reword/expand patching information

This commit is contained in:
Daniel Micay 2022-05-09 14:27:40 -04:00
parent 6a1b3041ef
commit c33865ff6c

View File

@ -320,14 +320,17 @@
<p>GrapheneOS includes fixes for many vulnerabilities not yet fixed in <p>GrapheneOS includes fixes for many vulnerabilities not yet fixed in
Android. On modern devices with Generic Kernel Image (GKI) support, we the Android. On modern devices with Generic Kernel Image (GKI) support, we the
kernel to the latest stable GKI release many months before the stock OS gets update kernel to the latest stable GKI release many months before the stock OS
the update. This means we're shipping hundreds of fixes not included in the gets the update. This means we're shipping hundreds of fixes not included in
stock OS including many security fixes. We also backport more fixes on top of the stock OS including many security fixes. We also backport more fixes on top
this for the kernel and for other components too.</p> of this for the kernel and for other components too.</p>
<p>We often new vulnerabilities ourselves and report them upstream. We've <p>We often find new vulnerabilities ourselves and report them upstream. We've
reported dozens of vulnerabilities for both the generic Android codebase and reported dozens of vulnerabilities for both the generic Android codebase and
also for Pixels specifically.</p> also for Pixels specifically. We also often find missed patches which were
supposed to be included but were missed, especially when there are device
specific components with partially shared but separate codebases for different
devices.</p>
<p>Our overall approach is to focus on systemic privacy and security <p>Our overall approach is to focus on systemic privacy and security
improvements but fixing individual vulnerabilities is still very improvements but fixing individual vulnerabilities is still very