The update for the OpenWrt 23.05.3 distribution has been released, aimed at various network devices such as routers, switches, and access points. OpenWrt supports a wide range of different platforms and architectures and has a build system that allows easy and convenient cross-compilation, including various components in the build, making it easy to create a firmware or disk image suited for specific tasks, complete with a desired set of pre-installed packages. Builds have been formed for 35 target platforms.
Key changes in OpenWrt 23.05.3:
- Support for WPA3 wireless network security technology has been added to mwlwifi, the wifi driver for Marvell chips.
- Support for new devices added:
- ath79:
- UniFi UK-Ultra
- mediatek:
- Acelink EW-7886CAX
- ASUS RT-AX59U
- ASUS TUF AX6000
- Buffalo WSR-3200AX4S
- Cetron CT3003
- Confiabits MT7981
- Cudy RE3000 v1
- D-Link EAGLE PRO AI M32
- GL.iNet GL-MT6000
- JCG Q30 PRO
- Routerich AX3000
- TP-Link EAP225v5
- Ubiquiti UniFi 6 Plus
- Zbtlink ZBT-Z8102AX
- ZyXEL EX5700 (Telenor)
- ramips:
- Cudy WR1300 v3
- D-Link COVR-X1860 A1
- Rostelecom RT-FE-1A
- Rostelecom RT-FL-1 (Sercomm RT-FL-1)
- Rostelecom S1010 (Sercomm S1010.RT)
- TP-Link EX220 v1
- YunCore G720
- Z-ROUTER ZR-2660
- ath79:
- Issues have been resolved for devices Netgear GS110TPP, IEI-World Puzzle M90x, Sercomm NA502, Unielec u7621-01, Ctera C200 V1, Mercusys MR90X v1, Loco M5 XW, TP-Link TL-WDR3600 and TL-WDR4300.
- Increased available memory while operating on Extreme Networks WS-AP3825i.
- Improved Ethernet stability on Orange Pi R1 Plus and devices based on Mediatek MT7981 and MT7986 chips.
- Firmware has been added for Mediatek MT7922 chips.
- The Dropbear SSH server's data transfer speed has been enhanced when using the scp utility.
- Patches for loading Aquantia PHY firmware have been included in the kernel.
- Updated versions of Linux kernel 5.15.150, dnsmasq 2.90, mbedtls 2.28.7, openssl 3.0.13, mwlwifi 2023-11-20, mt76 2023-09-11, netifd 2024-01-04, jsonfilter 2024-01-23, bcm27xx-gpu-fw 2024-01-11, wireless-regdb 2024.01.23, intel-microcode 20240312.
- Vulnerabilities resolved: integer overflow (CVE-2023-36328) and lack of packet integrity check (CVE-2023-48795 — Terrapin attack) in Dropbear SSH; NSEC3 vulnerability in the dnsmasq DNSSEC implementation (CVE-2023-50868).
Additionally, it's worth noting the release of the specialized DietPi 9.2 distribution, designed for use on single-board PCs based on ARM and RISC-V architectures, such as Raspberry Pi, Orange Pi, NanoPi, BananaPi, BeagleBone Black, Rock64, Rock Pi, Quartz64, Pine64, Asus Tinker, Odroid, and VisionFive 2. The distribution is built on a Debian package base and is available in builds for over 50 boards. DietPi can also be used to create compact environments for of virtual machines and standard PCs based on the x86_64 architecture. The builds for the boards are compact (averaging 130 MB) and take up less space on storage compared to Raspberry Pi OS and Armbian. The toolkit for building and maintaining the distribution is distributed under the GPLv2 license.
The new version expands the capabilities of builds for NanoPi R4S boards. In the DietPi-Software application installation interface, there is an option to run a command to output the list of packages, regardless of whether another instance of the application is already running (for example, viewing the application list in DietPi-Dashboard no longer causes a hang if DietPi-Software is already running in the terminal). DietPi-Software now also includes the ability to access repositories via SSH during installation and reinstallation stages. Information about the amount of free RAM has been added to various utilities supported by the project, such as the DietPi-Config configurator, the DietPi-Backup backup system, the DietPi-Services process priority installation interface, and the DietPi-Update update delivery system.
Source: opennet.ru
