A 0-click exploit chain for the Pixel 9 (Project Zero)

The Project Zero blog has a
three-part series
describing a working, zero-click exploit for
Pixel 9 devices.

Over the past few years, several AI-powered features have been
added to mobile phones that allow users to better search and
understand their messages. One effect of this change is increased
0-click attack surface, as efficient analysis often requires
message media to be decoded before the message is opened by the
user. One such feature is audio transcription. Incoming SMS and RCS
audio attachments received by Google Messages are now automatically
decoded with no user interaction. As a result, audio decoders are
now in the 0-click attack surface of most Android phones.

The blog entry does not question the wisdom of directly exposing audio
decoders to external attackers, but it does provide a lot of detail showing
how it can go wrong. The first part looks at compromising the codec; part
two
extends the exploit to the kernel, and part
three
looks at the implications:

It is alarming that it took 139 days for a vulnerability
exploitable in a 0-click context to get patched on any Android
device, and it took Pixel 54 days longer. The vulnerability was
public for 82 days before it was patched by Pixel.

Renesas Expands ForgeFPGA Line with New 2k-LUT Ultra-Low-Power Devices

Renesas Electronics has introduced three new ForgeFPGA devices that significantly expand the company’s low-density FPGA portfolio. The newly announced SLG47912, SLG47920, and SLG47921 more than double the available logic resources compared to earlier 1k-LUT ForgeFPGA parts, targeting space-constrained and cost-sensitive edge designs. Renesas notes that ForgeFPGA is positioned as an alternative to traditional low-end FPGAs, […]

Lenovo ThinkPad P1 Gen 8: A High-End, Intel + NVIDIA Mobile Workstation Great For Linux Use

For those shopping for an AI-ready mobile workstation with NVIDIA RTX PRO Blackwell graphics, the Lenovo ThinkPad P1 Gen 8 offers a lot of potential for developers, AI researchers, content creators, and others. This Linux-friendly mobile workstation is well built and aligns with ThinkPad P-Series expectations while being ready to be tasked with demanding workloads.

Running Debian on the OpenWrt One (Collabora Blog)

Sjoerd Simons has published
a blog post
about running Debian on the OpenWrt One
router hardware:

With openwrt-one-debian, you can now install and run a full Debian
system leveraging the OpenWrt One’s NVMe storage, enabling everything
from custom services and containers to development tools and
lightweight server workloads, all on open hardware.

This project provides a rust-based flasher to install Debian on the
OpenWrt One, opening the door to standard Debian tooling, packages,
and workflows. For developers and power users, it transforms the
OpenWrt One from a network appliance into a compact, general-purpose
Linux system.

See the GitHub
repository
for the code and latest build. LWN reviewed the device in
November 2024, and covered Denver
Gingerich’s talk at SCALE 22x about
the making of the router in March 2025.

[$] Removing a pointer dereference from slab allocations

Al Viro does not often stray outside of the core virtual filesystem area;
when he does, it is usually worthy of note. Recently, he wandered into
memory management with this patch
series
to the slab allocator and some of its users. Kernel developers
will often put considerable effort into small optimizations, but it is
still interesting to look at just how much effort has gone toward the purpose of
avoiding a single pointer dereference in some memory-allocation hot paths.

A note for MXroute users

We have recently noticed that email from LWN.net seems to be
blocked by MXroute. Unfortunately, the company also does not seem to
have a way for non-customers to report problems in mail delivery, so
we have no good way to get ourselves unblocked.

As a result, readers who have subscribed to an LWN mailing list
from a domain hosted with MXroute will probably not receive our
mailings. We have not yet unsubscribed addresses that are being
blocked by MXroute, but will soon if the problem persists. Please
accept our apologies for the inconvenience; it is unfortunate that it
is becoming so difficult to send legitimate email as a small
business.

oVirt 4.5.7 Released After Two Years With New OS & CPU Support

The oVirt 4.5.7 open-source virtualization management platform released this week after not seeing any new releases in two years. While Red Hat had started the oVirt open-source project for which their Red Hat Virtualization platform is based, since they shifted that to maintenance mode to focus on the Red Hat OpenShift platform and stopped contributing to oVirt, it’s been up to the open-source community to keep it going…