I think I saw a fix by @chrmhoffmann for the 2nd SIM being able to use LTE. Its available from the Nov 7 LOS update released earlier today.
@jnsp Do we need an updated modem file from the 17.11.2 update (released today)?
Only the bootloader blob has changed. I donāt know if it contains any security fixes.
Iām preparing a new release, will be online in a few minutes.
Edit: Done, the latest modem file is available through the link in the top post.
I just did the update and have los 20171107, but the patchlevel is displayed as Oct 5? No security updates or mistake?
Since the Android Security BulletināNovember 2017 was just released yesterday, I think Lineage does not yet have the fixes.
Quote from the above bullentin:
Source code patches for these issues will be released to the Android Open Source Project (AOSP) repository in the next 48 hours. We will revise this bulletin with the AOSP links when they are available.
Possible, yesā¦ Was the security level updated for the mid month KRACK fix? I canāt remember. But then, it also might show the partial Nov 1 level, but i donāt know better than youā¦
No, since KRACK has no own patchlevel string.
According to this, we didnāt yet get a patch for CVE-2017-7541, which is part of the 2017-11-01 security patch level.
Uffā¦ wish I hadnāt seen this
So many CVEs unpatched
Thanks
CVE-2017-7541 is for broadcom wifi. FP2 is not affected by this, even though FP might have fixed this in the kernel.
Hi,
I am trying to go through the CVEs. But itās a lot of stuff and work. But: I merge the FP open kernel source, that means that we have the same protection as FP Open.
Iād even be bold and claim that the lineage kernel has more CVEs fixed than the FPopen, as I have merged more CVEs that are not covered in FP open or from Qualcomm CAF.
Iād have only one advice: if you are really concerned by security fixes, the only viable option at the moment is to buy a Pixel phone. Thatās sad, but true.
MSM8974 does not get support anymore from qualcomm (for a while now). So who knows what problems the modem, blobs, or other closed source components have, that neither QCOM, nor FP can fix.
Lineage is doing best they can, butā¦
Chris
Didnāt know that that much is on your shouldersā¦ But thinking about it, these are not LOS CVEs but kernelās, and so itās your burdenā¦ Canāt thank you enough, and I think with some conscious usage patterns one can at least try to minimize the exposureā¦ In the end, there are probably still lots of undetected bugs, at least undetected by the āgood sideā. So, thanks again, and donāt let you get frustrated by the amount of work and naive āconsumersā
No problem. I just wanted to clarify, that this is a constant work-in-progress and I try to do my best in my spare time.
Chris
PS: I was not joking about buying a Pixel. At the moment, the only guys who are to some extend on top of the security stuff is unfortunatly google.
No, I know, the Pixel is indeed first in line, and then thereās a certain amount of man power available at Googleā¦ Probably I even would use a Google device, if I hadnāt found the FP2, in 2015ā¦
Update installed via TWRP (Edit: still 3.1.1-1 before I saw that 3.1.1-2 is out):
- lineage-14.1-20171107-nightly-FP2-signed.zip
- modem-17.11.2.zip
- open_gapps-arm-7.1-pico-20171107.zip
The following things work for me so far:
- call / be called
- send SMS / receive SMS
- internet via WiFi
- internet via mobile network
- location
- compass
- screenshot
- main camera (new module)
- selfie camera (new module)
- USB connection to PC / MTP
- alarm (incl. swiping it off)
- MyPhoneExplorer
- root
Would that result in the Baseband version being unchanged (4437.1-FP2-0-07)?
Iām glad youāre asking thisā¦ I havenāt got a clue about any of this, itās all new to me. Iām just glad there are people like @jnsp and @chrmhoffmann around
Thanks for all the work youāre all doing!!
Does anybody else have the problem, that when the phone is off and charging, it wonāt boot? I have to unplug it, boot it and then replug it.
Yes, I do have the problem tooā¦
My Problem was not any more getting Access to the system at all. I failed the moment I tried to enter the PIN for the SIM. I did not have access to the settings anymore.
Try new lineage from today.
Chris
Yes, the baseband blob hasnāt changed.