OpenWrt 22.03.7 seventh service release

Hauke Mehrtens hauke at hauke-m.de
Wed Jul 24 15:16:05 PDT 2024


Hi,

The OpenWrt community is proud to announce the newest stable release of 
the OpenWrt 22.03 stable version series. It fixes security issues, 
improves device support, and brings a few bug fixes.

Download firmware images using the OpenWrt Firmware Selector:
   * https://firmware-selector.openwrt.org/?version=22.03.7

Download firmware images directly from our download servers:
   * https://downloads.openwrt.org/releases/22.03.7/targets/


OpenWrt 22.03 is EOL
================================

The OpenWrt 22.03 series is end of life according to the OpenWrt 
security policy. The last release from the OpenWrt 22.03 series is 
22.03.7, after this date we will not provide any updates for OpenWrt 
22.03, not even for severe security problems. We encourage everyone to 
upgrade to OpenWrt 23.05 which will be supported till 2025.


Main changes between OpenWrt 22.03.6 and OpenWrt 22.03.7:
========================================================

Security
======

   * CVE-2023-52160: hostapd: Fix a authentication bypass problem in WPA
     Enterprise client mode.
   * CVE-2023-36328: dropbear: libtommath: possible integer overflow
   * CVE-2023-48795: dropbear: implement Strict KEX mode


Device support
===========

   * ath79: TP-Link TL-WDR3600 and TL-WDR4300: fix spurious reboot hangs
   * ath79: Ubiquity Bullet M (XW): Fix Ethernet PHY link up
   * bcm47xx: Linksys WRT320N v1: Fix switch setup
   * ramips: Improve reliability of bootup by improving reset handling
   * sunxi: Olinuxino Micro: fix network bringup


Various fixes and improvements
========================

   * mac80211: add missing config for third 160MHz width for 5GHz radio
   * hostapd: fix 11r defaults when using SAE
   * hostapd: fix 11r defaults when using WPA


Core components update
===================

   * Update Linux kernel from 5.10.201 to 5.10.221
   * Update ksmbd from 3.4.7 to 3.5.0
   * Update mac80211 from 5.15.92-1 to 5.15.162-1
   * Update wolfssl from 5.6.4 to 5.7.2
   * Update mbedtls from 2.28.5 to 2.28.8
   * Update wireless-regdb from 2023.09.01 to 2024.07.04
   * Update intel-microcode from 20230808 to 20240531
   * Update jsonfilter from 2018-02-04 to 2024-01-23


-----------------

Full release notes and upgrade instructions are available at
https://openwrt.org/releases/22.03/notes-22.03.7

In particular, make sure to read the regressions and known issues before 
upgrading:
https://openwrt.org/releases/22.03/notes-22.03.7#known_issues

For a detailed list of all changes since 22.03.6, refer to
https://openwrt.org/releases/22.03/changelog-22.03.7

To download the 22.03.7 images, navigate to:
https://downloads.openwrt.org/releases/22.03.7/targets/
Use OpenWrt Firmware Selector to download:
https://firmware-selector.openwrt.org/?version=22.03.7

As always, a big thank you goes to all our active package maintainers, 
testers, documenters and supporters.

Have fun!

The OpenWrt Community

---

To stay informed of new OpenWrt releases and security advisories, there 
are new channels available:

   * a low-volume mailing list for important announcements:
https://lists.openwrt.org/mailman/listinfo/openwrt-announce

   * a dedicated "announcements" section in the forum:
https://forum.openwrt.org/c/announcements/14

   * other announcement channels (such as RSS feeds) might be added in 
the future, they will be listed at https://openwrt.org/contact
-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_0x93DD20630910B515.asc
Type: application/pgp-keys
Size: 19909 bytes
Desc: OpenPGP public key
URL: <http://lists.openwrt.org/pipermail/openwrt-announce/attachments/20240725/81bd95bb/attachment.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_signature.asc
Type: application/pgp-signature
Size: 488 bytes
Desc: OpenPGP digital signature
URL: <http://lists.openwrt.org/pipermail/openwrt-announce/attachments/20240725/81bd95bb/attachment.sig>


More information about the openwrt-announce mailing list