LWN.net's Journal
[Most Recent Entries]
[Calendar View]
Thursday, October 1st, 2015
Time |
Event |
12:44a |
[$] LWN.net Weekly Edition for October 1, 2015 The LWN.net Weekly Edition for October 1, 2015 is available. | 3:58p |
Thursday's security advisories Debian-LTS has updated commons-httpclient (denial of service) and fuseiso (two vulnerabilities).
Mageia has updated kernel (multiple vulnerabilities).
openSUSE has updated firefox (multiple vulnerabilities) and python-PyJWT (13.2: privilege escalation).
Red Hat has updated openshift
(RHOSE2.2: multiple vulnerabilities) and thunderbird (RHEL5,6,7: multiple vulnerabilities).
SUSE has updated haproxy (SOSCC5,
SLE12: two vulnerabilities).
Ubuntu has updated cyrus-sasl2
(15.04: denial of service from 2013), php5 (multiple vulnerabilities), rpcbind (denial of service), and lxc (14.04: regression in
previous fix). | 5:46p |
FSF, Conservancy publish principles for community-oriented GPL enforcement The Free Software Foundation (FSF) has announced a collaboration with Software Freedom Conservancy (SFC) on " The Principles of Community-Oriented GPL Enforcement", which describes what it means to do GPL enforcement in a way that is oriented toward gaining compliance (also: SFC announcement). " 'GPL enforcement is mostly an educational process working with people who have made honest mistakes, but it must be undertaken with care and thoughtfulness. Our goal is not to punish or censure violators, but to help them come into compliance. Abiding by these principles aids our work in bringing about that outcome,' said FSF's licensing and compliance manager, Joshua Gay. | 7:42p |
Stable kernels 3.14.54 and 3.10.90 Greg Kroah-Hartman has announced the release of the 3.14.54 and 3.10.90 stable kernels. As usual, they contain important fixes throughout the tree and users should upgrade. | 8:38p |
Qubes OS 3.0 released Joanna Rutkowska has announced the release of Qubes OS 3.0, which has a new hypervisor abstraction layer (HAL) as one of its " killer features". Qubes OS uses a hypervisor as part of its "security by compartmentalization" strategy for creating a more secure operating system. The HAL " will allow us to easily switch the underlying hypervisors in the near future, perhaps even during the installation time, depending on the user needs (think tradeoffs between hardware compatibility and performance vs. security properties desired, such as e.g. reduction of covert channels between VMs, which might be of importance to some users). More philosophically-wise, this is a nice manifestation of how Qubes OS is really "not yet another virtualization system", but rather: a user of a virtualization system (such as Xen)." We looked at Qubes OS 3.0 back in May. | 11:43p |
GNOME’s 2014 Fiscal Year Annual Report Published The GNOME Foundation has announced the release of its Annual Report [PDF] for the 2014 fiscal year, which ran from October 1, 2013 through September 30, 2014. The report covers topics like finances, the Groupon trademark battle, conferences, outreach, accessibility, and lots more. " Jean-François Fortin Tam, president of the GNOME Foundation for 2014-2015, states in the introduction letter: '2014 is on record as one of the most challenging years in the Foundation's history. It is also the year that has given us the most demonstrative and passionate display of support—from our members, our contributors, and the Free Software community—that we have ever experienced.'" |
|