Earlier quoted context omitted.
This page has a table of OEMs/devices that, as of the end of May, were fewer than 60 days behind on patches. https://android-developers.googleblog.com/2017/06/2017-andro... To me, the takeaway from this is that unless you are using a "flagship" device, or one sold directly by Google, you're probably not getting updates in a timely manner.
And yet another time we learn why it is better to use Lineage OS. Five year old Samsung S3: Android: Version 7.1.2 Security Patch Level: 5th July 2017
Remotely Compromising Android and iOS via a bug in Broadcom's WI-FI Chipsets
151–160 of 171 posts
Re: Remotely Compromising Android and iOS via a bug in Broadcom's WI-FI Chipsets
#152Earlier quoted context omitted.
echo $original_comment | sed 's/driver/firmware/g'
In which case this is your answer; they're worried about knockoffs, because without the firmware logic their devices are simple commodities, ie don't really have strong differentiators from the competition.
Re: Remotely Compromising Android and iOS via a bug in Broadcom's WI-FI Chipsets
#153Earlier quoted context omitted.
In which case this is your answer; they're worried about knockoffs, because without the firmware logic their devices are simple commodities, ie don't really have strong differentiators from the competition.
Is their firmware really noticeably better or have more features than competing chipsets?
Similarly, cheaper chips often don't support optional performance-enhancing features at layers 2 and 3 (link and MAC) that boost performance without any hardware investment.
Re: Remotely Compromising Android and iOS via a bug in Broadcom's WI-FI Chipsets
#154Earlier quoted context omitted.
Programmer's mistake for not validating data, not the fault of C language mechanics. Yes it would be easier if , still gotta be careful. I've made plenty of these mistakes but never blamed the language.
There's a reason "THIS SIDE TOWARDS ENEMY" is a thing.
FRONT
TOWARD ENEMY
[1] https://en.wikipedia.org/wiki/M18_Claymore_mineRe: Remotely Compromising Android and iOS via a bug in Broadcom's WI-FI Chipsets
#155Given how limited pixel availability is and how quickly support is dropped compared to Apple, the logical recommendation is to drop android and switch to iPhones immediately.
Bring the downvotes but at least provide logical discussion.
Re: Remotely Compromising Android and iOS via a bug in Broadcom's WI-FI Chipsets
#156Why does Broadcom insist on proprietary drivers? How could it possibly be detrimental for Broadcom to have free software drivers? This article is a poignant example that it is detrimental for them to continue to keep their drivers proprietary.
There is no benefit. They probably have an embarrassing code base that is full of garbage and a bunch of lawyers paranoid about IP. Why would any manager suggest to take that risk that has very little potential upside. It isn't that it would be realistically detrimental, it just has no value to the individual attempting to change the established course of the ship
Re: Remotely Compromising Android and iOS via a bug in Broadcom's WI-FI Chipsets
#157Earlier quoted context omitted.
echo $original_comment | sed 's/driver/firmware/g'
In which case this is your answer; they're worried about knockoffs, because without the firmware logic their devices are simple commodities, ie don't really have strong differentiators from the competition.
The easiest example being b/g channel 13. You're permitted to use it for WiFi in most of the world, but not North America. Keeping the firmware proprietary and "secure" is likely an important part of their FCC/IC certifications.
Re: Remotely Compromising Android and iOS via a bug in Broadcom's WI-FI Chipsets
#158Why does Broadcom insist on proprietary drivers? How could it possibly be detrimental for Broadcom to have free software drivers? This article is a poignant example that it is detrimental for them to continue to keep their drivers proprietary.
2. These weren't drivers. Did you read the article?
3. The larger share of the blame belongs to Apple. Why does Apple trust devices like this that are essentially independent computers? Why should anything this chip does be able to take over the phone and install software on it, in privileged mode, that replicates itself?
4. Why can't you see things rationally?
Re: Remotely Compromising Android and iOS via a bug in Broadcom's WI-FI Chipsets
#159C's lack of array size info strikes again: memcpy(current_wmm_ie, ie->data, ie->len); where "ie" points to data obtained from the net.
Programmer's mistake for not validating data, not the fault of C language mechanics. Yes it would be easier if , still gotta be careful. I've made plenty of these mistakes but never blamed the language.
Re: Remotely Compromising Android and iOS via a bug in Broadcom's WI-FI Chipsets
#160Fortunately, this is being addressed in software updates. Unfortunately, people who own older devices are left with the vulnerability forever. The iPhone 4S alone sold ~60 million units (according to Wikipedia) and did not (and most likely will not) receive any updates.
Where can you learn if your device has been patched? I have an iPhone 5S. EDIT: From another comment [0], unfortunately if you've been holding out on updates like I have you'll have to upgrade to 10.3.3. [0] https://support.apple.com/en-us/HT207923