lemmy.mlaga97.space
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
lemmyreader@lemmy.ml to Linux@lemmy.mlEnglish · 1 year ago

If all kernel bugs are security bugs, how do you keep your Linux safe?

www.zdnet.com

external-link
message-square
55
fedilink
0
external-link

If all kernel bugs are security bugs, how do you keep your Linux safe?

www.zdnet.com

lemmyreader@lemmy.ml to Linux@lemmy.mlEnglish · 1 year ago
message-square
55
fedilink
Since February, there've been 800 newly assigned CVEs. Your job? Update your main Linux distro more often.
  • KindaABigDyl@programming.dev
    link
    fedilink
    arrow-up
    0
    ·
    1 year ago

    Great reason to push more code out of the kernel and into user land

    • Rustmilian@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      edit-2
      1 year ago

      eBPF is looking great.

    • kabi@lemm.ee
      link
      fedilink
      arrow-up
      0
      ·
      edit-2
      1 year ago

      Is it HURD’n’ time?

      • barsoap@lemm.ee
        link
        fedilink
        arrow-up
        0
        ·
        1 year ago

        L4. HURD never panned out, and L4 is where the microkernel research settled: Memory protection, scheduling, IPC in the kernel the rest outside and there’s also important insights as to the APIs to do that with. In particular the IPC mechanism is opaque, the kernel doesn’t actually read the messages which was the main innovation over Mach.

        Literally billions of devices run OKL4, seL4 systems are also in mass production. Think broadband processors, automotive, that kind of stuff.

        The kernel being watertight doesn’t mean that your system is, though, you generally don’t need kernel privileges to exfiltrate any data or generally mess around, root suffices.

        If you want to see this happening – I guess port AMDGPU to an L4?

      • the_weez@midwest.social
        link
        fedilink
        arrow-up
        0
        ·
        1 year ago

        I think we should just resurrect Plan 9 instead.

        • Peter1986C@lemmings.world
          link
          fedilink
          arrow-up
          0
          ·
          1 year ago

          Plan 9 is also monolithic, according to wikipedia. For BSD it depends.

          • the_weez@midwest.social
            link
            fedilink
            arrow-up
            0
            ·
            1 year ago

            I mean, you’re right but I still want to see a modernized plan 9, I just think it would be neat.

            • leopold@lemmy.kde.social
              link
              fedilink
              English
              arrow-up
              0
              ·
              1 year ago

              that would be Inferno

      • TimeSquirrel@kbin.social
        link
        fedilink
        arrow-up
        0
        ·
        1 year ago

        I dunno, Stallman, it’s been 30 years, you got something for us?

      • OmnipotentEntity@beehaw.org
        link
        fedilink
        arrow-up
        0
        ·
        1 year ago

        Redox-OS?

        • mexicancartel@lemmy.dbzer0.com
          link
          fedilink
          English
          arrow-up
          0
          ·
          1 year ago

          Ah shit MIT license

          • EinfachUnersetzlich@lemm.ee
            link
            fedilink
            arrow-up
            0
            ·
            1 year ago

            Is that bad?

            • mexicancartel@lemmy.dbzer0.com
              link
              fedilink
              English
              arrow-up
              0
              ·
              1 year ago

              It means anyone including microsoft or apple can use the code contribution or take the entire softwarw and make some modifications and sell it proprietary. Any optimisations or features made by community can be proprietarised

    • 4am@lemm.ee
      link
      fedilink
      arrow-up
      0
      ·
      1 year ago

      So what you are saying is “mach was right”?

Linux@lemmy.ml

linux@lemmy.ml

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !linux@lemmy.ml

From Wikipedia, the free encyclopedia

Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).

Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.

Rules

  • Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.
  • No misinformation
  • No NSFW content
  • No hate speech, bigotry, etc

Related Communities

  • !opensource@lemmy.ml
  • !libre_culture@lemmy.ml
  • !technology@lemmy.ml
  • !libre_hardware@lemmy.ml

Community icon by Alpár-Etele Méder, licensed under CC BY 3.0

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 269 users / day
  • 1.98K users / week
  • 7.74K users / month
  • 15.5K users / 6 months
  • 1 local subscriber
  • 54.3K subscribers
  • 6.15K Posts
  • 129K Comments
  • Modlog
  • mods:
  • AgreeableLandscape@lemmy.ml
  • nooter692@lemmy.ml
  • MarcellusDrum@lemmy.ml
  • Arthur Besse@lemmy.ml
  • Cyclohexane@lemmy.ml
  • d3Xt3r@lemmy.nz
  • BE: 0.19.5
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org