They need to rewrite everything in linux in rust, the C parts have too many flaws.
>>108776750King Lunduke belongs on the sticky.
>>108776750I read that as dirty fag
>>108776963No he doesn't
>>108776750I look forward to Linux taking 20 hours to compile and several terabytes of disk space.
>>108777104Name one man in tech who has done more for open source than this man…. *waits 10 seconds*, yeah thought so. To the sticky he goes!
>>108777135Just run it through the rust2c transpiler and recompile as before, then throw away the rust code as before. It will have appeared to have “worked it’s magic” in the process for slobbering hyper-religious non technical and clueless unemployable rust zealots.It’s because 99.999% of all rust code is direct, unedited output from the c2rust transpiler to begin with. What was done can be undone.That’s why.
>>108776750>the exploit needs a program that targets "su" to be executedSo by not executing random shit out of the repos and have a sane configuration (eg: /tmp mounted as separated with nosuid, nodev and noexec) nothing can happen.Great, another nothingburger, wake me when we get holed in automatic at connection established, then i will start sweating.
>>108777161Richard Stallman.
>>108776750kill yourself lundukike :)
>>108776750>Exploit doesn't work on FreeBSDGREAT!
>>108777674Because nobody uses FreeBSD and nobody cares
>>108776750Satya Nadella is removing C++ from windows.https://www.youtube.com/watch?v=WxrQ3SqSt6Q
>>108776750buy an ad faggot
>>108776750>1.5mbPng supports lossless compression.
>>108776750Logic errors are not fixed by coding in Rust.
>>108777376Richard doesn't have quite the resume of Lunduke, but he's also already in the Sticky.
>>108777831This is only a logic error in the sense that they needed to mentally maintain the logic to keep track of mutability and memory bounds. A language problem.
>>108777763Why would you care about 4cuck disk space and bandwidth?In the best case, you would always exactly hit the 4 MB limit, just to spite them.
>>108777980We didn't have any such problems before 2017/18, when Linus used to be rude and we didn't have a CoC yet.Thinking that .unwrap() trannies wouldn't crash and burn down your system at the first occupation, out of incompetency, is retarded.You need good programmers.No amount of linting and guardrails and language switches can make shit code good.
>>108776750AI found that bug. Language wars were always retarded but even more so now in AI era.
>>108778018>AI found that bugthe prompt in question:>This is the linux crypto/ subsystem. Please examine all codepaths reachable from userspace syscalls. Note one key observation: splice() can deliver page-cache references of read-only files (including setuid binaries) to crypto TX scatterlists.They had knowledge of the whole code base they were scanning and what they are looking for. It's not some dumb vibe coder asking Claud to find them an exploit for Linux.AI spared them months of research. Months that they could probably not pay for, so they probably wouldn't have been able to find it otherwise. But someone who had the money and time, like glowfags, would.
>>108778003People simply didn't cared about LPEs, cause they came along way way more often.
>>108778118>cause they came along way way more oftenYes, in the form of a misconfigured server, not in the form of kernel bugs.When some user fucks up, because he REALLY TOALLY had to use an suid binary to make his PHP script parse a PDF, that's on him. And "hardening" against this was as easy as not having unneeded suid binaries around.This exploit here isn't even only privilege escalation. The LPE is just what they chose to do. If you would have a system with no suid binaries whatsoever, the exploit still affects you. The user is defenseless here, no amount of hardening or care can safe you.The only protection is to not have those kernel modules, or to run a kernel from a time before the Code of Conduct was a thing.
>>108778154Nta but you need to at least execute the exploit in some capacity, hardening in that regard is what works (eg: /tmp with noexec and firejail the usual suspects that can execute code like pdf readers and web browsers).
>>108777988Not like uploading another file is gonna improve 4chin's disk space & bandwidth, and the odds of either version getting lots of reposts seem pretty low too. It's a current news thing, not a funny frog meme or smth.
>>108776750It's time to move to the Hurd kernel.
>>108777376What has Richard Stallman done in the past 10 years? 2016-2026? Genuinely am not sure. I think he just was cancelled and got cancer, which is doubly unfortunate
>>108776750Jewduke lost to cunny.
>>108779078At least jewduke streams.