diff --git a/Manifests/Manifest_LAOS-20.0.xml b/Manifests/Manifest_LAOS-20.0.xml index b7c26f7f..83ceab4d 100644 --- a/Manifests/Manifest_LAOS-20.0.xml +++ b/Manifests/Manifest_LAOS-20.0.xml @@ -59,10 +59,24 @@ + + + + + + + + + + + + + + @@ -136,10 +150,14 @@ - + + + + - --> + diff --git a/Misc/all_devices.txt b/Misc/all_devices.txt new file mode 100644 index 00000000..9156a873 --- /dev/null +++ b/Misc/all_devices.txt @@ -0,0 +1,416 @@ +a3xelte +a52q +a5xelte +a5y17lte +A6020 +a72q +a7xelte +a7y17lte +addison +ahannah +akari +akatsuki +albus +alioth +Amber +angler +anne +apollo +apollon +armani +athene +aura +aurora +avicii +axolotl +axon7 +bacon +barbet +bardock +bardockpro +beckham +berkeley +berlin +beryllium +beyond0lte +beyond1lte +beyond2lte +beyondlte +beyondx +bluejay +blueline +bonito +bramble +bullhead +cancro +capricorn +castor +castor_windy +cedric +cepheus +chagalllte +chagallwifi +channel +chaozu +charlotte +che10 +cheeseburger +cheetah +chef +cherry +cheryl +chiron +clark +condor +coral +crackling +crosshatch +crownlte +d1 +d2att +d2s +d2spr +d2tmo +d2vzw +d2x +d800 +d801 +d802 +d803 +d850 +d851 +d852 +d855 +davinci +deadpool +deb +dipper +discovery +dogo +dragon +dre +DRG +dubai +dumpling +enchilada +equuleus +espresso +espresso3g +espressowifi +ether +evert +f1f +f400 +fajita +falcon +figo +find7 +flame +flo +flounder +flounder_lte +flox +foster +foster_tab +FP2 +FP3 +FP4 +fugu +g2m +gauguin +gemini +ghost +ginkgo +gohan +griffin +grouper +grus +gta4xl +gta4xlwifi +gtelwifiue +gtesqltespr +gts210ltexx +gts210vewifi +gts210wifi +gts28vewifi +gts4lv +gts4lvwifi +guacamole +guacamoleb +h811 +h815 +h830 +h850 +h870 +h910 +h918 +h990 +ha3g +ham +hammerhead +hannah +harpia +hayabusa +heart +hero2lte +herolte +hiae +himaul +himawl +hlte +hltechn +hltekor +hltetmo +hotdog +hotdogb +huashan +hydrogen +I001D +I01WD +i9100 +i9300 +i9305 +ido +instantnoodle +instantnoodlep +ivy +j7elte +jactivelte +jag3gds +jagnm +jalebi +jasmine +jasmine_sprout +jason +jellypro +jflteatt +jfltespr +jfltevzw +jfltexx +jfvelte +k3gxx +kane +karin +karin_windy +kccat6 +kebab +kenzo +kiev +kingdom +kipper +kirin +kiwi +klimtwifi +klte +klteactivexx +klteaio +kltechn +kltechnduo +klteduos +kltedv +kltekdi +kltekor +kltesprsports +ks01lte +ks01ltexx +kugo +kuntao +lake +land +lavender +lemonade +lemonadep +lentislte +lettuce +libra +lithium +lmi +ls990 +ls997 +lt02ltespr +lt03lte +lux +m20lte +m216 +m7 +m7vzw +m8 +m8d +maguro +mako +manta +marlin +maserati +mata +mdarcy +mdarcy_tab +merlin +mermaid +miatol +miatoll +mido +mint +mondrianwifi +monet +montana +ms013g +mt2 +n1awifi +n2awifi +n3 +n5100 +n5110 +n5120 +n7100 +nairo +nash +natrium +nex +nicki +nio +nx512j +nx563j +obiwan +ocean +odin +onclite +oneplus2 +oneplus3 +onyx +oriole +osprey +otus +P024 +paella +panther +payton +pdx203 +peach +peregrine +piccolo +pioneer +PL2 +platina +pme +polaris +pollux +pollux_windy +porg +porg_tab +pro1 +pstar +pyxis +quill +quill_tab +r5 +r7plus +r7sf +racer +raphael +raven +redfin +rhannah +river +RMX1801 +RMX1851 +roth +rs988 +s2 +s3ve3gds +s3ve3gjv +s3ve3gxx +s5neolte +sagit +sailfish +sake +santoni +sargo +scorpio +seed +serrano3gxx +serranodsdd +serranoltexx +shamu +shieldtablet +sirius +spyder +star2lte +starlte +sumire +sunfish +surnia +surya +suzu +suzuran +t0lte +t6 +t6vzw +taimen +taoshan +targa +tenshi +thea +thor +tilapia +tissot +titan +tomato +toro +toroplus +TP1803 +troika +tsubasa +tulip +twolip +umts_spyder +ursa +us996 +us997 +v1awifi +v400 +v410 +v480 +v500 +v521 +vayu +vegetalte +victara +violet +voyager +vs985 +vs995 +w5 +w7 +wade +walleye +wayne +whyred +wt88047 +X00P +X00TD +X01AD +X01BD +x2 +xmsirius +xt897 +xz2c +yellowstone +YTX703F +YTX703L +yuga +Z008 +Z00A +Z00D +Z00L +Z00T +Z01R +z2_plus +z3 +z3c +zangya +zangyapro +zenfone3 +zerofltexx +zeroltexx +zippo +zl1 diff --git a/Patches/Common/android_vendor_divested/packages.mk b/Patches/Common/android_vendor_divested/packages.mk index b0e181d5..378d7385 100644 --- a/Patches/Common/android_vendor_divested/packages.mk +++ b/Patches/Common/android_vendor_divested/packages.mk @@ -1,7 +1,6 @@ # F-Droid PRODUCT_PACKAGES += \ F-DroidOfficial -# F-DroidPrivilegedExtensionOfficial # Replacements PRODUCT_PACKAGES += \ diff --git a/Scripts/Generate_Signing_Keys.sh b/Scripts/Generate_Signing_Keys.sh index 522d5ad7..636fd52e 100644 --- a/Scripts/Generate_Signing_Keys.sh +++ b/Scripts/Generate_Signing_Keys.sh @@ -40,6 +40,8 @@ sed -i 's/2048/4096/' "$DOS_BUILD_BASE"/development/tools/make_key; "$DOS_BUILD_BASE"/development/tools/make_key sdk_sandbox "$desc" "$type"; "$DOS_BUILD_BASE"/development/tools/make_key future-1 "$desc" "$type"; "$DOS_BUILD_BASE"/development/tools/make_key future-2 "$desc" "$type"; +"$DOS_BUILD_BASE"/development/tools/make_key future-3 "$desc" "$type"; +"$DOS_BUILD_BASE"/development/tools/make_key future-4 "$desc" "$type"; "$DOS_BUILD_BASE"/development/tools/make_key media "$desc" "$type"; "$DOS_BUILD_BASE"/development/tools/make_key networkstack "$desc" "$type"; "$DOS_BUILD_BASE"/development/tools/make_key platform "$desc" "$type"; diff --git a/Scripts/LineageOS-18.1/Functions.sh b/Scripts/LineageOS-18.1/Functions.sh index 0b530d6f..6e986d4c 100644 --- a/Scripts/LineageOS-18.1/Functions.sh +++ b/Scripts/LineageOS-18.1/Functions.sh @@ -76,7 +76,7 @@ buildAll() { buildDevice FP2; buildDevice klte; #TODO: klteaio, kltechn, kltechnduo, klteduos, kltedv, kltekdi, kltekor buildDevice m8; #unb - #buildDevice m8d; #unb #TODO + buildDevice m8d; #unb buildDevice victara; #SD805 buildDevice shamu verity; diff --git a/Scripts/LineageOS-19.1/Functions.sh b/Scripts/LineageOS-19.1/Functions.sh index bced2bef..6e11f2d5 100644 --- a/Scripts/LineageOS-19.1/Functions.sh +++ b/Scripts/LineageOS-19.1/Functions.sh @@ -60,18 +60,18 @@ buildAll() { buildDevice taimen avb; buildDevice walleye avb; #SD845 - buildDevice aura avb; - buildDevice beryllium avb; - buildDevice pro1 avb; - buildDevice crosshatch avb; - buildDevice blueline avb; + buildDevice aura avb; #superseded? + buildDevice beryllium avb; #superseded + buildDevice pro1 avb; #superseded? + buildDevice crosshatch avb; #superseded? + buildDevice blueline avb; #superseded? buildDevice enchilada avb; #superseded buildDevice fajita avb; #superseded buildDevice akari avb; buildDevice aurora avb; buildDevice xz2c avb; #SD730 - buildDevice sunfish avb; #superseded + #buildDevice sunfish avb; #superseded #SD632 buildDevice FP3 avb; #SD750 @@ -81,8 +81,8 @@ buildAll() { buildDevice guacamoleb avb; #unb #superseded buildDevice hotdog avb; #unb #superseded buildDevice hotdogb avb; #unb #superseded - buildDevice coral avb; #superseded - buildDevice flame avb; #superseded + #buildDevice coral avb; #superseded + #buildDevice flame avb; #superseded buildDevice vayu avb; #SD865 buildDevice instantnoodle avb; #superseded @@ -95,11 +95,11 @@ buildAll() { buildDevice lemonade avb; #superseded buildDevice lemonadep avb; #superseded #SD765 - buildDevice bramble avb; #superseded - buildDevice redfin avb; #superseded + #buildDevice bramble avb; #superseded + #buildDevice redfin avb; #superseded #SD670 - buildDevice bonito avb; - buildDevice sargo avb; + buildDevice bonito avb; #superseded? + buildDevice sargo avb; #superseded? } export -f buildAll; diff --git a/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_fxtec_msm8998.sh b/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_fxtec_msm8998.sh new file mode 100644 index 00000000..504fc496 --- /dev/null +++ b/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_fxtec_msm8998.sh @@ -0,0 +1,113 @@ +#!/bin/bash +cd "$DOS_BUILD_BASE""kernel/fxtec/msm8998" +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.4/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.4/0006.patch +#git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.4/0011.patch +#git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.4/0012.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.4/0013.patch +#git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.4/0014.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.4/0015.patch +#git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.4/0019.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2015-7837/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2016-1583/^4.6/0003.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2016-6187/^4.7/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2016-8394/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2016-10153/4.9/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-16USB/ANY/0006.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-16USB/ANY/0009.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-0610/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-9059/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-9211/4.9/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-13218/4.4/0019.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-13693/^4.12.9/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-13694/^4.12.9/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-17052/4.9/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-18174/^4.10/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-18204/4.4/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-1000252/^4.13/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2018-5897/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2018-9415/ANY/0005.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2018-16597/4.4/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-8912/^5.0/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-12378/^5.1.5/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-12456/^5.1.5/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-14763/^5.1/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-15291/4.4/0006.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-16994/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-19051/4.4/0012.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-19068/4.4/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-11160/4.4/0003.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-14386/3.10-^4.4/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-16119/^5.10/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-29374-alt/4.4/0005.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-29374-alt/4.4/0006.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-29374-alt/4.4/0007.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-29374-alt/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-0935/4.9/0006.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-4034/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-4149/4.4/0007.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-20292/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-33656/4.4/0007.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-42739/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-44879/^5.16/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-0435/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-0487/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-0492/4.9/0007.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-0494/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1011/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1016/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1184/4.9/0007.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1198/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1199/4.9/0010.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1199/4.9/0011.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1353/4.4/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1516/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1652/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1679/^5.19/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1729/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1734/4.4/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1836/4.4/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1974/4.4/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1975/4.4/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2153/^5.17/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2318/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2380/4.4/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2588/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2639/4.4/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2663/4.9/0006.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2964/4.4/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-3028/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-3061/^5.18/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-3202/4.4/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20148/^5.15/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20368/4.4/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20399/4.4/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20421/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20422/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20423/4.4/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-23037/4.9/0003.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-23039/4.9/0003.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-23040/4.9/0003.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-23042/4.9/0003.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-25654/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-25664/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-26966/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-27223/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-27950/^5.16/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-28356/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-28390/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-30594/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-32981/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-33740/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-33744/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-36123/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-36879/4.4/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-36946/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-39188/4.9/0005.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-39842/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-42703/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-Misc4/4.4/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-Misc4/4.4/0002.patch +editKernelLocalversion "-dos.p109" +cd "$DOS_BUILD_BASE" diff --git a/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_google_msm-4.9.sh b/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_google_msm-4.9.sh new file mode 100644 index 00000000..e3af99dd --- /dev/null +++ b/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_google_msm-4.9.sh @@ -0,0 +1,79 @@ +#!/bin/bash +cd "$DOS_BUILD_BASE""kernel/google/msm-4.9" +git apply $DOS_PATCHES_LINUX_CVES/0001-LinuxIncrementals/4.9/4.9.0328-0329.patch --exclude=Makefile +git apply $DOS_PATCHES_LINUX_CVES/0005-Graphene-Deny_USB/4.9/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0025.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0026.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0027.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0028.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0029.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0030.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0031.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0032.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0033.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0034.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0035.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0036.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0037.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0038.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0039.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0040.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0041.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0042.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0043.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0044.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0045.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0046.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0047.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0048.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0049.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0050.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0051.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0052.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0053.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0054.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0055.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2015-7837/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2016-3695/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-16USB/ANY/0006.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-16USB/ANY/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-16USB/ANY/0009.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-7477/4.9/0003.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-13693/^4.12.9/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-13694/^4.12.9/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-1000252/^4.13/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2018-5897/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2018-9415/ANY/0005.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2018-9462/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2018-9519/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2018-20855/^4.18/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-10503/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-12378/^5.1.5/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-12455/^5.1.5/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-12456/^5.1.5/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-14040/ANY/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-15291/4.9/0007.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-16921/^4.16/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-16994/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-19051/4.9/0013.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-19068/4.9/0005.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-20908/^5.2/0001.patch +#git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-0067/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-3674/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-16119/^5.10/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-24394/^5.8/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-33098/^5.12/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-44879/^5.16/0001.patch +#git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-45469/4.9-^5.16/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1679/^5.19/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2153/^5.17/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2153/^5.17/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-3061/^5.18/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20148/^5.15/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20371/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-25664/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-27950/^5.16/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-39842/4.9/0004.patch +editKernelLocalversion "-dos.p75" +cd "$DOS_BUILD_BASE" diff --git a/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_oneplus_msm8998.sh b/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_oneplus_msm8998.sh index 6bf6a78c..ef714f42 100644 --- a/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_oneplus_msm8998.sh +++ b/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_oneplus_msm8998.sh @@ -83,9 +83,6 @@ git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-3061/^5.18/0001.patch git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-3202/4.4/0001.patch git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20148/^5.15/0002.patch git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20368/4.4/0001.patch -git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20421/4.4/0008.patch -git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20422/4.4/0008.patch -git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20423/4.4/0001.patch git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-23037/4.9/0003.patch git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-23039/4.9/0003.patch git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-23040/4.9/0003.patch @@ -110,5 +107,5 @@ git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-39842/4.9/0004.patch git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-42703/4.9/0004.patch git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-Misc4/4.4/0001.patch git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-Misc4/4.4/0002.patch -editKernelLocalversion "-dos.p110" +editKernelLocalversion "-dos.p107" cd "$DOS_BUILD_BASE" diff --git a/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_razer_sdm845.sh b/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_razer_sdm845.sh new file mode 100644 index 00000000..79795990 --- /dev/null +++ b/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_razer_sdm845.sh @@ -0,0 +1,96 @@ +#!/bin/bash +cd "$DOS_BUILD_BASE""kernel/razer/sdm845" +git apply $DOS_PATCHES_LINUX_CVES/0001-LinuxIncrementals/4.9/4.9.0318-0319.patch --exclude=Makefile +git apply $DOS_PATCHES_LINUX_CVES/0001-LinuxIncrementals/4.9/4.9.0322-0323.patch --exclude=Makefile +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0025.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0026.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0027.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0028.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0029.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0030.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0031.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0032.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0033.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0034.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0035.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0036.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0037.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0038.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0039.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0041.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0042.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0043.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0044.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0045.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0046.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0047.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0048.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0049.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0051.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0052.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0053.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0054.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0055.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2015-7837/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2016-3695/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-16USB/ANY/0006.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-16USB/ANY/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-16USB/ANY/0009.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-7477/4.9/0003.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-13693/^4.12.9/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-13694/^4.12.9/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-1000252/^4.13/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2018-5897/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2018-9415/ANY/0005.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2018-20855/^4.18/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-12378/^5.1.5/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-12455/^5.1.5/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-12456/^5.1.5/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-15291/4.9/0007.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-16921/^4.16/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-16994/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-19051/4.9/0013.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-19068/4.9/0005.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-20908/^5.2/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-0067/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-3674/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-16119/^5.10/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-24394/^5.8/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-33098/^5.12/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-33656/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-35084/qca-wifi-host-cmn/0001.patch --directory=drivers/staging/qca-wifi-host-cmn +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-35119/qca-wifi-host-cmn/0001.patch --directory=drivers/staging/qca-wifi-host-cmn +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-39792/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-44879/^5.16/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-45469/4.9-^5.16/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-0812/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1011/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1184/4.9/0007.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1679/^5.19/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1966/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2153/^5.17/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2153/^5.17/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2318/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2588/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-3028/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-3061/^5.18/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20148/^5.15/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20371/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20421/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20422/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-26365/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-27950/^5.16/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-32981/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-33740/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-33741/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-33742/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-33744/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-36123/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-36879/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-36946/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-39188/4.9/0005.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-39842/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-42703/4.9/0004.patch +editKernelLocalversion "-dos.p92" +cd "$DOS_BUILD_BASE" diff --git a/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_xiaomi_sdm845.sh b/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_xiaomi_sdm845.sh new file mode 100644 index 00000000..2f2bfe69 --- /dev/null +++ b/Scripts/LineageOS-20.0/CVE_Patchers/android_kernel_xiaomi_sdm845.sh @@ -0,0 +1,72 @@ +#!/bin/bash +cd "$DOS_BUILD_BASE""kernel/xiaomi/sdm845" +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0025.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0026.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0027.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0028.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0029.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0030.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0031.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0032.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0033.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0034.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0035.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0036.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0037.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0038.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0039.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0041.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0042.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0043.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0044.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0045.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0046.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0047.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0048.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0049.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0051.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0052.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0053.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0054.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/4.9/0055.patch +git apply $DOS_PATCHES_LINUX_CVES/0008-Graphene-Kernel_Hardening/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2015-7837/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2016-3695/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-16USB/ANY/0006.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-16USB/ANY/0008.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-16USB/ANY/0009.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-7477/4.9/0003.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-13693/^4.12.9/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-13694/^4.12.9/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2017-1000252/^4.13/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2018-5897/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2018-9415/ANY/0005.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2018-20855/^4.18/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-12378/^5.1.5/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-12455/^5.1.5/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-12456/^5.1.5/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-15291/4.9/0007.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-16921/^4.16/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-16994/4.9/0004.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-19051/4.9/0013.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-19068/4.9/0005.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2019-20908/^5.2/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-0067/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-3674/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-16119/^5.10/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2020-24394/^5.8/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-33098/^5.12/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-35084/qca-wifi-host-cmn/0001.patch --directory=drivers/staging/qca-wifi-host-cmn +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-35119/qca-wifi-host-cmn/0001.patch --directory=drivers/staging/qca-wifi-host-cmn +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-39792/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-44879/^5.16/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2021-45469/4.9-^5.16/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-1679/^5.19/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2153/^5.17/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-2153/^5.17/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-3061/^5.18/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20148/^5.15/0002.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-20371/ANY/0001.patch +git apply $DOS_PATCHES_LINUX_CVES/CVE-2022-27950/^5.16/0001.patch +editKernelLocalversion "-dos.p68" +cd "$DOS_BUILD_BASE" diff --git a/Scripts/LineageOS-20.0/Functions.sh b/Scripts/LineageOS-20.0/Functions.sh index b4ccaff5..ea126f0c 100644 --- a/Scripts/LineageOS-20.0/Functions.sh +++ b/Scripts/LineageOS-20.0/Functions.sh @@ -19,7 +19,7 @@ umask 0022; #Last verified: 2022-10-15 patchAllKernels() { - startPatcher "kernel_fairphone_sm7225 kernel_google_msm-4.14 kernel_google_redbull kernel_oneplus_msm8998 kernel_oneplus_sdm845 kernel_oneplus_sm8150 kernel_oneplus_sm8250 kernel_oneplus_sm8350"; #kernel_xiaomi_sdm845 + startPatcher "kernel_fairphone_sm7225 kernel_fxtec_msm8998 kernel_google_msm-4.9 kernel_google_msm-4.14 kernel_google_redbull kernel_oneplus_msm8998 kernel_oneplus_sdm845 kernel_oneplus_sm8150 kernel_oneplus_sm8250 kernel_oneplus_sm8350 kernel_razer_sdm845 kernel_xiaomi_sdm845"; } export -f patchAllKernels; @@ -52,16 +52,20 @@ buildAll() { buildDevice cheeseburger verity; buildDevice dumpling verity; #SD845 - #buildDevice beryllium avb; #pending vendor + buildDevice aura avb; + buildDevice beryllium avb; + buildDevice pro1 avb; + buildDevice crosshatch avb; + buildDevice blueline avb; buildDevice enchilada avb; buildDevice fajita avb; #SD750 buildDevice FP4 avb; #SD855 buildDevice guacamole avb; #FIXME - buildDevice guacamoleb avb; #FIXME - buildDevice hotdog avb; #FIXME - buildDevice hotdogb avb; #FIXME + #buildDevice guacamoleb avb; #FIXME + #buildDevice hotdog avb; #FIXME + #buildDevice hotdogb avb; #FIXME buildDevice coral avb; buildDevice flame avb; #SD730 @@ -77,6 +81,9 @@ buildAll() { buildDevice bramble avb; buildDevice redfin avb; buildDevice barbet avb; + #SD670 + buildDevice bonito avb; + buildDevice sargo avb; #Tensor #TODO: oriole, raven, bluejay #TODO: panther, cheetah diff --git a/Scripts/LineageOS-20.0/Patch.sh b/Scripts/LineageOS-20.0/Patch.sh index cbc7bf34..b098086e 100644 --- a/Scripts/LineageOS-20.0/Patch.sh +++ b/Scripts/LineageOS-20.0/Patch.sh @@ -441,6 +441,7 @@ cd "$DOS_BUILD_BASE"; #rm -rfv device/*/*/overlay/CarrierConfigResCommon device/*/*/rro_overlays/CarrierConfigOverlay device/*/*/overlay/packages/apps/CarrierConfig/res/xml/vendor.xml; #Fix broken options enabled by hardenDefconfig() +sed -i "s/CONFIG_DEBUG_NOTIFIERS=y/# CONFIG_DEBUG_NOTIFIERS is not set/" kernel/google/msm-4.9/arch/arm64/configs/*_defconfig; #Likely breaks boot sed -i "s/CONFIG_FORTIFY_SOURCE=y/# CONFIG_FORTIFY_SOURCE is not set/" kernel/google/msm-4.14/arch/arm64/configs/*_defconfig; #breaks compile sed -i "s/CONFIG_MITIGATE_SPECTRE_BRANCH_HISTORY=y/# CONFIG_MITIGATE_SPECTRE_BRANCH_HISTORY is not set/" kernel/google/msm-4.14/arch/arm64/configs/*_defconfig; #impartial backport echo -e "\nCONFIG_DEBUG_FS=y" >> kernel/oneplus/sm8150/arch/arm64/configs/vendor/sm8150-perf_defconfig; #compile failure