Richard Hughes

@hughsie
2.4K Followers
553 Following
1.3K Posts
I write free software. Firmware troublemaker.
Websitehttps://hughsie.com/
GitHubhttps://github.com/hughsie
Wow, this photo ⚡️
𝗔𝗠𝗗 running with 𝗰𝗼𝗿𝗲𝗯𝗼𝗼𝘁 on the 𝗦𝘁𝗮𝗿𝗙𝗶𝗴𝗵𝘁𝗲𝗿.
It's not quite ready for release yet, but progress is looking good, and we can't wait to show you more.
Who's excited? :)

Any translation love for the #fwupd release scheduled for next week would be wonderful: https://hosted.weblate.org/projects/fwupd/fwupd/

Thanks!

fwupd/fwupd

fwupd is being translated into 50 languages using Weblate. Join the translation or start translating your own project.

Hosted Weblate

I've tagged #fwupd 2.0.21 which backports fixes for over 250 potential security issues found using various AI security scanners over the last 3 months.

The 2.1.x releases include even more fixes and hardening work, and so most users should use those instead; this release is provided for the more conservative distros.

https://github.com/fwupd/fwupd/releases/tag/2.0.21

Release 2.0.21 · fwupd/fwupd

This release backports fixes for over 250 potential security issues found using various AI security scanners over the last 3 months. The 2.1.x releases include even more fixes and hardening work, a...

GitHub
This is the biggest lie in software development right now. #github

I have very conflicting feelings about this :D

#electronics #repair #righttorepair

Can any #systemd people who know what `char-usb_device` is help with https://github.com/fwupd/fwupd/pull/10481 please. I'm very confused why adding /dev/bus/usb/ makes it work for the reporter.
trivial: Allow fastboot mode modem when using the modem-manager plugin by rolling-group · Pull Request #10481 · fwupd/fwupd

trivial: Allow fastboot mode modem when using the modem-manager plugin

GitHub
fix: add bounds check before memcpy in fu-usb-device.c by orbisai0security · Pull Request #10486 · fwupd/fwupd

Summary Fix high severity security issue in libfwupdplugin/fu-usb-device.c. Vulnerability Field Value ID V-005 Severity HIGH Scanner multi_agent_ai Rule V-005 File libfwupdplugin/fu-...

GitHub

This is next level infosec shitposing:

"It is the FreeBSD analogue of Linux's Dirty Pipe, CopyFail, Fragnesia, and Dirty Frag — except we gave it a BETTER name, with a BETTER logo, on a BETTER website. The other bug websites? Disasters. Sad. Many people have told us this."

https://bumsrake.de/
#CVE202645257

BUMSRAKETE™ — The Most Beautiful, Most Tremendous FreeBSD Vulnerability In The History Of Computing. BELIEVE ME.

BUMSRAKETE is a HUGE, TREMENDOUS, MANY-PEOPLE-ARE-SAYING FreeBSD kTLS-RX page-cache write primitive. The BEST primitive. Some say the best ever.

If you want to try this, do "fwupdmgr enable-remote lvfs-testing" and tomorrow there should be an update available. I'll move it to stable when it's had some success reports in the 'testing' remote.