Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> Debian routinely patches security-critical software without dedicated security review

This is untrue. Provide some evidence or withdraw your false claim. Thanks.



They patched openssh without dedicated security review...which directly allowed the xz backdoor debacle. Checks out to me.


If you expect a bsd software to run unpatched on linux… I don't know what to say to you… except to tell you to try and do it yourself.


openssh-portable already exists.

debian developers tried to be extra clever and it blew up in everyone's collective face.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: