Linux software security as a tweet

Chat about Linux in general
Forum rules
Do not post support questions here. Before you post read the forum rules. Topics in this forum are automatically closed 6 months after creation.
Locked
/dev/urandom

Linux software security as a tweet

Post by /dev/urandom »

Security holes in security updates. Welcome to the Microsoft way of life.
This is your chance to upgrade to LibreSSL.
User avatar
BenTrabetere
Level 7
Level 7
Posts: 1890
Joined: Sat Jul 19, 2014 12:04 am
Location: Hattiesburg, MS USA

Re: Linux software security as a tweet

Post by BenTrabetere »

/dev/urandom wrote:Security holes in security updates. Welcome to the Microsoft way of life.
This is your chance to upgrade to LibreSSL.
Maybe I'm reading this incorrectly, but the last tweet seems to indicate the problem is no longer a problem. That is what "solution to the issue has been found, back on track for a release within the original timeframe" means, right? How would LibreSSL be an improvement?

As for Microsoft, in my experience this is far from the "Microsoft way of life." First, MS would not announce a security hole had been found. Second, the problem would not be addressed until someone else found it, Third, a fix would not be issued until it could be fit into the Patch Tuesday schedule. Fourth, it will take at least one reboot to apply the patch. Fifth, it is quite likely the patch would create problems and be recalled. Rinse, repeat.
Patreon sponsor since August 2022
Image
/dev/urandom

Re: Linux software security as a tweet

Post by /dev/urandom »

BenTrabetere wrote:Maybe I'm reading this incorrectly, but the last tweet seems to indicate the problem is no longer a problem.
"The issue in the issue fix is fixed", part 28534 of ...?

And of course it's the Microsoft way. OpenSSL won't disclosure the issue unless the fix for the fix is publicly available - this is how Microsoft works too.
User avatar
Pjotr
Level 24
Level 24
Posts: 20092
Joined: Mon Mar 07, 2011 10:18 am
Location: The Netherlands (Holland) 🇳🇱
Contact:

Re: Linux software security as a tweet

Post by Pjotr »

/dev/urandom wrote:
BenTrabetere wrote:Maybe I'm reading this incorrectly, but the last tweet seems to indicate the problem is no longer a problem.
"The issue in the issue fix is fixed", part 28534 of ...?

And of course it's the Microsoft way. OpenSSL won't disclosure the issue unless the fix for the fix is publicly available - this is how Microsoft works too.
What's all this supposed to mean? Are you looking for an opportunity to bash Linux or something?
Tip: 10 things to do after installing Linux Mint 21.3 Virginia
Keep your Linux Mint healthy: Avoid these 10 fatal mistakes
Twitter: twitter.com/easylinuxtips
All in all, horse sense simply makes sense.
/dev/urandom

Re: Linux software security as a tweet

Post by /dev/urandom »

No - I only keep records for the next time someone says "FLOSS always has a better QA than Microsoft".
User avatar
Pjotr
Level 24
Level 24
Posts: 20092
Joined: Mon Mar 07, 2011 10:18 am
Location: The Netherlands (Holland) 🇳🇱
Contact:

Re: Linux software security as a tweet

Post by Pjotr »

/dev/urandom wrote:No - I only keep records for the next time someone says "FLOSS always has a better QA than Microsoft".
So your mission is to enlighten us poor misguided forum dwellers, that Linux QA is supposedly not better than Microsoft QA?
Tip: 10 things to do after installing Linux Mint 21.3 Virginia
Keep your Linux Mint healthy: Avoid these 10 fatal mistakes
Twitter: twitter.com/easylinuxtips
All in all, horse sense simply makes sense.
/dev/urandom

Re: Linux software security as a tweet

Post by /dev/urandom »

I don't have a mission. You should know from my other postings.

Mind to use the PM functionality for personal questions?
User avatar
Pjotr
Level 24
Level 24
Posts: 20092
Joined: Mon Mar 07, 2011 10:18 am
Location: The Netherlands (Holland) 🇳🇱
Contact:

Re: Linux software security as a tweet

Post by Pjotr »

/dev/urandom wrote:I don't have a mission. You should know from my other postings.
It's *exactly* the combination of your postings in this thread together with those other postings, which make me question your general attitude.
Mind to use the PM functionality for personal questions?
Yes, I do mind. I utterly fail to see why you shouldn't be challenged publicly for what's beginning to look like Linux bashing.
Tip: 10 things to do after installing Linux Mint 21.3 Virginia
Keep your Linux Mint healthy: Avoid these 10 fatal mistakes
Twitter: twitter.com/easylinuxtips
All in all, horse sense simply makes sense.
/dev/urandom

Re: Linux software security as a tweet

Post by /dev/urandom »

While this is indeed a hole in the forum rules, I'd consider it impolite to spam a topic with personal accusations towards another forum member.
r00t

Re: Linux software security as a tweet

Post by r00t »

Personally, what I find impolite is going onto a Linux forum and bashing it. Or bashing anything on a forum of any kind. Instead, might I suggest a blog?

Locked.
Locked

Return to “Chat about Linux”