Unauthenticated RCE vs all GNU/Linux systems to be fully disclosed in 2 weeks with no working fix yet
  • treasure treasure 3w ago 100%

    Yeah, what a disappointment. This guy brought shame to the security community because he was salty that his vulnerability didn't get the attention it "deserved".

    2
  • Unauthenticated RCE vs all GNU/Linux systems to be fully disclosed in 2 weeks with no working fix yet
  • treasure treasure 4w ago 100%

    Copying my reply from another thread:

    This link should be working.

    Quoting from the OP tweet:

    * Unauthenticated RCE vs all GNU/Linux systems (plus others) disclosed 3 weeks ago.
    * Full disclosure happening in less than 2 weeks (as agreed with devs).
    * Still no CVE assigned (there should be at least 3, possibly 4, ideally 6).
    * Still no working fix.
    * Canonical, RedHat and others have confirmed the severity, a 9.9, check screenshot.
    * Devs are still arguing about whether or not some of the issues have a security impact.

    I've spent the last 3 weeks of my sabbatical working full time on this research, reporting, coordination and so on with the sole purpose of helping and pretty much only got patronized because the devs just can't accept that their code is crap - responsible disclosure: no more.

    3
  • Unauthenticated RCE vs all GNU/Linux systems to be fully disclosed in 2 weeks with no working fix yet
  • treasure treasure 4w ago 100%

    This link should be working.

    Quoting from the OP tweet:

    * Unauthenticated RCE vs all GNU/Linux systems (plus others) disclosed 3 weeks ago.
    * Full disclosure happening in less than 2 weeks (as agreed with devs).
    * Still no CVE assigned (there should be at least 3, possibly 4, ideally 6).
    * Still no working fix.
    * Canonical, RedHat and others have confirmed the severity, a 9.9, check screenshot.
    * Devs are still arguing about whether or not some of the issues have a security impact.

    I've spent the last 3 weeks of my sabbatical working full time on this research, reporting, coordination and so on with the sole purpose of helping and pretty much only got patronized because the devs just can't accept that their code is crap - responsible disclosure: no more.

    23
  • https://nitter.poast.org/evilsocket/status/1838169889330135132

    EDIT: Original post seems to have been removed, try [this Nitter mirror](https://nitter.privacydev.net/evilsocket/status/1838169889330135132) instead.

    60
    11
    https://nitter.poast.org/evilsocket/status/1838169889330135132

    EDIT: Original post seems to have been removed, try [this Nitter mirror](https://nitter.privacydev.net/evilsocket/status/1838169889330135132) instead.

    39
    19
    https://nitter.poast.org/evilsocket/status/1838169889330135132

    EDIT: Original post seems to have been removed, try [this Nitter mirror](https://nitter.privacydev.net/evilsocket/status/1838169889330135132) instead.

    89
    29
    Is my 5700x3d overheating at 85c or is it just hot?
  • treasure treasure 1mo ago 100%

    85°C is still fine. You wouldn't want your system running at those temps all the time but if those are only spikes during intensive tasks, you're good.

    If you want your PC to run a bit cooler, check your airflow, set manual fan curves, or try out a mild undervolt.

    19
  • Gesucht: Smartphone
  • treasure treasure 1mo ago 100%

    Löten ist hier nicht mal erforderlich. Der Akku hat einen Flachstecker, der sehr einfach zu lösen ist. Die eigentliche Herausforderung wird Kleber sein, da man das Handy zum Lösen der Rückplatte erst erhitzen und dann mit viel Vorsicht und Geduld abhebeln muss. Der Akku ist ebenfalls verklebt, sodass man erstmal mit Isopropanol rangehen muss und auch hier wieder viel Vorsicht und Geduld braucht.

    Hier findest du ein YouTube-Video dazu. Ist zwar ein allgemeiner Teardown statt ein Batterietausch, aber die Schritte sind auch da enthalten.

    5
  • memes
    Memes 2mo ago
    Jump
    I hate the rich
  • treasure treasure 2mo ago 95%

    Cannot complain.

    Spotted the German.

    22
  • What are your favourite extensions?
  • treasure treasure 2mo ago 100%

    Are you passing CloudFlare captchas with that? I'm using a VPN and whenever I hit a CloudFlare captcha with a modified user agent, it doesn't let me pass.

    2
  • 196
    196 2mo ago
    Jump
    Rule
  • treasure treasure 2mo ago 98%

    The screenshot is getting crispy, time to get it out of the deep fryer

    66
  • ich🛋️🤳🏻iel
  • treasure treasure 2mo ago 100%

    Also wirklich, die sollten ihre Applikation zum Anzeigen von Lemmy-Inhalten stattdessen "Verbinde" nennen, ganz nach dem Vorbild des Internet-Ausbaus in Deutschland.

    8
  • Smashing idea: how East Germany invented ‘unbreakable’ drinking glasses
  • treasure treasure 2mo ago 100%

    Da hat sich in der Guardian-Redaktion bestimmt jemand von diesem fern-Video inspirieren lassen.

    3
  • The Best Encrypted Messengers in 2024
  • treasure treasure 3mo ago 100%

    That's mentioned in the article I believe. I was just trying to save some people a minute or two. :)

    5
  • The Best Encrypted Messengers in 2024
  • treasure treasure 3mo ago 100%

    TLDR: Avoid Telegram and WhatsApp. Recommended messengers are Session, Signal, SimpleX and Threema. Honorable mention: Briar.

    114
  • cat
    cats 3mo ago
    Jump
    Lumpi would like scritchies until the universe ends
  • treasure treasure 3mo ago 92%

    He wants all kinds of pets, rubs and scritches. Belly rubs too, but please without touching the belly.

    11
  • ...touching the belly is still deadly though.

    294
    7