assume they’re still getting os updates, but i didn’t realize that didn’t include kernel updates
- Još 2 druga odgovora
Novi razgovor -
-
-
It's weird, the kernel version itself was actually updated past the version number it was patched in, but I guess that patch was never pulled into the source they use. Android has a huge problem with fragmentation with the mainline kernel.
- Još 1 odgovor
Novi razgovor -
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.