"Unfortunately, a recent software update was not successful. Your vehicle cannot be driven.

Please call customer support"

@danluu Atomic updates and rollbacks seem to be foreign concepts to the car industry.

@eliasp @danluu it is likely that the design of the system makes it so that simply slapping on a second system partition for rollbacks is not enough. In fact it may be already present there.

The car runs a network of computers running a variety of systems. The display in the photo might be a QNX machine running an Android VM and these two systems need to coordinate their updates.

#BrokenByDesign