sos,
@sos@mastodon.gamedev.place avatar

Oh god the xz backdoor seems to have ruined a lot of people’s holiday plans. The timing was definitely deliberate, although I wonder why wasn’t it pushed for Xmas holiday.

You guys alright?

code_disaster,
@code_disaster@mastodon.gamedev.place avatar

@sos Deliberate, or just very, very, veeeeery stupid and irresponsible. Esp. by some person working on a security-sensible topic like databases at Microsoft. With more people looking at the problem since weeks.

code_disaster,
@code_disaster@mastodon.gamedev.place avatar

@sos It's still unclear (to me) how wide-spread this compromised version is. Best case, many system admins have to answer panic calls with "we don't run unstable Debian" all Easter.

soulsource,
@soulsource@mastodon.gamedev.place avatar

@code_disaster @sos Gentoo had pushed it as a stable update already though 😞 .

sos,
@sos@mastodon.gamedev.place avatar

@code_disaster @sos hopefully! Truth is this is a cold shower for package trust.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • rosin
  • osvaldo12
  • thenastyranch
  • DreamBathrooms
  • khanakhh
  • magazineikmin
  • InstantRegret
  • Youngstown
  • slotface
  • mdbf
  • love
  • kavyap
  • GTA5RPClips
  • everett
  • Leos
  • cubers
  • ethstaker
  • Durango
  • ngwrru68w68
  • tacticalgear
  • modclub
  • cisconetworking
  • provamag3
  • anitta
  • normalnudes
  • tester
  • megavids
  • JUstTest
  • All magazines