Войти в систему

Home
    - Создать дневник
    - Написать в дневник
       - Подробный режим

LJ.Rossia.org
    - Новости сайта
    - Общие настройки
    - Sitemap
    - Оплата
    - ljr-fif

Редактировать...
    - Настройки
    - Список друзей
    - Дневник
    - Картинки
    - Пароль
    - Вид дневника

Сообщества

Настроить S2

Помощь
    - Забыли пароль?
    - FAQ
    - Тех. поддержка



Пишет LWN.net ([info]syn_lwnheadline)
@ 2016-03-13 10:40:00


Previous Entry  Add to memories!  Tell a Friend!  Next Entry
Catanzaro: Do you trust this application?
Michael Catanzaro laments
the poor level of security
provided by free-software applications,
focusing on TLS verification issues in particular.
"In the case of Shotwell, the issue has been fixed in git, but it
might never be released because nobody works on Shotwell anymore. I
informed distributors of the Shotwell vulnerability three months ago via
the GNOME distributor list, our official mechanism for communicating with
distributions, and advised them to update to a git snapshot. Most
distributions ignored it. This is completely typical; to my knowledge, the
stable releases of all Linux distributions except Fedora are still
vulnerable.
"


(Читать комментарии) (Добавить комментарий)