Zmiany od wydania 2025040700:
- Pełne wydanie z poziomem poprawek bezpieczeństwa z dnia 2025-04-05
- Przeniesienie na wydanie BP1A.250405.007.D1 Android Open Source Project
- Usunięcie kodu dla Qualcomm XTRA (PSDS) ze względu na poprawy prywatności, ponieważ nie mamy już urządzeń z Qualcomm GNSS i możemy je ponownie dodać w przyszłości, jeśli będzie to konieczne
- Naprawienie luki w zabezpieczeniach w funkcji RecoverySystem.verifyPackage(...) (nie była to luka bezpośrednio wykorzystywana ze względu na dwie warstwy weryfikacji podpisu pakietu aktualizacji i ochronę przed cofnięciem wersji, ale pierwsza warstwa ochrony powinna działać poprawnie, aby uniknąć wykorzystania luki w drugiej warstwie)
- Android Debug Bridge: bardziej kompletna naprawa błędu use-after-free dla połączeń sieciowych, który jest wykrywany przez nasze zawsze włączone wsparcie dla oznaczeń pamięci sprzętowej w hardened_malloc
- Jądro (6.1): aktualizacja do najnowszej wersji gałęzi GKI LTS
- Jądro (6.6): aktualizacja do najnowszej wersji gałęzi GKI LTS, w tym aktualizacja do wersji 6.6.83
- Seedvault: aktualizacja do wersji 15-5.5 (w przyszłości zostanie zastąpiony przez lepszą implementację kopii zapasowych)
- Vanadium: aktualizacja do wersji 135.0.7049.79.0
- Auditor: aktualizacja do wersji 88
- Przeglądarka PDF: aktualizacja do wersji 27
- Przeglądarka PDF: aktualizacja do wersji 28
2025042500Tags: • 2025042500 (Pixel 6, Pixel 6 Pro, Pixel 6a, Pixel 7, Pixel 7 Pro, Pixel 7a, Pixel Tablet, Pixel Fold, Pixel 8, Pixel 8 Pro, Pixel 8a, Pixel 9, Pixel 9 Pro, Pixel 9 Pro XL, Pixel 9 Pro Fold, emulator, generic, other targets)Changes since the 2025041100 release: • Bluetooth: backport upstream fixes for compatibility with certain Bluetooth peripherals caused by a recent security fix for Bluetooth encryption • avoid granting special runtime permissions (Network, Sensors) added by GrapheneOS when unarchiving an app • use our restricted setting infrastructure to restrict system app access to our notification forwarding setting too • Settings: prevent disabling system Dialer app since it's always required for emergency calls • kernel (6.1): update to latest GKI LTS branch revision including update to 6.1.134 • kernel (6.6): update to latest GKI LTS
2025050300
(Pixel 6, Pixel 6 Pro, Pixel 6a, Pixel 7, Pixel 7 Pro, Pixel 7a, Pixel Tablet, Pixel Fold, Pixel 8, Pixel 8 Pro, Pixel 8a, Pixel 9, Pixel 9 Pro, Pixel 9 Pro XL, Pixel 9 Pro Fold, emulator, generic, other targets)Changes since the
extend security state manager service to support the official Auditor release (based on the signing key) obtaining additional security state (currently the configuration for auto-reboot, USB-C port and pogo pins control, OEM unlocking and user count) • Auditor: add default enabled data saver exemption • kernel (Pixel 8, Pixel 8 Pro, Pixel 8a, Pixel 9, Pixel 9 Pro, Pixel 9 Pro XL, Pixel 9 Pro Fold): switch to synchronous mode for the Hardware Tag-Based KASAN implementation to improve security and error reporting (we'll continue using asymmetric mode in userspace where it provides very comparable security and error reporting to synchronous mode with lower overhead) • kernel (6.1): update to latest GKI LTS branch revision • kernel (6.1): revert upstream Linux kernel change attempting to work around frame drops caused by a workaround used by video players on X11-based platforms (irrelevant to Android) due to it breaking DisplayPort alternate mode audio • kernel (6.6): update to latest GKI LTS branch revision including update to 6.6.88 • PDF Viewer: update to version 29 • PDF Viewer: update to version 30 • Vanadium: update to version 136.0.7103.60.0 • GmsCompatConfig: update to version 157 • GmsCompatConfig: update to version 158
2025050500This is an early May security update release based on the May 2025 security patch backports since the monthly Android Open Source Project and stock Pixel OS release scheduled for this month hasn't been published yet.Tags: • 2025050500 (Pixel 6, Pixel 6 Pro, Pixel 6a, Pixel 7, Pixel 7 Pro, Pixel 7a, Pixel Tablet, Pixel Fold, Pixel 8, Pixel 8 Pro, Pixel 8a, Pixel 9, Pixel 9 Pro, Pixel 9 Pro XL, Pixel 9 Pro Fold, emulator, generic, other targets)Changes since the 2025050300 release: • full 2025-05-01 security patch level
2025050700Tags: • 2025050700 (Pixel 6, Pixel 6 Pro, Pixel 6a, Pixel 7, Pixel 7 Pro, Pixel 7a, Pixel Tablet, Pixel Fold, Pixel 8, Pixel 8 Pro, Pixel 8a, Pixel 9, Pixel 9 Pro, Pixel 9 Pro XL, Pixel 9 Pro Fold, emulator, generic, other targets)Changes since the 2025050500 release: • full 2025-05-05 security patch level • rebased onto BP1A.250505.005.D1 Android Open Source Project release • Vanadium: update to version 136.0.7103.87.0
2025051900Tags: • 2025051900 (Pixel 6, Pixel 6 Pro, Pixel 6a, Pixel 7, Pixel 7 Pro, Pixel 7a, Pixel Tablet, Pixel Fold, Pixel 8, Pixel 8 Pro, Pixel 8a, Pixel 9, Pixel 9 Pro, Pixel 9 Pro XL, Pixel 9 Pro Fold, emulator, generic, other targets)Changes since the 2025050700 release: • add NFC auto-turn-off setting to go along with the existing addition of Wi-Fi and Bluetooth auto-turn-off settings • Private Space: add new setting for disabling delayed locking of storage to make locking work like secondary user end session feature we enable, similar to the toggle we add for disabling secondary users running in the background (standard Private Space doesn't work this way to keep fingerprint unlock available after it's locked/stopped) • Private Space: add new setting for blocking sharing the clipboard to and/or from the parent profile and other nested profiles within it • Private Space: add support for the Install available apps feature we currently enable to support installing apps available in the O

user to secondary users • Private Space: add support for secondary users including all standard features with the exception of auto-locking support since our implementation of that is too complex/invasive to properly review and test while we're focused on Android 16 porting • kernel (6.1): update to latest GKI LTS branch revision including update to 6.1.138 • kernel (6.6): update to latest GKI LTS branch revision including update to 6.6.89 • Keyboard: move the emoji key to the left of the space bar for the phone layout instead of putting it behind a long press or replacing the enter key with it when put into the emoji mode by apps like AOSP Messaging • Keyboard: stop replacing the emoji key with the .com key for the email and URL input types • Vanadium: update to version 136.0.7103.125.0 • add support for testing Android 16 Beta 4.1 feature flags for development builds
2025052000Tags: • 2025052000 (Pixel 6, Pixel 6 Pro, Pixel 6a, Pixel 7, Pixel 7 Pro, Pixel 7a, Pixel Tablet, Pixel Fold, Pixel 8, Pixel 8 Pro, Pixel 8a, Pixel 9, Pixel 9 Pro, Pixel 9 Pro XL, Pixel 9 Pro Fold, emulator, generic, other targets)Changes since the 2025051900 release: • Private Space: set correct state on user start or stop for secondary users • Private Space: make sure nested profiles in secondary users have their storage put at rest when the parent profile's session is ended • Keyboard: remove dedicated language switch key from the phone layout since it's already shown by the OS itself and uses up too much space with the emoji key already next to the space bar
2025060100Tags: • 2025060100 (Pixel 6, Pixel 6 Pro, Pixel 6a, Pixel 7, Pixel 7 Pro, Pixel 7a, Pixel Tablet, Pixel Fold, Pixel 8, Pixel 8 Pro, Pixel 8a, Pixel 9, Pixel 9 Pro, Pixel 9 Pro XL, Pixel 9 Pro Fold, emulator, generic, other targets)Changes since the 2025052800 release: • Media Provider: expand our existing protection against CVE-2024-50089 which is still not addressed upstream (we added generic hardening in 2022 as a prerequisite for Storage Scopes which along with fixing information leaks still unfixed upstream blocked exploiting CVE-2024-50089 for the common cases of not granting permissions, granting media permissions or using our Storage Scopes feature but we didn't fully cover "All files access" or the legacy API level equivalent when not using Storage Scopes) • System Updater: prevent disabling overall notifications due to lack of a use case and many users doing it by accident, but continue allowing disabling the individual notification channels other than the reboot notification • kernel (6.6): update to latest GKI LTS branch revision including update to 6.6.92 • Messaging: update to version 8
2025060200This is an early June security update release based on the June 2025 security patch backports since the yearly Android Open Source Project and stock Pixel OS release scheduled for this month hasn't been published yet.Tags: • 2025060200 (Pixel 6, Pixel 6 Pro, Pixel 6a, Pixel 7, Pixel 7 Pro, Pixel 7a, Pixel Tablet, Pixel Fold, Pixel 8, Pixel 8 Pro, Pixel 8a, Pixel 9, Pixel 9 Pro, Pixel 9 Pro XL, Pixel 9 Pro Fold, emulator, generic, other targets)Changes since the 2025060100 release: • full 2025-06-01 security patch level • System Updater: temporarily revert notification protection due to upstream Android UI issues for this feature with privileged apps (we still plan to do this but it will need to wait until we resolve the OS
2025061000This will likely be the final release based on Android 15 QPR2 since Android 16 has been released today.Tags: • 2025061000 (Pixel 6, Pixel 6 Pro, Pixel 6a, Pixel 7, Pixel 7 Pro, Pixel 7a, Pixel Tablet, Pixel Fold, Pixel 8, Pixel 8 Pro, Pixel 8a, Pixel 9, Pixel 9 Pro, Pixel 9 Pro XL, Pixel 9 Pro Fold, emulator, generic, other targets)Changes since the 2025060200 release: • expand our code for checking Google Play Store source stamp signatures to checking each split APK in order to prepare it for future security-relevant usage including optionally marking apps as installed from the Play Store after verifying the source stamp (this is currently used for stripping Play Store inserted checks for apps being installed from the Play Store which had looser security requirements) • remove Chunghwa Telecom and Netlock Certificate Authorities (CAs) based on the decision by the Chrome Root Store (this does not impact Vanadium since it uses a more sophisticated browser root store rather than the OS root store and will distrust certificates from these CAs not added to Certificate Transparency logs before 2025-08-01 to avoid website compatibility issues) • kernel (6.1): update to latest GKI LTS branch revision including update to 6.1.141 • kernel (6.6): update to latest GKI LTS branch revision • Vanadium: update to version 137.0.7151.72.0 • Vanadium: update to version 137.0.7151.72.1 • Messaging: update to version 9 • Network Location: increase difficulty of position estimation tests to help avoid regressions
2025061300Tags: • 2025061300 (Pixel 6, Pixel 6 Pro, Pixel 6a, Pixel 7, Pixel 7 Pro, Pixel 7a, Pixel Tablet, Pixel Fold, Pixel 8, Pixel 8 Pro, Pixel 8a, Pixel 9, Pixel 9 Pro, Pixel 9 Pro XL, Pixel 9 Pro Fold, emulator, generic, other targets)Changes since the 2025061000 release: • update SoC and cellular radio firmware to the Android 16 releases to ship the security patches prior to our Android 16 port • Vanadium: update to version 137.0.7151.89.0 • Messaging: update to version 10