Tags:

  • 2025041100 (Pixel 6, Pixel 6 Pro, Pixel 6a, Pixel 7, Pixel 7 Pro, Pixel 7a, Pixel Tablet, Pixel Fold, Pixel 8, Pixel 8 Pro, Pixel 8a, Pixel 9, Pixel 9 Pro, Pixel 9 Pro XL, Pixel 9 Pro Fold, emulator, generic, other targets)

Changes since the 2025040700 release:

  • full 2025-04-05 security patch level
  • rebased onto BP1A.250405.007.D1 Android Open Source Project release
  • remove code for Qualcomm XTRA (PSDS) privacy improvements since we no longer have any devices with Qualcomm GNSS and we can add it back in the future if we need it again rather than porting it forward under the assumption we’ll be using it
  • fix upstream RecoverySystem.verifyPackage(…) vulnerability (this was not directly exploitable due to there being 2 layers of update package signature verification and downgrade protection, but the first layer of protection should work properly to avoid a vulnerability in the 2nd layer being exploited)
  • Android Debug Bridge: more complete fix for upstream use-after-free bug for network-based connections which is being caught by our always enabled hardware memory tagging support for the base OS in hardened_malloc
  • kernel (6.1): update to latest GKI LTS branch revision
  • kernel (6.6): update to latest GKI LTS branch revision including update to 6.6.83
  • Seedvault: update to 15-5.5 (will be replaced with a better backup implementation in the future)
  • Vanadium: update to version 135.0.7049.79.0
  • Auditor: update to version 88
  • PDF Viewer: update to version 27
  • PDF Viewer: update to version 28
    • @[email protected]
      link
      fedilink
      English
      0
      edit-2
      6 days ago

      Yeah. A lot more than receiving a random notification “ah btw your phone updated and stuff. Go figure out elsewhere whatever we just did”.

        • @[email protected]
          link
          fedilink
          English
          05 days ago

          Yes…and hope/assume that the installed update is the latest one on the list. Because again there’s no indication of this on the notification about what your phone just did. Again, the way grapheneos communicates it just ran an update is about the worst I’ve seen on any OS/distro of any kind. Maybe PS4 and their ‘system stability’ non-information might be even worse, but at least that’s something you could check on the spot within the update itself. There’s a complete disconnection between what your phone does and what the information about what it just did might be. You need to go find it and hope you find the correct one.

          • @[email protected]OPM
            link
            fedilink
            English
            05 days ago

            The update app scroll automatically to the latest update that is installed on your device, so you can read the release notes.