• pipes@sh.itjust.works
    link
    fedilink
    arrow-up
    0
    ·
    26 days ago

    Hi, what do you mean by checking the keys? If you mean checking the downloaded file signature (sha256sum) to make sure of its integrity, this is a different issue.

    Anyway the recent signature spoofing problem is explained here by microg author: > Google seemingly has updated their signature checking code. […] This means that all signature spoofing patches need to be updated.

    And another comment from the same thread summarizes the minimum versions of various ROMs with the fix included. > LineageOS for microG (fix auto-included from upstream) - All builds from 2024/12/17 onwards contain the fix