Jump to content

Copy-fail: Rockchip kernel on apt repos lags wrt the current kernel advertised on board pages


Recommended Posts

Posted

Hi, just noticed that rockchip kernels in apt repos lag wrt to those advertised on board pages. For example if you are on rockpro64 the web page https://armbian.com/boards/rockpro64 will tell you that the current kernel for this board is 6.18.26. However, the apt repos will give you 6.18.10 as the most recent current kernel.

This seems particularly problematic today, with the serious copy-fail vulnerability that, to the best of my understanding, also affects ARM. Specifically, the board pages will give you the impression that you are on a kernel new enough to have the vulnerability patched, while in fact updating the system will not give you that kernel, but a vulnerable one. All boards with the rockchip64 kernel seem to be affected.

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Restore formatting

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...
×
×
  • Create New...

Important Information

Terms of Use - Privacy Policy - Guidelines