SuperSU v2.78 SR1 released
Posted on 2016-09-15, 48 comments, 461 +1's, imported from Google+/Chainfire

NOTICE: This content was originally posted to Google+, then imported here. Some formatting may be lost, links may be dead, and images may be missing.

This update brings primarily bugfixes to the su binary (related to suhide and Magisk compatibility), but there is one supolicy update of particular note as well:

supolicy

Due to an initialization bug, introduced in v2.68 BETA, some SELinux contexts (including shell and untrusted_app) could be granted sys_module capability. If this happens, and your kernel is compiled with module loading support (most modern stock kernels have this disabled) and an exploit is used to gain uid 0, this then allows for a complete SELinux bypass and kernel pwn.

The requirements are pretty extensive and your chances of being vulnerable are slim, but nevertheless I would recommend updating.

This fix requires SuperSU to be updated by flashing the ZIP. Updating by APK will not suffice.

SRx instead of BETA

We're moving from BETA to Service Release naming, so we can keep the version number for the next test release the same as the current stable release. So, v2.78 SR1 is what would have been v2.79 BETA before.

While this may be slightly more confusing, we need to keep the version numbers the same to reduce the effectiveness of people trying to upload the test releases to stores (many stores will not accept a version number already present). Surprisingly, this is a real problem on non-Play stores.

CCMT

Discussion regarding CCMT has suddenly (about a year late) become prominent again. There will be some announcements regarding this probably next week.

Links

SuperSU BETA thread: http://forum.xda-developers.com/apps/supersu/2014-09-02-supersu-v2-05-t2868133

FlashFire/TWRP Flashable ZIP: https://download.chainfire.eu/1003/SuperSU/SR1-SuperSU-v2.78-SR1-20160915123031.zip

Changelog

  • subinary: Adjust app_process detection with manipulated mount namespaces

  • subinary: Adjust Zygote PID detection to prefer 64-bit

  • subinary: Fix possible NPE in LD_PRELOAD sanitization

  • subinary: In systemless mode, ensure PATH contains /su/bin and /su/xbin

  • supolicy: Ensure zero-on-alloc for new rules

  • supolicy: Fix parsing allowxperm with multiple sources/targets in a single definition

  • ZIP/Systemless: Give su.d 60 seconds to execute (from 4 seconds)


[BETA][2016.09.15] SuperSU v2.78 SR1

+1461
Chainfire commented on 2016-09-15 at 11:16:

English only!

Philip Chico commented on 2016-09-15 at 11:22:

Thank You Sir!

Jamal Ursen Pascua commented on 2016-09-15 at 11:23:

ty

Justin Cheung commented on 2016-09-15 at 11:24:

Please disclose more about involvement of CCMT on v2.78 and future versions

Aba Lam commented on 2016-09-15 at 11:59:

Tnx

Nathaniel Alex commented on 2016-09-15 at 12:08:

+Justin Cheung Returning the positive right of this business to Chainfire please. and he will do it when he thinks it's time.

Younes Layachi commented on 2016-09-15 at 12:08:

So this bug was here from 2.68 all the way to 2.78 ?

With CCMT around ?! That sounds dangerous lol

Anyway I really want to trust CF's work like I always did... Fingers crossed.

Thanks for your work :)

Masta DeYuS commented on 2016-09-15 at 12:24:

+Chainfire i wonder why increasing the su.d script launch time to 60 from 4 seconds?

I haven't tested it but doesn't it cause problem for LiveBoot? And also i have my script to setup lots of things and i want it to be run when bootanim is launched.

But maybe i haven't understand it correctly and it make su.d script 60 secs to excute and passing this delay scripts won't be launched. Which is this case avoid some problem i guess and i have nothing to complain.

Anyway your work is awesome. Thanks for your work!

司徒慧兰 commented on 2016-09-15 at 12:24:

I would like to ask a question, If I have offended, please forgive me. You abandoned SuperUser? The network said it SuperUser you sell.

Younes Layachi commented on 2016-09-15 at 12:30:
Masta DeYuS commented on 2016-09-15 at 12:32:

+Younes Layachi already saw it but as comment wasn't disable on this post. I've post my question here and I'll post it on XDA too like the previous time I've ask something to chainfire

Andy Cullis commented on 2016-09-15 at 12:57:

+司徒慧兰 it's always been supersu

Superuser is made by another dev.

Justin Cheung commented on 2016-09-15 at 13:34:

+Nathaniel Alex We know nothing about CCMT except its China background. I believe many users including those living in China have concern on their privacy and even safety when using the latest versions. Some of them I know have already switched to other rooting solutions. Anyway it is always Chainfire's own choice to talk about it or not and when.

Chainfire commented on 2016-09-15 at 14:38:

Perhaps you missed the part where it says some announcements will be made next week ?

Gamer D commented on 2016-09-15 at 14:46:

+Chainfire can we use this SU with magisk app will it be compatible like phh superuser?

Talaat Fathy commented on 2016-09-15 at 15:59:

its awesome work thanks

Ryan Cavitt commented on 2016-09-15 at 16:41:

Well concerning CCMT, it was said they own and develop other root apps, Play Store Links? Going to SuperSu Pro's Play Store page which shows it's owned by "Codingcode" there is no link to any other apps, and doing a search for pub: Codingcode only brings up SuperSU Pro. Will these supposed other apps be apart of the announcement?

The part people are taking issues with, and the part others are ignoring, the reason people trusted +Chainfire is because he engages with the community, he has a presence on social media, he would respond to his users. CCMT has done none of this. I bet the only reason people were comfortable with it at first is because they knew Chainfire was still involved, meaning he probably had access to the source, but that one year period is about up if it isn't already.

Ryan Cavitt commented on 2016-09-15 at 16:48:

+Gamer D SuperSU was already compatible with Magisk, root would just never unmount (for me at least). I am going to give this version a shot since Magisk compatiabilyy improvments are mentioned.

Zoltan Fürst commented on 2016-09-15 at 18:06:

Super, danke! ?

Justin Cheung commented on 2016-09-15 at 21:31:

+Chainfire​​ Just to let you know what the users most concerning is.

Jeremy Waugh commented on 2016-09-15 at 22:13:

Random question: Do you have a ChainFire app suite available for purchase? I use SuperSU daily, and FF at least monthly, it would be nice to support you buy paying for all the apps at once.

Ray Hollingsworth commented on 2016-09-16 at 00:13:

As always, thanks! ??❕??

Esteban Manuel Cabrera Carrizales commented on 2016-09-16 at 03:15:

I'm still waiting.

Ray Hollingsworth commented on 2016-09-16 at 06:28:

+Pedro Carneiro​ You don't know when/if ANY app you install will call home until someone shows that it does. If I worried about that without facts, I'd never install a single app. Much ado about nothing!

Muhamad Hamdani commented on 2016-09-16 at 12:29:

thanks thanks thanks and very thanks +Chainfire

concept williams commented on 2016-09-17 at 07:49:

Niiiiiice update?

Rizki Achmad commented on 2016-09-18 at 12:13:

Can I root with out PC with this ?

Shivam Uikey commented on 2016-09-18 at 15:56:

Supersu v2.78 .

It not work on 7.0 android properly

Martin B. commented on 2016-09-20 at 18:13:

+Justin Cheung Can you show me please some evidence about Chinese background of CCMT? Thnaks.

Ευαγγελία Σαββίδου commented on 2016-09-22 at 08:38:

Ελληνικά

Yankuba Baldé commented on 2016-09-23 at 12:53:

zfh

qing gao commented on 2016-09-24 at 08:12:

/system/bin/sh: su:Operation not permitted

vivo x6d

JKillyan commented on 2016-09-26 at 13:36:

hello

I am fine with this application, and 'excellent.

This time I upgraded from google play and I find two identical icons to me, I edit an e also changes the other.

what happened?

Luis Mendoza commented on 2016-09-26 at 18:02:

Vbv

Pure Ice commented on 2016-09-28 at 13:11:

hello,this doesnt work on moto-z

thenesh kumar Desai commented on 2016-10-03 at 04:24:

+Roque Muñoz hello brother u can use language translation extension ..

Gökhan Boz Videoları commented on 2016-10-07 at 15:09:

After installation I get a network error compiling android nougat number n3e71b

Pedro Js. commented on 2016-10-07 at 18:50:

Network error after supersu v2.78 flashed. Android 6.0.

Abdul Rauf commented on 2016-10-08 at 20:25:

Please make magisk compatible zip file

///AMG Lu commented on 2016-10-09 at 13:54:

hi chainfire, is it work for official android 6.0?(galaxy tab s 10.5 SM-T800)

Handler - commented on 2016-10-10 at 09:57:

Hi Chainfire. Can you create SuperSU for android Watch like huami Amazfit? I'm getting difficult to root this device...

ali 32bit commented on 2016-10-14 at 13:33:

hi can you please reupload cf auto root

for samsung sm a500h on your web site

the one already in your web site doesn't work for android 5 and only android 6

pleeease do it ?

i cant wait for ever to update my android

gets released for my country ?

if any one else has it please let me know ?

Benito Reino commented on 2016-10-25 at 15:46:

Voy a probar

Ricardo Leite commented on 2016-10-26 at 17:10:

Dont work with Moto G XT1068, system version 24.81.3, update bootloader 0x4887. Fix it, please :)

Nem Edmilson commented on 2016-10-27 at 16:17:

Boa tarde meu amigo

Nem Edmilson commented on 2016-10-27 at 16:17:

Boa tarde meu amigo

Avesh Sama commented on 2016-11-25 at 20:49:

How to use intex aqua trend

Jerry Johnson commented on 2017-03-03 at 04:53:

Hey my man im working on a sprint samsung note 4 is there a way to sim unlock it ? Email me if you can help thanks

This post is over a month old, commenting has been disabled.