Bitcoin Forum

Bitcoin => Hardware wallets => Topic started by: Maus0728 on July 08, 2020, 10:15:33 AM



Title: Ledger Nano X Firmware Update
Post by: Maus0728 on July 08, 2020, 10:15:33 AM
https://i.imgur.com/Y16ouYHl.jpg

I am no Ledger Nano X user but they added an enhanced security and UI update!

Security Enhancements and Further Additions

The largest reason for this firmware update is a patch to a minor vulnerability. Now rest assured that your recovery phrase, private keys and funds are not at risk. The vulnerability targets the MCU chip, while the security of the Ledger Nano X is based on the Secure Element (https://www.ledger.com/academy/security/the-secure-element-whistanding-security-attacks) (for storing critical data like your recovery phrase / PIN). Since the Secure Element is not impacted, your funds remain secure – even without performing the firmware update. The firmware update brings an update to the MCU chip to help in mitigating this. It also includes an enhancement to the Secure Element, which will now check the authenticity of the code running on the MCU. The two combined fully patch this vulnerability. Should you prefer to have a more detailed version of this vulnerability and security patch, we recommend checking out this article (https://www.ledger.com/enhancing-the-ledger-nano-xs-security).

Some further additions include:
  • Added mandatory regulatory information in the device’s settings menu
  • Added cryptographic support for the Stark 256 curve. This will allow the support of Starkware applications.
  • Added cryptographic support for the BLS12-381 curve

Major UX enhancements

We have improved the update flow for the Ledger Nano X. With the Ledger Nano S, users had to disconnect and reconnect their device at least once in the process. This will not be the case for updating your Ledger Nano X.

For another, apps that were installed on your Ledger Nano X prior to the firmware update will be automatically uninstalled and reinstalled. This major UX enhancement will be a huge timesaver to our users, as well as it now being a fully automatic process.

Source: https://www.ledger.com/first-ever-firmware-update-coming-to-the-ledger-nano-x?utm_source=Twitter&utm_medium=Social&utm_campaign=LNX%20FW%20Update



Title: Re: Ledger Nano X Firmware Update
Post by: Lucius on July 08, 2020, 02:54:01 PM
Thanks for the information :)

I have tried to make a firmware update (currently not available to me), but instructed by previous experiences Ledger prevents everyone from downloading new firmware at the same time, which saves their servers from crashing, but also allows new firmware to be tested on a limited number of users. As for this minor vulnerability, I didn't even know it existed - but it's good to know that Ledger fixes everything, even those vulnerabilities which are not critical.

I have to admit that Stark 256 curve support doesn’t mean much to me, but as far as I can see on their site it is about scalability and privacy, but how much will that really mean to Nano X users with support to BLS12-381 curve also?

A small note not listed in the OP, for update to this firmware users need to use the latest Ledger Live (2.8.0+).


Title: Re: Ledger Nano X Firmware Update
Post by: Husna QA on July 17, 2020, 12:20:05 AM
To install the latest firmware version, you’ll need to use the latest version of Ledger Live (v2.8.0+). The Ledger Nano X firmware update will be rolled out progressively. If you don’t see it available yet, don’t hesitate to try again at a later point.
I have updated the ledger live to version 2.8.0

https://talkimg.com/images/2023/05/17/blobe3f4d6af56183cdc.png

Until now, the application still does not appear notification for a firmware update to the latest version.

https://talkimg.com/images/2023/05/17/blob86e2e7cf826bcf1e.png

Currently, not all Nano X users get the firmware update.



Title: Re: Ledger Nano X Firmware Update
Post by: Lucius on July 17, 2020, 09:27:04 AM
I have updated the ledger live to version 2.8.0
Until now, the application still does not appear notification for a firmware update to the latest version.
Currently, not all Nano X users get the firmware update.

As I wrote in a previous post, it is known that Ledger does not give everyone the opportunity to download the update at the same time, so it was with the previous firmware update for Nano S. I've tried it a few times and I also don't see an option for new firmware, but since it's not some critical vulnerability that this firmware fixes you just have to be patient and wait a few days.

To install the latest firmware version, you’ll need to use the latest version of Ledger Live (v2.8.0+). The Ledger Nano X firmware update will be rolled out progressively. If you don’t see it available yet, don’t hesitate to try again at a later point.



Title: Re: Ledger Nano X Firmware Update
Post by: Husna QA on August 05, 2020, 11:40:26 PM
-snip- I've tried it a few times and I also don't see an option for new firmware, but since it's not some critical vulnerability that this firmware fixes you just have to be patient and wait a few days. -snip-
Yes, and after a few weeks, since the ledger announced the information about the Nano X firmware update, I finally got the Nano X firmware update notification on Ledger Live. After the update, there was a slight change in the order of the coin icons on the Nano X interface.

https://talkimg.com/images/2023/05/17/blobe5fdb96735001152.png

https://talkimg.com/images/2023/05/17/blob26aa36f8008164fa.png

https://talkimg.com/images/2023/05/17/blob18ca92c302435678.png

https://talkimg.com/images/2023/05/17/blob88ea5e9a8ef146ca.png