From c33865ff6c94a9868a722cd0449464b13df78a4c Mon Sep 17 00:00:00 2001 From: Daniel Micay Date: Mon, 9 May 2022 14:27:40 -0400 Subject: [PATCH] reword/expand patching information --- static/features.html | 15 +++++++++------ 1 file changed, 9 insertions(+), 6 deletions(-) diff --git a/static/features.html b/static/features.html index 93f2a1be..851af836 100644 --- a/static/features.html +++ b/static/features.html @@ -320,14 +320,17 @@

GrapheneOS includes fixes for many vulnerabilities not yet fixed in Android. On modern devices with Generic Kernel Image (GKI) support, we the - kernel to the latest stable GKI release many months before the stock OS gets - the update. This means we're shipping hundreds of fixes not included in the - stock OS including many security fixes. We also backport more fixes on top of - this for the kernel and for other components too.

+ update kernel to the latest stable GKI release many months before the stock OS + gets the update. This means we're shipping hundreds of fixes not included in + the stock OS including many security fixes. We also backport more fixes on top + of this for the kernel and for other components too.

-

We often new vulnerabilities ourselves and report them upstream. We've +

We often find new vulnerabilities ourselves and report them upstream. We've reported dozens of vulnerabilities for both the generic Android codebase and - also for Pixels specifically.

+ also for Pixels specifically. We also often find missed patches which were + supposed to be included but were missed, especially when there are device + specific components with partially shared but separate codebases for different + devices.

Our overall approach is to focus on systemic privacy and security improvements but fixing individual vulnerabilities is still very