A corrective release of the OpenWrt 25.12.3 distribution has been introduced, developed for network devices such as routers, switches, and access points. OpenWrt supports over 2200 devices and offers a build system that simplifies cross-compilation and creating custom builds. Such builds allow for the formation of ready-made firmware with the desired set of pre-installed packages, optimized for specific tasks. Ready-made builds have been published for 41 target platforms.
Among the changes:
- Added support for devices:
- mediatek filogic: ASUS RT-AX52 PRO, D-Link AQUILA PRO AI E30, Huasifei WH3000 Pro, Keenetic KAP-630 / Netcraze NAP-630, Zbtlink ZBT-Z8106AX-T, Zyxel WX5600-T0.
- ramips EDUP EP-RT2983, Cudy LT300 v3
- x86: DFI ADN553, DFI ASL553
- Corrections related to platform operations have been made:
- ath79 (Netgear WNDAP360, Extreme Networks WS-AP3805i, Mikrotik),
- ipq50xx (Linksys MX5500),
- lantiq (Netgear DGN3500),
- mediatek (Bananapi BPI-R4, Keenetic KN-1812, Netgear EAX17, CMCC RAX3000M, Zbtlink ZBT-Z8103AX-D),
- mvebu (ClearFog Base/Pro),
- qualcommax (Xiaomi AX6000, Linksys MX5300),
- ramips (Yuncore CPE200, Wavlink WL-WN575A3, Xiaomi Mi Router 4C).
- In uqmi / umbim, the 'devpath' option has been added to select the modem by path to the USB device.
- Kernel modules kmod-vsock and kmod-vsock-virtio have been added for guest systems.
- Updated versions of Linux kernel 6.12.85, mbedtls 3.6.6, OpenSSL 3.5.6, wireless-regdb 2026.03.18, wolfSSL 5.9.1, and xdp-tools 1.6.3.
- Vulnerabilities in the Linux kernel (CVE-2026-31431 — Copy Fail), mbedtls, OpenSSL, and wolfSSL have been addressed.
Source: opennet.ru
