NOTICE: This content was originally posted to Google+, then imported here. Some formatting may be lost, links may be dead, and images may be missing.
This update brings primarily bugfixes to the su binary (related to suhide and Magisk compatibility), but there is one supolicy update of particular note as well:
supolicy
Due to an initialization bug, introduced in v2.68 BETA, some SELinux contexts (including shell and untrusted_app) could be granted sys_module capability. If this happens, and your kernel is compiled with module loading support (most modern stock kernels have this disabled) and an exploit is used to gain uid 0, this then allows for a complete SELinux bypass and kernel pwn.
The requirements are pretty extensive and your chances of being vulnerable are slim, but nevertheless I would recommend updating.
This fix requires SuperSU to be updated by flashing the ZIP. Updating by APK will not suffice.
SRx instead of BETA
We're moving from BETA to Service Release naming, so we can keep the version number for the next test release the same as the current stable release. So, v2.78 SR1 is what would have been v2.79 BETA before.
While this may be slightly more confusing, we need to keep the version numbers the same to reduce the effectiveness of people trying to upload the test releases to stores (many stores will not accept a version number already present). Surprisingly, this is a real problem on non-Play stores.
CCMT
Discussion regarding CCMT has suddenly (about a year late) become prominent again. There will be some announcements regarding this probably next week.
Links
SuperSU BETA thread: http://forum.xda-developers.com/apps/supersu/2014-09-02-supersu-v2-05-t2868133
FlashFire/TWRP Flashable ZIP: https://download.chainfire.eu/1003/SuperSU/SR1-SuperSU-v2.78-SR1-20160915123031.zip
Changelog
-
subinary: Adjust app_process detection with manipulated mount namespaces
-
subinary: Adjust Zygote PID detection to prefer 64-bit
-
subinary: Fix possible NPE in LD_PRELOAD sanitization
-
subinary: In systemless mode, ensure PATH contains /su/bin and /su/xbin
-
supolicy: Ensure zero-on-alloc for new rules
-
supolicy: Fix parsing allowxperm with multiple sources/targets in a single definition
-
ZIP/Systemless: Give su.d 60 seconds to execute (from 4 seconds)
English only!
Thank You Sir!
ty
Please disclose more about involvement of CCMT on v2.78 and future versions
Tnx
+Justin Cheung Returning the positive right of this business to Chainfire please. and he will do it when he thinks it's time.
So this bug was here from 2.68 all the way to 2.78 ?
With CCMT around ?! That sounds dangerous lol
Anyway I really want to trust CF's work like I always did... Fingers crossed.
Thanks for your work :)
+Chainfire i wonder why increasing the su.d script launch time to 60 from 4 seconds?
I haven't tested it but doesn't it cause problem for LiveBoot? And also i have my script to setup lots of things and i want it to be run when bootanim is launched.
But maybe i haven't understand it correctly and it make su.d script 60 secs to excute and passing this delay scripts won't be launched. Which is this case avoid some problem i guess and i have nothing to complain.
Anyway your work is awesome. Thanks for your work!
I would like to ask a question, If I have offended, please forgive me. You abandoned SuperUser? The network said it SuperUser you sell.
+Masta DeYuS have a look here https://plus.google.com/+Chainfire/posts/fJRb98S7mQC
+Younes Layachi already saw it but as comment wasn't disable on this post. I've post my question here and I'll post it on XDA too like the previous time I've ask something to chainfire
+司徒慧兰 it's always been supersu
Superuser is made by another dev.
+Nathaniel Alex We know nothing about CCMT except its China background. I believe many users including those living in China have concern on their privacy and even safety when using the latest versions. Some of them I know have already switched to other rooting solutions. Anyway it is always Chainfire's own choice to talk about it or not and when.
Perhaps you missed the part where it says some announcements will be made next week ?
+Chainfire can we use this SU with magisk app will it be compatible like phh superuser?
its awesome work thanks
Well concerning CCMT, it was said they own and develop other root apps, Play Store Links? Going to SuperSu Pro's Play Store page which shows it's owned by "Codingcode" there is no link to any other apps, and doing a search for pub: Codingcode only brings up SuperSU Pro. Will these supposed other apps be apart of the announcement?
The part people are taking issues with, and the part others are ignoring, the reason people trusted +Chainfire is because he engages with the community, he has a presence on social media, he would respond to his users. CCMT has done none of this. I bet the only reason people were comfortable with it at first is because they knew Chainfire was still involved, meaning he probably had access to the source, but that one year period is about up if it isn't already.
+Gamer D SuperSU was already compatible with Magisk, root would just never unmount (for me at least). I am going to give this version a shot since Magisk compatiabilyy improvments are mentioned.
Super, danke! ?
+Chainfire Just to let you know what the users most concerning is.
Random question: Do you have a ChainFire app suite available for purchase? I use SuperSU daily, and FF at least monthly, it would be nice to support you buy paying for all the apps at once.
As always, thanks! ??❕??
I'm still waiting.
+Pedro Carneiro You don't know when/if ANY app you install will call home until someone shows that it does. If I worried about that without facts, I'd never install a single app. Much ado about nothing!
thanks thanks thanks and very thanks +Chainfire
Niiiiiice update?
Can I root with out PC with this ?
Supersu v2.78 .
It not work on 7.0 android properly
+Justin Cheung Can you show me please some evidence about Chinese background of CCMT? Thnaks.
Ελληνικά
zfh
/system/bin/sh: su:Operation not permitted
vivo x6d
hello
I am fine with this application, and 'excellent.
This time I upgraded from google play and I find two identical icons to me, I edit an e also changes the other.
what happened?
Vbv
hello,this doesnt work on moto-z
+Roque Muñoz hello brother u can use language translation extension ..
After installation I get a network error compiling android nougat number n3e71b
Network error after supersu v2.78 flashed. Android 6.0.
Please make magisk compatible zip file
hi chainfire, is it work for official android 6.0?(galaxy tab s 10.5 SM-T800)
Hi Chainfire. Can you create SuperSU for android Watch like huami Amazfit? I'm getting difficult to root this device...
hi can you please reupload cf auto root
for samsung sm a500h on your web site
the one already in your web site doesn't work for android 5 and only android 6
pleeease do it ?
i cant wait for ever to update my android
gets released for my country ?
if any one else has it please let me know ?
Voy a probar
Dont work with Moto G XT1068, system version 24.81.3, update bootloader 0x4887. Fix it, please :)
Boa tarde meu amigo
Boa tarde meu amigo
How to use intex aqua trend
Hey my man im working on a sprint samsung note 4 is there a way to sim unlock it ? Email me if you can help thanks