Elektrine lite

← Feed

@matthegap@chaos.social

Post #1858557

2026-04-30 18:57 UTC

After spending most of the work day with the fallout of #CopyFail, I grew quite concerned with how badly Xint handled the disclosure process. Dumping such a vulnerability, plus an exploit, on the world without available patches in any major distros is negligent, especially when considering that the initial disclosure happened just a bit over a month ago. Responsible disclosure processes have a 90 day timeframe for a reason. This has the smell of "nothing but a marketing stunt" all over it.

Replies (2)

  • @sqrt2@chaos.social 2026-04-30 19:00

    @matthegap@chaos.social yes, it's pretty obviously all about making their product seem very powerful by making everyone panic, and they're very much hoping for the story being picked up by the mainstream media heartbleed-style

    Open ##2941548

  • @Earl@mast.john1126.com 2026-05-01 03:52

    @matthegap@chaos.social It would be interesting to uncover who actually introduced the bug that caused this sensational exploit. It may have been years ago. But was it truly an accident or was the weakness purposefully placed in the kernel?

    Open ##2941550